Skip to content
The SentryMail “Control Center” dashboard showing campaign metrics, the risk score and a timeline of events

Turn your people into a human firewall

SentryMail is a self-hosted open-core platform for phishing awareness – plan, send and evaluate simulated campaigns per recipient.

Awareness training (LMS)

New Feature

Self-hosted mandatory training with videos: automatic assignment on a low awareness score, tamper-proof progress tracking, comprehension quizzes and audit-proof certificates. Set it up under Training module (LMS).

Campaigns and tracking

Phishing campaigns with scheduling, templates (HTML/Markdown, .eml import), landing pages and per-recipient evaluation – opens, clicks and form submissions. See Features.

Security built in

Argon2id passwords, secrets encrypted at rest, 2FA with backup codes, audit log and hardened containers. More under Security.

Self-hosted and vendor-neutral

Runs as a Docker Compose stack with any operator; all environment-specific values come from .env – nothing is hard-coded. Get going with the installation.

NIS2 and BSI IT-Grundschutz

Measurable, repeatable awareness measures with evidence for audits – see Compliance mapping.


SentryMail is an independent open-core project; the core is licensed under the Mozilla Public License 2.0 (MPL-2.0). The commercial add-ons are separate and proprietary. This documentation is also available in German.

SentryMail is a registered trademark of SecureBits Cyber Security UG