Skip to main content

Overview

KnowBe4 is a security awareness training platform with phishing simulation capabilities. The Pwnbook integration imports phishing campaign click rates and training completion data so security teams can track human risk factors alongside technical vulnerability findings.

Prerequisites

  • A KnowBe4 account (Platinum or Diamond tier for API access)
  • Admin access in KnowBe4 to generate API keys
  • Admin or Owner access in Pwnbook

Credentials required

API access is available on KnowBe4 Platinum and Diamond subscription tiers. If you don’t see the API section, contact KnowBe4 to confirm your plan includes API access.

Setup

1

Get your KnowBe4 API key

  1. In KnowBe4, go to Account Settings → Account Integrations → API.
  2. Click Generate API Key (or copy your existing key if one is already generated).
  3. Copy the key — it begins with a long alphanumeric string.
The API key is shown once. If you lose it, you’ll need to regenerate, which invalidates the old key.
2

Configure in Pwnbook

  1. Go to Organization Settings → Marketplace → KnowBe4.
  2. Paste your API Key.
  3. Click Save & Test — Pwnbook verifies access by fetching your account details.

What gets synced

Phishing simulations

Training

Workbench card

The KnowBe4 workbench card shows:
  • Current phishing-prone percentage (rolling 12-month)
  • Latest campaign click rate with trend indicator
  • Training completion rate

Viewing in Pwnbook

The full KnowBe4 view shows:
  • Phishing tab: campaign history with click/report rates and trend over time
  • Training tab: module completion rates and overdue user counts

Disconnecting

  1. Go to Organization Settings → Marketplace → KnowBe4.
  2. Click Disconnect.
  3. Confirm.