In progress · scores unpublished
Published by By SecurityChecklist
Reviewed Independent reviewer role open
In progress · scores unpublished
Experts policyHoxhunt Review
Hoxhunt is not scored on SecurityChecklist yet. This draft is pack-verified diligence on the Human Risk Management Platform, with quote-only human-risk pricing on public pages reviewed.
Direct answer
Hoxhunt is not scored on SecurityChecklist yet. This draft is pack-verified diligence on the Human Risk Management Platform, with quote-only human-risk pricing on public pages reviewed.
Pack summary (unscored): adaptive phishing simulations across email, SMS, phone, and Teams; security awareness training; and AI-powered SOC busywork reduction for user-reported phishing triage. Module scope depends on purchased plan.
- Cluster
- Email security
- Editorial score
- Unpublished until verified evidence clears; never invent a numeric ranking.
- Publication
- Unpublished · excluded from sitemap
Simulations amplify whatever hygiene you already have. Stabilize identity and mailbox basics first.
Before a Hoxhunt demo
- Turn on MFA and remove shared mailbox passwords
- Confirm who triages user-reported phishing today
- Decide which channels (email only vs SMS/phone/Teams) are in scope
- Prepare IdP details for SAML and SCIM evaluation
- Separate gateway gaps from human-risk gaps in the email assessment
Product scope and admin identity
Hoxhunt pack product-scope covers adaptive multi-channel simulations, awareness training, and AI-assisted triage of user-reported phishing. Admin-identity pack cites SAML 2.0 with preconfigured guides for Microsoft Entra ID, Okta, OneLogin, and Ping Identity, plus SCIM 2.0 provisioning managed from admin.hoxhunt.com.
Pricing and support transparency
Homepage and partner pages offer Request demo / Become a partner flows but publish no public USD per-user list prices on pages reviewed. Treat commercial terms as quote-only.
Support-response pack rows cite support@hoxhunt.com and Customer Success Manager contacts for implementation, plus a dedicated Compliance and Security staff path on the security page. Contact channels are not a contractual SLA matrix.
Security and standards claims
Security page claims GDPR/CCPA compliance, SOC 2 Type II and SOC 3 attestations (reports on request), yearly third-party SSAE 18 SOC 2 oversight, and Schrems II data residency controls including EU SCCs. Vendor-stated only; SecurityChecklist has not independently verified certificates.
When to open interactive tools
Finish SPF/DKIM/DMARC reporting and mailbox MFA before vendor demos. Scores stay N/Pub. Never paste mailbox credentials into tools.
- Email security assessment: /business-security/email-security/assessment/
- DMARC readiness: /business-security/email-security/dmarc-readiness/
- Compliance tool finder: /business-security/compliance-automation/tool-finder/
- SOC 2 readiness: /business-security/compliance-automation/soc-2-readiness/
Final verdict
Auth and reporting before inbox theater. Assessment and readiness tools export hygiene scope only; they do not invent catch rates or rankings. Scores stay N/Pub. Partner pages are not acceptance.
Evidence
Vendor evidence status
Draft packs from E006. Conflicted or missing slots block scores. Public partner pages are not program acceptance.
Hoxhunt
Source packUnpublishedEvidence status: draft. Verified source rows: 7. Conflicted: 0. Missing: 0. Pricing: quote_only. Editorial score: unpublished.
Sources
Verified citations used on this page
Only verified evidence rows are listed. Conflicted slots are omitted.
Hoxhunt · hoxhunt:product-scope
Hoxhunt Human Risk Management Platform automates adaptive phishing simulations (email, SMS, phone, Teams), security awareness training, and AI-powered SOC busywork reduction for user-reported phishing triage.
Source (official, accessed 2026-08-09): https://www.hoxhunt.com/
- Vendor product marketing; module scope depends on purchased plan.
Hoxhunt · hoxhunt:security-architecture
Hoxhunt security page states GDPR and CCPA compliance, SOC 2 Type II and SOC 3 attestations (reports available on request), third-party oversight audited yearly against SSAE 18 SOC2 standards, and Schrems II data residency controls including EU SCCs.
Source (official, accessed 2026-08-09): https://www.hoxhunt.com/security
- SOC reports require customer/prospect request; SecurityChecklist has not independently verified certificates.
Hoxhunt · hoxhunt:admin-identity
Hoxhunt support documentation states SSO via SAML 2.0 with preconfigured guides for Microsoft Entra ID, Okta, OneLogin, and Ping Identity, plus SCIM 2.0 automated user provisioning managed from admin.hoxhunt.com settings.
Source (official, accessed 2026-08-09): https://support.hoxhunt.com/hc/en-us/articles/16475528168988-Single-Sign-On-and-Automated-user-provisioning
- IdP-specific SCIM sync intervals and group mapping require verification before procurement.
Hoxhunt · hoxhunt:pricing-transparency
Hoxhunt homepage and partner pages offer Request demo / Become a partner flows but publish no public USD per-user list prices on the pages reviewed.
Source (official, accessed 2026-08-09): https://www.hoxhunt.com/
- Quote-only status confirmed; contract pricing requires sales engagement.
Hoxhunt · hoxhunt:support-response
Hoxhunt SSO/SCIM support documentation lists support@hoxhunt.com and Customer Success Manager contact for implementation questions.
Source (official, accessed 2026-08-09): https://support.hoxhunt.com/hc/en-us/articles/16475528168988-Single-Sign-On-and-Automated-user-provisioning
- Contact channels only; no contractual support SLA or response-time metrics on this article.
Hoxhunt · hoxhunt:support-response
Hoxhunt security page states a dedicated Compliance and Security staff is available for compliance and security questions (contact via the security page).
Source (official, accessed 2026-08-09): https://www.hoxhunt.com/security
- Compliance/security contact path, not a product support SLA matrix.
Hoxhunt · hoxhunt:independent-or-standards
Hoxhunt security page lists SOC 2 Type II and SOC 3 compliance badges and states third-party oversight is audited yearly against SSAE 18 SOC 2 standards, with SOC 2/SOC 3 reports available on request.
Source (official, accessed 2026-08-09): https://www.hoxhunt.com/security
- Certification claims are vendor-stated; SecurityChecklist has not independently verified SOC reports.
- Partners-page Gartner recognition language was removed from this pack because it is not on the cited security URL.
Methodology and limitations
SecurityChecklist keeps editorialScore null (N/Pub) and evidenceLabel unverified on these drafts. Commercial status is not program acceptance. Affiliate or lead payout never sets shortlist order. Re-check volatile pricing before any purchase decision.
Publication gates
What still blocks publication
Commercial product pages stay unpublished until every blocker below clears with dated sources.
- editorialScore null / N/Pub until reviewer-approved evidence packs
- evidenceLabel remains unverified on public money pages
- Partner applications (E007) unfinished; public partner pages are not acceptance
- INDEXABLE_PATHS must not include business-security money routes
- Featured vendor packs still unverified or conflicted for: hoxhunt
Related drafts
More in Email security
Related unpublished resources in this topic area.
- Email Security and Human Risk
- Best Email Security Software
- Best Microsoft 365 Email Security
- Best Google Workspace Email Security
- Best Phishing Protection Platforms
- Best Security Awareness Training
- Best DMARC Services
- KnowBe4 Review
- Abnormal Security Review
- EasyDMARC Review
- Mimecast Email Security Review
- KnowBe4 vs Hoxhunt
Who should not buy / use this page yet
- Buyers who require a public per-seat USD rate card before talking to sales
- Teams that need a scored SecurityChecklist review before procurement
- Organizations seeking only an inbound email gateway under this brand
- Groups that will not operate multi-channel simulations after purchase
Affiliate or lead payout never sets editorial score. See enterprise methodology (still being verified).
Final verdict
Treat this page as an unverified planning scaffold, not a scored shortlist or purchase recommendation. Editorial scores stay unpublished. Finish free and built-in controls first. Public partner pages do not equal program acceptance.
