Transparent pricing.
No surprises.
Fixed-scope packages for common engagements, or fully custom scoping for complex environments. Every package includes a free retest. Always.
All pricing is bespoke — final cost depends on scope, complexity, and timeline.
Request a free scoping call and we'll provide a fixed quote within 24 hours.
What's included in each plan
| Feature | Starter | Professional | Enterprise |
|---|---|---|---|
| Number of targets | 1 | Up to 3 | Unlimited |
| OWASP Top 10 coverage | ✓ | ✓ | ✓ |
| Business logic testing | — | ✓ | ✓ |
| API security testing | ✓ | ✓ | ✓ |
| Technical report | ✓ | ✓ | ✓ |
| Executive summary | ✓ | ✓ | ✓ |
| CVSS severity ratings | ✓ | ✓ | ✓ |
| Remediation guidance | ✓ | ✓ | ✓ |
| Free retest | ✓ | ✓ | ✓ |
| Report delivery SLA | 48h | 48h | Priority 48h |
| Dedicated Slack channel | — | ✓ | ✓ |
| Debrief call | — | ✓ | ✓ |
| Red team / multi-vector | — | — | ✓ |
| MITRE ATT&CK mapping | — | — | ✓ |
| Board-ready presentation | — | — | ✓ |
| Social engineering add-on | + quote | + quote | Included |
Extend any engagement
Every add-on can be appended to any package at time of scoping.
Social Engineering Campaign
Phishing, vishing, or pretexting campaign against your staff. Includes per-department metrics and training recommendations.
Mobile App Testing
iOS or Android. Static + dynamic analysis, runtime tampering, certificate pinning bypass, OWASP MASVS aligned.
OSINT Exposure Report
Full open-source intelligence sweep: leaked credentials, exposed infrastructure, GitHub leaks, dark web monitoring.
Cloud Security Review
AWS, GCP, or Azure. IAM privilege audit, public storage, exposed secrets, Kubernetes, serverless functions.
AI / LLM Security Assessment
Prompt injection, jailbreak testing, RAG poisoning, agentic risks — aligned to OWASP Agentic Top 10 2026.
Extra Retest Round
Additional retest beyond the included one — useful for complex remediation phases or compliance requirements.
Common questions
Get a fixed quote
in 24 hours
Tell us what you need. We'll come back with a clear scope and fixed price — no sales calls, no bloated proposals.
Request a Quote