Pricing

Pay for the testing motion you actually need.

Start with one critical scope or build an always-on offensive program. We price around assets, complexity and testing depth; not vague day rates.

Get a scoped quote →
Clear scope before kickoffNo surprise fees
Scope builderEstimate ready
TargetCustomer web platform

Web app + public API · 4 user roles

01
DepthAuthenticated deep-dive

Business logic · auth · injection · cloud paths

02
DeliveryOperator-led PTaaS

Live findings · retest · signed report

24h
Scope, then price
Engagement models

Start focused. Scale when the risk demands it.

Every model includes verified evidence, remediation guidance and direct access to the people doing the work.

Focused

One-time pentest

For a release, compliance milestone or high-risk application.

  • Defined web, mobile, API or cloud scope
  • Certified operator-led testing
  • Live finding delivery
  • Signed report and retest
Scope this model
Always on

Managed program

For broad attack surfaces and mature security teams.

  • Managed bug bounty
  • Vetted researcher network
  • 24/7 triage and deduplication
  • Program operations and analytics
Scope this model
Included by default

No add-on required for a useful result.

Operator-verified findings

No unreviewed scanner output or speculative issues passed to your team.

Engineering-ready evidence

PoC, CVSS, business impact and remediation guidance on each issue.

Retest and signed reporting

Validate the fix and close the engagement with evidence stakeholders can trust.

How pricing works

A clear quote starts with a clear attack surface.

01 / CONTEXT

Share the target

Tell us what changed, what matters and what the test needs to support.

02 / SCOPE

Define the depth

We map assets, roles, integrations and the attack paths worth exploring.

03 / QUOTE

Choose the model

Get a transparent recommendation, timeline and price tied to the work.

Get an exact quote

Show us the scope. We’ll show you the path.

Start scoping →