Simple, Transparent Pricing
No hidden fees. No per-scan charges. Just predictable pricing that scales with your needs.
Starter
Solo founder
- 1 target (domain/app)
- Weekly scheduled attack runs
- Manual runs (rate-limited)
- GitHub annotations
- Retest on demand
- Basic evidence pack export
Pro
Serious builder with staging + prod
- 3 targets
- Daily scheduled attack runs
- Exploitability verification mode
- GitHub checks (fail PR on criticals)
- Baseline diffing
- Surface monitoring (new endpoints)
Team
Small, sharp team with governance
- 10 targets
- RBAC + audit log
- Policy controls (severity thresholds)
- Branch protections
- Slack/Discord notifications
- Shared workspace triage
Agency
Multi-project management at scale
- 30 targets (workspaces per client)
- Client separation + portfolio view
- White-label export option
- Priority queue + faster retests
- Authorization artifact tracking
- Priority support
What counts as a target? A target is a root domain/app (and its primary subdomains) or a distinct API base URL you want tested and tracked independently.
Our Promise
We do not guarantee "no vulns." We guarantee evidence, reproducibility, and a remediation path. We only test owner-approved systems.
Enterprise
For procurement-bound buyers who need custom contracts and dedicated support.
- SSO/SAML + SCIM
- Dedicated tenant isolation
- Custom SLAs
- Advanced audit + retention
- Custom onboarding
- Security review support
What Could a Breach Cost You?
Get a personalized risk estimate in 30 seconds.
What Could a Breach Cost You?
Get a personalized risk estimate in 30 seconds.
High-Value Add-ons
Capture additional value without bloating your tier. Available on any paid plan.
Offensive Sprint
5 business days. One target. Deeper manual validation on your highest-risk flows.
- Exploit chain analysis
- Fix-order plan
- Closure verification
Evidence Pack
For customers, investors, or compliance. Executive-ready security summary.
- Curated evidence summary
- Reproductions + mitigations
- "What changed" diff
Authenticated Flows
Additional authenticated profiles for deeper authz/authn path testing.
- Multi-role testing
- Session management testing
- Privilege escalation checks
Frequently Asked Questions
Everything you need to know before running Your First Attack Free.
Still have questions?
Get in touch