Estimate an engagement.
For engineering teams that want a directional estimate before scoping. Numbers are indicative. Final scope is agreed after a technical discussion.
- Technical Report
- Developer Guidance
- Retesting
- Final Validation
Estimate produced from the scope inputs above. Not a quote. Final scope, timeline and pricing are agreed in writing following a technical discussion.
Request Engagement →Example engagements.
Indicative ranges only.
- ▊Single API endpoint review1–2 days$3,000–$5,000
- ▊Full API assessment4–7 days$8,000–$14,000
- ▊Edge & origin infrastructure review3–5 days$6,500–$12,000
- ▊Architecture review + threat model5–8 days$12,000–$18,000
- ▊Continuous partnership (per month)ongoingfrom $8,000/mo
Common questions.
▊How long does an assessment take?+
Small scope engagements run 2–4 days. Standard API assessments run 4–7 days. Larger platform reviews and architecture engagements run 1–2 weeks. Final duration is agreed after a technical discussion.
▊What happens after disclosure?+
We provide reproduction, impact analysis, and mitigation guidance. Remediation happens in your codebase with your engineers; we retest and issue a final validation once the fix is deployed.
▊Can we start with one endpoint?+
Yes. Single-endpoint reviews are common, often as a first engagement before wider scoping.
▊Do you sign NDAs?+
Yes. NDAs are standard for every engagement and are executed before scoping specifics are exchanged.
▊How are reports delivered?+
Reports are delivered as Markdown, PDF, or directly into your issue tracker, whichever your engineering team prefers.