Pricing, in plain numbers.
Every rate is on this page. Pick what you want tested, choose how deep, and work out your own total. One base per test type per order, and a per-target rate that falls as you scale.
Start with what you want tested
Four test types, each with its own depth. A type charges one base per order at the depth you chose for it, however many targets or tests that order covers, and picking more than one type brings the bases down.
External
Your internet-facing targets, tested from our infrastructure.
Targets price on the external curve.
Internal
Your internal network, tested through an appliance you run on it.
Targets price on the internal curve, a flat step above external.
Cloud
One cloud account. A control-plane posture review of identity, exposure, data protection, and detection gaps.
One flat base at any depth: it buys the posture pass. Add the VMs and apps inside as targets, and individual resources as flat add-ins, and your chosen depth applies to those.
Domain
One network range. Active Directory enumeration, certificate services, and the coercion surface.
One base for the range, higher at Deep. Add hosts in it as targets on the internal curve.
Base, by test type and depth
| Test type | Quick | Vulnerability | Standard | Deep |
|---|---|---|---|---|
| External | $60 | $350 | $750 | $1,200 |
| Internal | $80 | $450 | $850 | $1,300 |
| Cloud | $750(Full read-only always) | (Discovered resource tests) | ||
| Domain | — | — | $750 | $1,200 |
Pick one depth per row, not one for the whole order: Deep across your internet-facing estate and Standard inside is a single order. Each type's targets then ride their own volume curve at their own depth. Where a base does not move with depth, the depth you pick governs the targets and resources inside that test rather than the base. A dash means that test type is not offered at that depth.
Combine test types and pay less
Ten internet-facing and ten internal targets at Standard Pentest: $1,900 in one order, against $2,300 bought separately. Combining is cheaper by construction, never the other way round.
Then choose how deep
Test your internet-facing targets from our infrastructure.
Quick Test
A fast first look across your network and web apps, inside or out, in under an hour.
Vulnerability Assessment
Most popularFind what's vulnerable, validated, not a scanner's pile of maybes.
Standard Pentest
Best for a pentest reportProof, not guesses. We safely exploit what we find and show you the evidence.
Deep Pentest
Most thoroughThe full attacker simulation, for your highest-value targets.
Add authenticated testing
Give Prober credentials and it tests behind the login: session handling, access controls, and the pages a signed-in user reaches.
Per-target rates, published
Your first 10 targets are half the full rate, and volume brings you back to half price by target 101. The whole table is here.
| Tier | 1-10 Half price | 11-25 Full rate | 26-50 | 51-100 | 101+ Half price |
|---|---|---|---|---|---|
| Quick Testflat | $15 | $15 | $15 | $15 | $15 |
| Vulnerability Assessment | $25 | $50 | $42 | $33 | $25 |
| Standard Pentest | $30 | $60 | $50 | $40 | $30 |
| Deep Pentest | $50 | $100 | $84 | $67 | $50 |
Rates are per target, external. Between the two ends the rate steps down bracket by bracket. Quick Test takes no volume bracket, at a flat $15 per target.
What you pay per target, all in
Base included. One base per test type per order, however many targets or tests it covers.
A retest comes with every target
Fix something and prove it. Every target you test carries one discounted retest, good for 90 days after that test finishes. A retest is the per-target rate with no base, and no volume bracket on top.
| Tier | External | Internal |
|---|---|---|
| Quick | $15 | $20 |
| Vulnerability | $25 | $35 |
| Standard | $30 | $40 |
| Deep | $50 | $60 |
Per target. A target that failed or came back unqualified is re-run free, in place, and does not spend the retest.
Price your order
The same function that charges your order. Pick a depth for each test type: Deep across your internet-facing estate and Standard inside is one order, one payment.
- External baseStandard Pentest
- $750
- 10 internet-facing targets, Standard10 x $30
- $300
Runs as 1 test, launched when you are ready.
Every target carries one discounted retest for 90 days after its test finishes, at its own depth's rate and with no base.
On a monthly schedule this order is $840 with annual billing.
Compare the tiers
| Feature | Quick | Vulnerability | Standard | Deep |
|---|---|---|---|---|
| Network testing | ||||
| Web app testing | ||||
| CVE detection | ||||
| AI validation | ||||
| Audit-ready report | — | |||
| Authenticated testing | — | Optional | Optional | Included |
| Safe exploitation | — | — | ||
| Proof of concept | — | — | ||
| Attack chaining | — | — | — | |
| Business-logic testing | — | — | — | |
| API testing | — | — | — |
Save with a testing schedule
Lower pricing on every order when you test on a cadence. The discount applies to the whole order, base and targets alike.
Monthly testing
A test a month on your targets.
Quarterly testing
A test each quarter, the cadence auditors expect.
Every report includes the executive summary, methodology, and per-finding detail an auditor expects, structured to support your SOC 2, ISO 27001, PCI-DSS, and HIPAA evidence.
Add a human expert
The engine does the testing. Bring in a security professional to validate findings, test by hand, or run a full human-led engagement.
Expert Review
A pentester reviews your findings, clears the false positives, and prioritizes by business impact.
Manual + Automated
An expert runs and validates the whole engagement by hand and delivers a combined report.
Expert Traditional
A full human-led pentest on traditional methodology, with executive and technical reports.
Pricing FAQ
What counts as a target?
A single IP, domain, or web app. A CIDR range counts as its addresses (10.0.0.0/24 = 254 targets).
How does volume pricing work?
The more targets you test, the less each one costs you. Your first ten sit at half the full rate, and volume brings you back to half price by the hundred-and-first. All in, with the base included, a Standard Pentest external target works out at $105 at ten targets, $78 at twenty-five, and $52 at a hundred. It only ever falls.
Do I pay twice if my order runs as several tests?
No. A base is charged once per test type per order, whatever the order breaks out into. The per-target curve runs continuously across every group, so splitting targets into more tests never costs more than keeping them together.
How long does a test take?
Rough ranges: Quick ~30-60 min, Vulnerability ~1-2 hours, Standard ~2-4 hours, Deep ~4-8 hours, depending on your infrastructure.
Do I need authorization to test?
Yes. You must have explicit permission to test every target; testing systems you don't own or aren't authorized to test is illegal. We supply a liability waiver, but the authorization is yours to hold.
What if my test runs out of time?
We save progress as the test runs. If it hits the time limit, you get a partial report with everything found so far, and you can add time with the Continue Testing add-on.
Are the reports audit-ready?
Yes. Each report carries the executive summary, methodology, and per-finding detail auditors expect.
Ready to test?
Start with a Quick Test at $75, or a full Vulnerability Assessment from $375.
Go Probe →