Web Application VAPT
A manual penetration test of your web application, with proof-of-concept evidence for each finding and a retest after remediation.
Manual penetration test covering authentication, authorisation and business logic
₹29,999
Every engagement lists its scope, timeline and fixed fee before checkout
Credentials committed to your repositories found and rotated, with automated scanning set up to stop new ones slipping in.
Codebases that have never been scanned frequently contain a live credential somewhere in their history, and deleting the file does not remove it from past commits. We scan the full history of your repositories, check which secrets are still valid and help you rotate them in a safe order. We also address dependency hygiene, identifying outdated packages with known vulnerabilities, setting out a manageable upgrade path and adding automated scanning so future issues are caught at the pull request.
Repository history and current branches swept for credentials
Each finding tested to see whether it is still live
Credentials replaced in a sequence that avoids outages
Scanning, hooks and update automation put in place
You provide these through the technical brief in your dashboard after checkout.
Live credentials removed from places that should never have held them
Vulnerable dependencies identified, with an upgrade sequence you can follow
Future secret commits blocked before they reach the remote
This is a remote engineering engagement — nothing is shipped physically. Work is delivered into systems you control. See delivery & handover and refunds & cancellation for the full terms.
A manual penetration test of your web application, with proof-of-concept evidence for each finding and a retest after remediation.
Manual penetration test covering authentication, authorisation and business logic
₹29,999
Every identity in your cloud account reviewed against its actual usage, with over-permissioned roles tightened safely.
Inventory of every user, role, service account and access key
₹18,999
The technical controls and automated evidence collection a SOC 2 Type II audit requires, in place before the observation window begins.
Control gap assessment against the Trust Services Criteria you are scoping
₹44,999
A practical gap assessment against India’s DPDP Act 2023, covering consent, retention, notices and breach procedures.
Personal data inventory across systems, vendors and storage locations
₹22,999
Pick the engagement that matches what you need, or tell us about the system you are working on and we will point you to the right starting place.