Type 1 · Small
Focused product with few flows, profiles, and business rules.
- Execution timeline
- Around 7 business days
Tell us what may be tested. We review the product, send the quote, and track the work through the portal.
Pentest engagements are currently available only in Brazil.
You send the product details. We review the material, send the quote, and begin the pentest on the agreed date after payment.
You describe the product, authorized assets, restrictions, and rules of engagement.
We review the material and contact you if anything is missing.
You receive the price, payment terms, and expected dates before hiring.
Payment confirms the stated window and places the pentest in the queue.
During the test, you can track progress and receive reports through the portal.
Registration captures the product context, authorized assets, and restrictions. We use that information to prepare the work and define the pentest size.
Provide what we need to understand the product and the authorization boundaries.
We classify the pentest as small, medium, or large. The category reflects the product size and the number of paths that need testing.
Focused product with few flows, profiles, and business rules.
Product with related flows, permissions, states, or integrations.
Broad platform with several modules, profiles, services, or codebases.
We classify the pentest manually after technical review. The exact price appears in the quote.
You receive the pentest size, price, payment terms, and expected dates. The quote remains available for 3 calendar days.
Type 1 is paid in full before work begins. For Types 2 and 3, you pay 40% to confirm the pentest and the remaining 60% when the final report is ready. If you need to cancel before delivery, contact us so we can review the work completed and the refund.
The quote holds the stated window for 3 calendar days. Payment confirms the date and places the pentest in the queue. Without payment by the deadline, the window becomes available again.
If the schedule is full, the portal will tell you. We send the quote as soon as a suitable date becomes available.
If we need more information, we contact you through the registered channel.
The stated date remains reserved during this period.
The portal updates the date as soon as payment is confirmed.
If a dependency pauses the work, the reason appears in the portal.
After the initial payment, the pentest enters the queue. When work begins, the portal shows its progress and starts the execution timeline.
Reservation confirmed and estimated start date defined.
Assessment started and execution timeline running.
Timeline suspended while a dependency prevents progress.
If an access or another required detail is missing, the timeline may be paused. The reason and revised estimate appear in the portal.
Vulnerabilities requiring immediate attention are communicated as soon as they are confirmed. Each preliminary report remains available in the portal with its submission date and time.
The report consolidates impact, evidence, reproduction, and remediation guidance. For payments made in full, the complete file is released at completion. For split payments, the final report is shown as ready and remains locked until payment of the remaining 60% of the quote's total amount; preliminary reports remain accessible throughout the process.
After delivery, we remain available to clarify findings and coordinate possible retests.
We contact you through the account email and, when provided, WhatsApp. The same channel follows the pentest from review through delivery.
Context confirmation, access requests, and clarification of the authorized boundaries.
Operational coordination, dependencies, and communication of relevant vulnerabilities.
Finding clarification, help interpreting evidence, and retest coordination.
Work-related messages are retained for a limited period to preserve continuity, traceability, and security.
Describe the product, what may be tested, and the required rules. You can review everything before submission.
Register pentest