3-5 days
one app + API, from scoping to signed report
€3,500 fixed
starting point, locked in writing after 20 minutes
100% PoC
every finding has a working PoC
This pipeline hunts live bug-bounty programs every day. Real scope, real triage, paid findings. Your test runs on the same pipeline.

Findings and full report list on request.
Exact scope in writing: hosts, app, API, auth roles, what is explicitly not included.
Written, in English or German, with a scope you can hand to your lawyer or auditor.
Our agent fleet maps the whole surface and probes the logic; a named researcher reviews, verifies, and chains every finding.
CVSS plus NIS2 / ISO 27001 mapping and prioritized remediation. You fix, we retest once, included.
from €3,500, fixed
one web app + its API, unauthenticated + one role, 3-5 days, report + one retest.
Most projects: €4,000-€7,000.
One fixed fee, in writing, signed by both sides. It moves only if the scope does.
Samir Abis. Named in the contract, reachable during the test and at the readout. He runs the pipeline, verifies every PoC himself, and signs the report.
Fixed scope, fixed price, 3-5 days, report guaranteed. A bounty gives you no coverage and no timeline, and you pay only if someone finds something. You still need the report for SOC 2.
We pause the affected path. You hear about it within 4 hours on the agreed channel. Nothing destructive ever happens without written sign-off.
Yes. A signed authorization and rules of engagement come before the first probe: exact scope, permitted techniques, rate limits, emergency-stop contact. In writing, before we start.
Optional. Most of the external surface is reachable without credentials. Test accounts deepen the logic coverage, one of the price drivers.
This offer covers the external web + API surface. Internal network, mobile, and cloud are separate fixed-priced modules, quoted after scoping if you want them.