Web Application VAPT
A manual penetration test of your web application with proof-of-concept evidence and a retest after you fix.
Fixed fee · GST incl.
₹29,999
Scope, price and timeline published on every engagement page
Practice
A report full of findings your team cannot action is theatre. These engagements test what is actually exposed, write the fix alongside the finding, and re-test once you have shipped it.
Findings written to be fixed
Reproducible findings, a remediation path per issue, and a re-test once your team has closed them.
Scope before signature
Every page below names the artefacts that land and the ones that do not. Nothing is decided after the invoice.
The same engineers throughout
You are told who is building and they stay on the engagement until handover is signed off.
Handover, not lock-in
Code, pipelines and documentation are pushed to your repositories as the work happens, not at the end.
Inside this practice
A manual penetration test of your web application with proof-of-concept evidence and a retest after you fix.
Fixed fee · GST incl.
₹29,999
We find the credentials committed to your repositories, rotate them, and set up scanning so it stops happening.
Fixed fee · GST incl.
₹12,999
Every identity in your cloud account reviewed against what it actually uses, with over-permissioned roles tightened safely.
Fixed fee · GST incl.
₹18,999
A practical gap assessment against India DPDP Act 2023, covering consent, retention, notices and breach procedure.
Fixed fee · GST incl.
₹22,999
The technical controls and evidence collection an SOC 2 Type II audit needs, set up before the observation window starts.
Fixed fee · GST incl.
₹44,999
The rest of the bench
Capacity open this month
No discovery calls to find out a number, no statements of work that take three weeks to sign. Pick the engagement that matches the problem and we assign the engineers.