Tuned to what
you're securing
Every product exposes a different set of paths. Choose a sector to see where the test usually concentrates and which references may be relevant, depending on scope.
B2B SaaS
Multi-tenant web apps where one customer's data must never reach another's.
- Tenant isolation and cross-tenant IDOR
- Broken access control and privilege escalation (RBAC)
- SSO / SAML / OAuth flaws
- Object- and function-level API authorization
The report may support work related to SOC 2, ISO 27001 and GDPR.
Fintech & payments
Apps that move money and hold financial and personal data.
- Money-movement, transaction and balance logic
- Cross-account IDOR
- Payment and refund API abuse and race conditions
- Financial-PII exposure
The report may support work related to PCI-DSS, DORA and ISO 27001.
E-commerce
Storefronts where checkout, pricing, and accounts are the value.
- Checkout, cart, price and coupon manipulation
- Payment-integration flaws
- Account takeover and credential stuffing exposure
- Order and inventory business logic
The report may support work related to PCI-DSS and GDPR.
Logistics & mobility
Platforms coordinating fleets, tracking, and third-party partners in real time.
- Partner and third-party API trust boundaries
- Geolocation and tracking data exposure
- Driver and rider app and token handling
- Real-time system abuse
The report may support work related to NIS2 (transport) and GDPR.
IoT & connectivity
Connected products managed through cloud, apps, and networks.
We test the connectivity and management plane around the connected product.
- Device management-plane and provisioning APIs
- Cloud-to-device trust and authentication
- Companion mobile app
- Network protocol and segmentation exposure
The report may support work related to NIS2 and GDPR.
Healthtech
Products handling sensitive patient and health data, where access control and the evidence trail matter most.
- PHI and health-data access control and authorization
- Audit-trail integrity
- Consent and data-sharing boundaries
- API exposure of records
The report may support work related to GDPR and ISO 27001.
HIPAA only if you handle US patient data.
We agree the scope and testing rules, publish confirmed findings in Outer Core and provide a reviewed report. Any retest is recorded under the terms agreed for the engagement.
Shape the engagement around your stage
Pick your stage: the engagement is shaped around it.
Test a feature as you ship it.
Fast, scoped tests keep your release cycle moving, and pre-launch checks catch issues before your users do.
No security team to build.
Checklist progress and confirmed findings appear in Outer Core during the engagement, giving your team a head start on remediation.
Zero disruption to daily work.
Scoped, time-boxed engagements keep the team moving, and a longer collaboration builds a security picture you can plan against.
What the engagement gives your team
A testing window you can plan around
We confirm the start and delivery window after the scope and tester match are clear.
Follow the engagement
Checklist progress and confirmed findings appear in Outer Core as the test moves forward, and you can talk directly with the tester.
A human tester leads the work
A named tester works through the agreed scope, using tools to support careful manual testing.
A quote based on the scope
A fixed quote before anything starts.
A pentest should leave your team ready to act
Your team can see what was tested, reproduce each confirmed issue and know what to fix next.
A pentest should leave your team ready to act
Your team can see what was tested, reproduce each confirmed issue and know what to fix next.
Each confirmed finding explains the affected system, conditions, proof and demonstrated impact.
Remediation guidance gives engineers a practical place to start and keeps the tester available for questions.
The approved scope, methodology, findings and recorded retest results stay together.