Hi!
I offer entry-level penetration testing for personal websites,
small business sites, and basic web applications. This is a great
fit if you want a security health-check without paying enterprise prices.
What you get:
- Reconnaissance and information gathering on your target
- Automated vulnerability scanning using tools like Nmap, Nikto,
OWASP ZAP, and Burp Suite (Community)
- Manual testing for OWASP Top 10 issues — SQL injection, XSS,
CSRF, broken authentication, insecure direct object references,
security misconfigurations, etc.
- A clear PDF report listing each finding with:
- Severity (Low / Medium / High)
- Where I found it
- Why it matters
- Recommended fix
What I need from you:
- Written permission to test the target (this is legally required)
- Target URL and scope (which pages/endpoints are in scope)
- Test credentials if you want authenticated areas checked
Honest note:
I'm an early-career practitioner, not a senior certified pentester.
I price this service accordingly. If you handle sensitive financial,
medical, or government data, please hire a CEH/OSCP-certified
professional instead. I won't run destructive tests, DoS attacks,
or anything that could break your site.
Turnaround: 2–5 days depending on scope.