
I offer penetration testing for websites, web apps, and AI-powered
systems (chatbots, LLM apps, and agents). Most small businesses
and startups skip security testing because it's expensive — I
make it affordable.
What I test:
Web & App Security
- OWASP Top 10 vulnerabilities — SQL injection, XSS, CSRF, broken
authentication, security misconfigurations, and more
- Manual + automated testing using Nmap, Burp Suite, OWASP ZAP,
and Nikto
AI & LLM Security
- Prompt injection (direct and indirect)
- Jailbreaks and guardrail bypasses
- System prompt and sensitive data leakage
- Insecure output handling and excessive agent permissions
- RAG and vector database weaknesses
- Based on the OWASP LLM Top 10 and MITRE ATLAS frameworks
What you get:
A clear PDF report with each finding, severity rating, proof-of-
concept, and a recommended fix. One free re-check after you
apply the fixes.
What I need from you:
- Written permission to test (legally required)
- Target URL, API, or test access
- Brief on scope and intended behavior
Honest note:
I'm an early-career practitioner, not a senior certified pentester,
and I price accordingly. For systems handling sensitive financial,
medical, or government data, please hire a certified professional.
I won't run destructive attacks or anything that could break your
system.
Turnaround: 3–7 days depending on scope.