AI-driven · black-box · safe by design

Penetration testing that shows its work.

Enter a URL and test credentials. An AI engine runs a full, safe, black-box pentest and delivers a report with the results, the methodology, and the exact prompts used.

pentient · recon → authz → injection → report
$ pentient scan https://app.example.com
→ recon       18 checks · TLS, headers, CSP, cookies        ✓
→ authz       login ok · IDOR + privilege escalation (read) ✓
→ injection   reflected-input markers (safe payloads)       ✓
→ report      results + methodology + prompts               ✓
5 findings · 2 medium · 3 low · overall risk: low

How it works

From URL to signed-off report in four steps.

  1. 01
    Register a target

    Enter your URL and optional test credentials.

  2. 02
    Pick a package & pay

    Fixed price, shown upfront. Pay securely to unlock the scan.

  3. 03
    Sign the authorization

    E-sign the rules-of-engagement contract. No scan runs without it.

  4. 04
    Get your report

    Findings, methodology, and the exact prompts used — web + PDF.

Every prompt, in the report

We log the system prompt, each phase's instructions, and every masked tool call — and put them in your report.

Safe by design

Read-only confirmation, strict scope, SSRF/egress guards, secret masking. A scan only runs once it's paid and you've signed the authorization.

Findings you can act on

Mapped to a vulnerability knowledge base with CVSS, remediation, and references. Mark a finding fixed to trigger a targeted retest.

Pricing

Fixed cost. Quoted upfront. No surprises.

Recon

$1,500

Unauthenticated black-box recon.

  • DNS/CAA, TLS & ciphers
  • Security headers, cookies & CSP
  • Outdated components
  • Web + PDF report
Choose Recon
Most popular

Standard

$5,000

Recon + authenticated testing + injection.

  • Everything in Recon
  • Authenticated testing (1 role)
  • IDOR & privilege-escalation probes
  • Injection probes + status diff
  • Retests included after fixes
Choose Standard

Pro

$8,000

Deeper, multi-role engagement.

  • Everything in Standard
  • Multi-role authz (2 roles)
  • Deeper crawl & endpoint discovery
  • Priority queue
Choose Pro

Point pentient at your app.

Sign in with your email to register a target and request your first pentest.

Get started

Authorized testing only. You'll sign a rules-of-engagement contract before any scan runs.