A fixed-scope assessment of one Android app on real rooted hardware. Compiled APK or AAB; no source required. Every reported finding manually reviewed before delivery, mapped to your compliance framework, with a signed report and a remediation call. One retest included.
$1,500 founding price · one Android app · iOS scoped separately
A complete engagement, not a scan you have to interpret on your own.
Your compiled APK or AAB runs on physical rooted Android hardware — no source required — so the runtime attacks that only surface on real devices are actually exercised: SSL-pinning bypass, Keystore extraction, root-detection evasion, and live network interception.
I personally review and validate each finding before it reaches your report. You get a short list of things that are actually true and actually matter — not a raw scanner dump you have to triage.
Each finding is mapped to OWASP MASVS 2.0, PCI-DSS 4.0.1, HIPAA, GDPR, SOC 2, NIST 800-163, and LGPD. Mapped evidence for your auditor — not a compliance certification. Auditor-ready PDF for the compliance team, JSON/SARIF for your engineers and CI.
Findings ship with reproduction steps, and captured traffic and extracted artifacts are reviewed and included where collected — so your team can confirm each issue and fix it without guessing.
A live walkthrough with your team of what was found, what to fix first, and what can wait. Straight talk, no fear-mongering.
Fix the issues and I re-run the audit to confirm they are closed — one retest is included in the price. You end up with a clean report you can hand to a customer or an auditor.
Built for mobile-first teams where a security gap has a real, near-term cost.
A customer's security team wants a mobile pen test before they sign, and the deal is stalling while you scramble for one.
You need mobile security evidence on a deadline, mapped to the controls your auditor or QSA is asking about.
You handle payments, PHI, or funds, so the cost of a runtime issue reaching production is real — and worth catching first.
You release mobile every sprint but only pen-test once a year, if at all. This closes that gap without a firm-sized invoice.
Same real-device rigor. A fraction of the time, and a price a startup can actually approve.
| Founder-verified Android assessment | Traditional pen-test firm | |
|---|---|---|
| Turnaround | 3 business days | 2–6 weeks |
| Price | $1,500 founding price | $8,000–$50,000+ |
| Testing on real physical devices | ||
| Hand-verified by a senior tester | ||
| Findings mapped to 7 frameworks | Manual write-up | |
| One retest included | New engagement | |
| Can re-run every release (CI/CD) | — |
Three steps, three business days.
Submit the short inquiry form below with your compiled APK or AAB in mind — no source code, no SDK, no code changes required. I reply within one business day to confirm scope.
Static, dynamic, and agentic AI pen testing on real rooted Android devices — then I manually review every reported finding before delivery.
A signed, compliance-mapped report in three business days, a 30-minute readout, and one retest once your fixes are in.
Founder-verified Android security assessment. $1,500 founding price, 3 business days, one retest included. Tell me what you are getting ahead of and I reply within one business day.
$1,500 founding price · 3 business days · One retest included
Three quick choices — no typing yet.
Compiled APK or AAB; no source required. Every reported finding manually reviewed before delivery.
Typically a reply the same day, from me directly.
We use necessary storage for security and login. With your permission, we also use analytics to understand page journeys and marketing pixels to measure ad campaigns.