Focused IT Security

Mini penetration test: Fast. Transparent. Certified.

Our security experts, who regularly find and report security vulnerabilities in companies such as PayPal, Tesla and Amazon, will test a system of your choice - in just 1-2 days at a fixed price.

Our mini penetration test follows the same standards as a full penetration test - with the difference that we focus specifically on those complex functional areas in which the most dangerous security gaps are hidden in practice.

  • Start within two business days
  • Report & action list by the next business day at the latest

How your Mini Pentest works

  1. Kick-off & Scope 30-minute session where we jointly prioritize high-risk functions.
  2. Test Day with Live Updates Maximum 8 hours of manual testing - critical findings reported immediately.
  3. Results & Actions Prioritized results with proof-of-concept and action recommendations.
Expandable with retest, full report & more
Mini Pentest security illustration
Damian Strobel - CEO DSecured

Damian Strobel

CEO

My Recommendation

Quick pentest with substance

Even a compact pentest should deliver clear insights. We prioritize your most critical attack surfaces and show how you can achieve tangible progress with a limited budget.
Why Fast Pentests Deliver Results

What Your Team Receives Within 48 Hours

The Mini Pentest delivers critical answers before you go live. We focus on real attack surfaces, report critical findings immediately, and provide you with a prioritized action list - without long wait times or PDFs that nobody reads.

Fast Results

Decision Confidence for Your Go-Live

Binding results within one business day after test completion

  • Risk assessment with clear traffic light recommendation for release
  • Transparent assessment of actual attack risk
  • Early notification of critical findings as soon as they're reproducible
View details
Focus

Focus on the Highest-Risk Journeys

We test what attackers would target first

  • Joint prioritization in kick-off instead of generic checklist
  • Specialized tests for payment flows, account takeovers & data access
  • Optional scope extension when more time can be allocated
View details
Report

Actions Your Team Can Implement Immediately

Actionable recommendations from experienced pentesters

  • Findings with proof-of-concept, impact and effort estimation
  • Technical recommendations + quick hardening wins
  • Optional management summary & retest for validation
View details
250+ tested releases in SaaS, e-commerce & platforms
< 24h until delivery of prioritized results
90% of our clients book a follow-up test within 6 months
When Is the Mini Pentest Worthwhile?

Mini Pentests Are the Right Choice When …

… you need security fast, without blowing your budget. We bundle expert knowledge into a compact test day and deliver clear decisions for product, management, and compliance.

Product Teams

Product Teams Before Launch

You need a second opinion before new features or integrations go live - without shifting the sprint plan.

  • Fine-tuning for release readiness
  • Direct line to pentester for questions
  • Updates for investors & stakeholders
Engineering Teams

Engineering & DevOps Teams

You continuously develop, rely on CI/CD, and want to ensure that critical journeys remain protected after each update.

  • Validation after major deployments
  • Clean handover to ticketing systems
  • Security partner when internal capacity is lacking
SME & SaaS

SMEs & SaaS Providers

You need affordable proof for customers, auditors, or sales partners, without waiting months for a full pentest.

  • Quick template for due diligence & security questionnaires
  • Fixed price - always plannable
  • Optional retest for final acceptance
IT Managers

IT Management & Compliance Officers

You need to assess risks, meet audit requirements, or show stakeholders that security is taken seriously.

  • Concrete risk classification and impact assessment
  • Management summary on request
  • Documented approach for ISO 27001, NIS2 & Co.
Extend Your Mini Pentest

Flexibly Adaptable - From Quick Check to Full Service

Start with the basic package and book additional services as needed for even more depth and professionalism.

Test Extension to 2 Days

Double the test time for an even more in-depth analysis of your application.

  • 16 hours manual testing instead of 8
  • More time for complex business logic
  • More detailed results
Additional cost +1.399 €

Retest

Verification of fixed vulnerabilities - for final security clearance.

  • Verification of all fixes
  • Updated report
  • Security clearance certificate
Additional cost +399 €

Results Workshop

Personal presentation of results with your team and direct exchange.

  • 1-hour workshop (remote)
  • Live demo of vulnerabilities
  • Q&A with senior pentester
  • Joint prioritization
Additional cost +299 €

Weekend Testing

Testing on weekends to avoid disrupting ongoing operations.

  • Saturday or Sunday
  • No disruption to daily operations
  • Ideal for production systems
Additional cost +1.399 €

Management Summary Only

Compact management summary without technical full report.

  • Executive-friendly format
  • Risk assessment at a glance
  • Prioritized action recommendations
Additional cost +399 €

All Upgrades Bookable in the Configurator

Simply select the desired additional services when configuring - or contact us for individual consultation.

Go to Configurator
Typical Use Cases

Where the Mini Pentest Makes the Difference

Whether feature launch, infrastructure change, or budget check - we focus on the areas where real attacks are most likely and deliver fast clarity for your team.

Web & API Tests
Web & APIs

Secure New Releases Under Time Pressure

For websites, SaaS platforms, e-commerce, or single-page apps, we test authentication, access control, and data flows - focused on the most critical journeys.

  • API endpoints & GraphQL schemas
  • Login, registration & password reset flows
  • File uploads, reporting & exports
Mobile Apps
Mobile

Secure Submission to App Stores

We test hybrid, native, and progressive apps including API communication, local storage, and permission concepts.

  • iOS & Android apps, incl. code obfuscation checks
  • Backend & third-party integrations
  • Offline functionality and tamper protection
Cloud & Infrastructure
Cloud & Infrastructure

Secure Exposed Systems & New Services

Web servers, databases, VPN, firewalls, or cloud accounts - we quickly identify configuration vulnerabilities and show prioritizations.

  • Internet-facing hosts & admin interfaces
  • Databases, queues & storage
  • AWS, Azure, GCP - IAM, security groups & secrets
DevOps & Automation
DevOps & Automation

Secure Pipelines & Access

We examine containers, Kubernetes, infrastructure as code, and CI/CD pipelines - including secrets management and access rights.

  • Git repositories, merge policies & secrets
  • Pipeline security & deployment access
  • Infrastructure as code & automation misconfigurations
Mini Pentest or Regular Pentest?

Make the Right Decision for Your Security Goals

The Mini Pentest addresses urgent questions with clear prioritization. For comprehensive compliance or certification requirements, we recommend the regular pentest. This overview helps you plan the next step.

Mini Pentest
1.399 € Fixed price

Ideal for rapid releases, budget checks, or a quick reality check of your security measures.

  • 1 test day + results within 24 hours
  • Focus on critical functions and highest risks
  • Email/Slack delivery with proof-of-concept
  • No retest included (optionally bookable)
Regular Pentest
from 5 days individual effort

Recommended for comprehensive applications, compliance requirements, or audits with formal reporting standards.

  • 5-15 business days test duration, depending on scope
  • Complete review of all functions & APIs
  • PDF report including management summary
  • Retest and personal closing meeting included
Time to Start
2-5 business days
2-6 weeks lead time
Scope
Prioritized functions, specific hosts or journeys
Entire application, internal processes & complex attack scenarios
Results
Email/Slack summary, results with PoC & action list
Formal report, management summary & workshop
Retest
Optionally bookable
Included
Best Suited For
Release decisions, budget checks, quick security confirmation
Certifications, compliance, red/purple teaming, complex platforms

Not sure which approach fits?

Together we'll define the scope and find the solution that truly meets your requirements.

Schedule free consultation
Process & Testing Focus

How We Guide You Through the Mini Pentest

A compact timeline, clear responsibilities, and maximum transparency: We keep you informed throughout the test day and deliver immediately actionable results.

1

Kick-off & Target Vision

30-minute video call for scope alignment, risk prioritization, and technical preparation (e.g., test access, VPN, documentation).

2

Test Day

Up to 8 hours of manual testing with supporting tool pipeline. We share critical findings immediately - preferably via Slack or your preferred channel.

3

Results Delivery

Prioritized results with PoC, impact, and action list - encrypted via email. We can add a management summary upon request.

4

Follow-up

We're available for questions, advise on fixing, and plan the retest or an extended pentest if needed.

Critical Vulnerabilities

Critical Security Vulnerabilities

CVSS 7.0 - 10.0
  • Authentication & Session Bypass
  • Injection vulnerabilities (SQL, RCE, …)
  • Data Exposure & PII Leaks
  • Horizontal & vertical privilege escalation
Risk Functions

Business-Critical Functions

Jointly prioritized
  • File uploads, processing, exports
  • Payment & booking processes
  • User management & role models
  • Third-party integrations & APIs
Proof of Concept

Proof of Concept & Knowledge Transfer

PoC || GTFO
  • Reproducible exploits step by step
  • Impact assessment in business context
  • Recommendations for fix & prevention
  • Optional retest for verification

Request a free mini pentest quote

{{ getCurrentStepTitle() }}

Step {{ currentStep + 1 }} of {{ totalSteps }}
Price estimation
{{ formatPrice(currentPrice) }}

Thank you for your request!

We will get back to you as soon as possible.

{{ question.title }}

{{ question.description }}

{{ addon.title }}

{{ addon.description }}

Almost there!

Leave us your contact details so that we can send you a non-binding, customized offer.

100% non-binding
Response in 24h
Secure data protection

Your data will be treated confidentially and will not be passed on to third parties.

Answers for Teams Who Need Clarity Fast

How does a mini pentest differ from a normal pentest?

The mini pentest is a targeted one-day test that focuses on critical safety aspects. It is perfect for regular checks and quick validations, while full pentests are more comprehensive.

How should I prepare for a mini pentest?

In the best case, a test environment is available that has been loaded with demo data and can be tested safely.

How long does it take before the test can take place?

For short tests, we are usually very flexible and can find an appointment within a few days.

We need a management summary, is this possible?

Yes, this can also be added to the report - but there is an extra cost.

Why is it so affordable?

In the mini pentest, we dispense with "pretty" PDF reports and concentrate on the most important functions and points of attack from an attacker's perspective. The focus is on vulnerabilities with a high and critical level of severity. The time required is also limited to 8 hours. Many vulnerabilities can be found and documented in this time. This gives the customer a good insight into the IT security of their product at a relatively low cost and allows them to decide how they want to proceed.

Is the mini pentest a black box pentest?

As a rule of thumb, yes - but since time is limited, it makes sense to provide the tester with documentation, for example. This makes the test more of a gray box pentest. However, we are generally flexible here.

Can the test time be doubled?

Yes, the costs will also double in this case.

Does the mini pentest also include automated scans?

Yes, every mini pentest is typically a manual test carried out by an IT security expert. However, depending on the case, automated tools are also run to find vulnerabilities. The customer also receives documentation on this.

We have special requirements, but only a very limited budget. Is the mini pentest something for us?

Let's talk and see if we can come together - there's usually a solution for everything.

What additional services can be booked with the mini pentest?

a) Doubling of engagement time b) PDF report with management summary c) Meeting (on-site or video) d) Comprehensive retest after fixing the findings.