>_ flexible pricing_ <

For every team, every release, and every pace

Start with a one-off pentest or move to continuous and 24/7 coverage. Transparent pricing, clear scope and flexible models , built around your product.

One-off engagements are priced per project. Ongoing security is priced per domain, per month.

Woolves jumping sheep illustration
Security as a recurring part of your development proces
Ethical hackers who truly work together with your developers
One platform that makes the entire security process simple

Our plans

Lone Woolf

One-off pentest

A clear snapshot of your security, right now.

  • A quick snapshot of your current risks
  • Fast turnaround within 1-2 weeks
  • Decision-ready insights
  • An external perspective on what your team might miss.
  • Not implemented within your development workflow
  • No 24/7 threat management

woolf pack

Pentester(s) as a service

Security that evolves with every release.

  • Security becomes a habit, not a snapshot.
  • Moves at your pace, without slowing you down.
  • Developers learn from every test and improve continuously.
  • Always up to date: no outdated reports
  • No 24/7 threat management

alpha woolf

Woolves 24/7

Always-on testing that never sleeps.

  • Scans every month, week, day or your custom preference.
  • 24/7 threat management using our AI agent
  • Discover threats exactly when they happen.
  • Live response powered by AI and experienced developers for problem solutions.

Each higher level adds not only more protection, but also deeper collaboration and insight. This allows your digital resilience to grow alongside your organization, without added complexity or barriers.

Features and pricing per plan

Small scope
starting from € 4999,-
Single web application, up to 2–3 user roles.
Perfect for smaller platforms or applications that need a focused security assessment.
Medium Scope
starting from € 8999,-
Multi-application or app + API + infrastructure.
Perfect for medium platforms or applications that need a focused security assessment.
Large Scope
starting from € 14999,-
Complex platform, multiple environments and integrations.
Perfect for large platforms or applications that need a maximum security assessment.
Custom Scope
let's talk
Need-to-know basis. No standard applies.
When nothing really fits.
hours per week
(or 32 hours monthly)
starting from € 3999,-
What you get
  • On-demand security expertise when you need it
  • Vulnerability checks based on your requests or releases
  • Targeted testing for specific features or changes
  • Access to our PenPortal for tracking & retests
  • Secure reporting for compliance and audits
  • All findings logged in our secure portal
  • What you get
    • On-demand security expertise when you need it
    • Vulnerability checks based on your requests or releases
    • Targeted testing for specific features or changes
    • Access to our PenPortal for tracking & retests
    • Secure reporting for compliance and audits
    • All findings logged in our secure portal
hours per week
(or 64 hours monthly)
starting from € 7999,-
What you get
  • Regular security updates and recommendations
  • Vulnerability testing for requested areas and new releases
  • Proactive suggestions for securing upcoming features
  • Direct collaboration with your developers
  • Woolves portal access with unlimited retests
  • All findings logged in our secure portal
  • What you get
    • Regular security updates and recommendations
    • Vulnerability testing for requested areas and new releases
    • Proactive suggestions for securing upcoming features
    • Direct collaboration with your developers
    • Woolves portal access with unlimited retests
    • All findings logged in our secure portal
hours per week
(or 96 hours monthly)
starting from € 10999,-
What you get
  • Security embedded into every development sprint
  • Continuous vulnerability discovery without waiting for requests
  • Threat modelling for planned features and integrations
  • Ongoing risk assessments for the full environment
  • Strategic reporting for both dev teams and management
  • All findings logged in our secure portal
  • What you get
    • Security embedded into every development sprint
    • Continuous vulnerability discovery without waiting for requests
    • Threat modelling for planned features and integrations
    • Ongoing risk assessments for the full environment
    • Strategic reporting for both dev teams and management
    • All findings logged in our secure portal
hours per week
(dedicated full-time hacker)
starting from € 16999,-
What you get
  • A full-time security specialist integrated into your team
  • Complete coverage for multiple projects and environments
  • Collaboration as part of your daily workflow
  • Continuous security validation and process improvement
  • All findings logged in our secure portal
  • Tailored to meet strict industry or compliance requirements
  • What you get
    • A full-time security specialist integrated into your team
    • Complete coverage for multiple projects and environments
    • Collaboration as part of your daily workflow
    • Continuous security validation and process improvement
    • All findings logged in our secure portal
    • Tailored to meet strict industry or compliance requirements
Scout
Scans every month
179,-
monthly
per domain
See the terrain before others do. Monthly surface scans for early exposure detection.
What you get
  • Monthly surface scan of your entire root domain
  • AI-powered exploit detection
  • Social exposure analysis
  • Subdomain discovery
  • Reverse IP lookups
  • Port scanning
  • Security header checks
  • Domain reputation
  • Javascript & library risk check
  • Web archive history scan
  • Risk-based issue triage in portal
  • Turn findings into issues
  • Catch exposures before attackers do
  • What you get
    • Monthly surface scan of your entire root domain
    • AI-powered exploit detection
    • Social exposure analysis
    • Subdomain discovery
    • Reverse IP lookups
    • Port scanning
    • Security header checks
    • Domain reputation
    • Javascript & library risk check
    • Web archive history scan
    • Risk-based issue triage in portal
    • Turn findings into issues
    • Catch exposures before attackers do
Patrol
Scans every week
299,-
monthly
per domain
Always watching. Never guessing. Weekly scans to track changes and prioritize risk.
What you get
  • Everything in Scout
  • Weekly surface scans
  • Faster detection of misconfigs & exposures
  • Know when your attack surface changes, every week
  • Prioritized alerts delivered fast
  • Continuous comparison with past scans
  • Escalation into actionable issues inside portal
  • Yearly review with our ethical hackers
  • What you get
    • Everything in Scout
    • Weekly surface scans
    • Faster detection of misconfigs & exposures
    • Know when your attack surface changes, every week
    • Prioritized alerts delivered fast
    • Continuous comparison with past scans
    • Escalation into actionable issues inside portal
    • Yearly review with our ethical hackers
Live Watch
Scans every day
499,-
monthly
per domain
No sleep. No gaps. No surprises. 24/7 AI-driven scanning and instant risk detection.
What you get
  • Everything in Patrol
  • 24/7 rolling surface scans
  • AI-driven change detection & anomaly spotting
  • Be the first to know when new risks appear
  • Daily or weekly intelligence reports
  • 24/7 insights into reports via portal
  • Highest-priority risk scoring & triage
  • Quarterly review with our ethical hackers
  • What you get
    • Everything in Patrol
    • 24/7 rolling surface scans
    • AI-driven change detection & anomaly spotting
    • Be the first to know when new risks appear
    • Daily or weekly intelligence reports
    • 24/7 insights into reports via portal
    • Highest-priority risk scoring & triage
    • Quarterly review with our ethical hackers
Alpha
Custom scope
1.250,-
monthly
per domain
No limits, start pentesting with results. Custom scanning for complex environments.
What you get
  • Everything in Live Watch
  • Unlimited scans across multiple root domains
  • Custom integrations (SSO, APIs, webhooks)
  • Tailored threat intel feeds
  • Priority support & dedicated retests
  • Nothing slips through. Full coverage, full control
  • Quarterly review with our ethical hackers
  • What you get
    • Everything in Live Watch
    • Unlimited scans across multiple root domains
    • Custom integrations (SSO, APIs, webhooks)
    • Tailored threat intel feeds
    • Priority support & dedicated retests
    • Nothing slips through. Full coverage, full control
    • Quarterly review with our ethical hackers
Do you want to scan more domains or IPs, or do you have special requirements? We would love to get in touch with you and partner up!

Why our solutions actually bites

At Woolves, we combine human expertise with smart technology.


You don’t just get a list of vulnerabilities. You gain ongoing visibility, real collaboration and a structured way to reduce risk over time.

Traditional pentests

Woolves

Frequency

One-off, often after release

Continuous, integrated into development

Reporting

Static PDF reports

Live visibility inside Woolves portal

Flexibility

Fixed scope, standard approach

Scalable model: one-off, PTaaS or 24/7

Knowledge transfer

Limited handover

Learn, improve and strengthen with every test

Collaboration

External vendor

Hackers embedded in your (extended) team

Trusted by 100+ businesses worldwide

>_ schedule a demo

Make your software safer and your team stronger

Schedule a demo and see how continuous security becomes a natural part of your development process.

Woolves team photoCall-to-action background texture