One application. One week. No charge.

Pick one internet-facing application. Prancer tests it from the outside the way an attacker would — unauthenticated, no agents, nothing to install, nothing taken offline. Then we send you the report and tell you exactly what we found.

What you get

What's tested

Exposed surface enumeration, authentication and session handling, injection and input-handling classes, access-control and object-reference issues, misconfiguration and exposed interfaces, and transport and header hygiene — each finding validated rather than reported from a scanner signature.

How to request it

Submit the request form on this page using your work email. The email domain must match the domain of the application you are submitting, so we can confirm you are authorized to request testing for it. Free email providers are not accepted.

Request your free external assessment or contact the Prancer team.