Cybersecurity

Security with judgement, not smoke

We assess, prioritize and help fix. Manual pentest of web apps and APIs with a launch offer: no high or critical findings, COP $0.

Guarantee COP $0 with no high findingsScope Web · APIsIncludes 1 retest
In short

Honest security starts with actually looking: manual and automated testing on your real surface, with validated impact and clear priorities. If we find no high or critical vulnerabilities, the assessment costs nothing.

The full launch offer —COP pricing, scope, retest— lives on the Pentest Colombia page.

What we deliver

What the practice includes

From test to report, from patch to retest: security that ends in a fix.

01

Web & API pentest

Manual plus automated, with reproducible evidence for every finding.

02

Hardening

Configuration, dependencies, secrets and exposed surface.

03

Incident response

Containment, analysis and reporting when something blows up.

04

Human factor

Controlled phishing and social engineering, from COP $5M.

How we work

How an assessment runs

  1. Scope

    Domains, apps and APIs in a signed document; nothing outside contract.

  2. Assessment

    Manual plus automated; every finding validated and reproducible.

  3. Report

    Executive and technical: evidence, impact, priority.

  4. Retest

    Verification after patching — included in paid assessments.

0Mattack attempts per year in Colombia (CRC/FortiGuard)
0Mattempts per day
COP $0if no high findings
0retest included
Scope and deliverables

The assessment, in writing

ScopeWeb apps and APIs, in a signed document.
MethodManual plus automated, hand-validated.
SeverityCVSS and business context.
ReportExecutive + technical with evidence.
Retest1 included in paid assessments.
ExtrasControlled phishing from COP $5M.
Frequently asked questions

The questions we hear often

What if you find nothing?

You keep the full report with medium, low and informational findings, at no cost.

How is the price calculated?

COP $0 with no high findings; COP $5M for one; capped at COP $9M. Details on the Pentest page.

Do you test APIs?

Yes, together with the web — that's where the expensive doors open today.

Do you run simulated phishing?

Yes, from COP $5M, with a report and team training.

Do you help remediate?

Yes: we can prepare an independent remediation proposal.

Talk to Slash

Let's put it in production

Tell us your challenge. We reply within 24 hours with an honest first read: if we can help, we'll say how; if not, we'll say who can.

I reply personally. No endless forms, no canned replies.