Tell us about your app.
A few minutes now, and no payment yet. We’ll review your request, confirm the scope and price, and take you through a clear authorisation before anything is tested.
- 1We review it
A person reads your request, checks the scope makes sense, and confirms you’re authorised to test the target. We approve every engagement — no automatic “pay and we start.”
- 2We confirm scope & price
You get a clear scope and a fixed price (or a quote for Custom). You approve, then pay — nothing before that.
- 3You authorise the test
You sign a short, plain authorisation setting exactly what we may and may not do. Then we schedule and begin.
- 4You get the report
Human-verified findings with fixes, delivered securely, plus a retest to confirm they’re closed.
We never ask for passwords, API keys or source code in this form. When we need test accounts, we’ll send you a secure, one-time link — never plain email.
Elitor is an independent security practice — not a CREST/CHECK-accredited penetration-testing firm. Our assessments help you find and fix real issues affordably; they are not a substitute for an accredited pentest where one is required for regulatory, insurance or procurement compliance. If that is what you need, we will tell you.