Simple, Transparent Pricing
Priced by attack surface — not by the number of scans. Scale as your organization grows.
Starter
Everything you need to start securing your attack surface.
- 1 domain / web app
- Up to 3 subdomains actively pentested, unlimited discovered
- Continuous scanning
- Automated exploit validation
- Monthly security report
- Vulnerability dashboard
- Slack / email alerts
Limits
- Max 10k requests per scan
- Max 2 concurrent scans
Growth
Scale your security coverage as your infrastructure grows.
- Up to 5 domains
- Up to 25 subdomains
- API scanning
- Continuous pentesting
- Exploit reproduction steps
- Basic integrations (Slack / email)
- Priority scanning
Limits
- Up to 25k requests per scan
- 5 concurrent scans
Professional
Comprehensive coverage with integrations and human oversight.
- Up to 10 domains
- Unlimited subdomains
- API scanning
- Continuous pentesting
- Exploit reproduction steps
- Attack chain detection
- Full integrations (Slack / Jira / GitHub)
- Priority compute queue
- Quarterly human review
Limits
- Up to 50k requests per scan
- 10 concurrent scans
Enterprise
Full-spectrum offensive security for complex environments.
- Unlimited domains
- External + internal scanning
- Authenticated testing
- Custom exploit development
- Dedicated pentester review
- Compliance reports (SOC2 / ISO / PCI)
- Private agent deployment
- SLA guarantee
- Priority support
Add-ons
Extend your coverage with powerful extras.
Additional Domain
€40–€100/month
Expand your attack surface coverage with extra domains.
Internal Network Scanning
€500–€2,000/month
Scan internal infrastructure via a lightweight VPN agent.
Human Pentester Validation
€2k–€10k per engagement
Expert manual review and validation of agent findings.
Continuous Red Team Mode
€1,000–€5,000/month
Agents actively attempt exploitation on an ongoing basis.
Frequently Asked Questions
How do you define what I'm paying for?
We price based on your attack surface — domains, subdomains, and assets — not the number of scans. This means you get continuous coverage without worrying about usage limits.
What types of systems can Vektyr test?
We test web applications, APIs, cloud infrastructure (AWS, Azure, GCP), internal networks, and more. Our agents adapt to your specific technology stack.
How does managed agent testing compare to hiring a manual tester?
Our team deploys AI agents that follow the same methodologies as experienced pentesters but operate at machine speed. You get highly consistent, repeatable results — and we test continuously rather than once per quarter.
Is my data safe during testing?
Absolutely. All testing is conducted within strict rules of engagement that we agree on together. Our agents never exfiltrate data and all findings are encrypted and stored securely.
Can I integrate Vektyr into my CI/CD pipeline?
Yes. Our Growth, Professional and Enterprise plans include integrations with Slack, Jira, and GitHub, allowing you to incorporate security into your development workflow.
What happens if Vektyr finds a critical vulnerability?
You'll receive an immediate alert via Slack or email with full details, proof-of-concept, and prioritized remediation steps. We re-run tests after you apply fixes to confirm resolution.
Do you offer annual billing?
Yes! You can save 20% by switching to annual billing — just toggle the billing switch at the top of the pricing section. Annual plans are billed upfront for the full year.