Maintaining a public open source project? Fencer is free for public repos.
Contact us to apply →Fully autonomous, on-demand testing with results in hours. Ideal for teams that want quality coverage with fast turnaround.
Get startedA hands-on engagement scoped to your app. Best when you need deep, manual review of complex business logic.
Contact usA bespoke testing program tailored to your needs. Made for teams with mature security programs that want always-on coverage.
Contact usContinuous verification as you remediate
Already on a Fencer platform plan?
Add penetration testing1
Define the target application and rules of engagement.
2
Your engagement is queued and confirmed.
3
The app is probed and exploited, and attack paths are confirmed.
4
You get findings, confirmed paths, and downloadable artifacts.
5
Fix the issues, then re-test to verify.
Can one engagement cover multiple applications?
Yes. Scope several applications into a single engagement, or talk to us for larger environments.
Do I need a Fencer platform plan to run a penetration test?
No. Penetration testing is available on its own. If you are on a platform plan, you can add it as a one-time add-on in the same dashboard.
Does a penetration test help with SOC 2 and customer security reviews?
Yes. Testing hardens your application first, and the report and evidence also serve as proof for audits like SOC 2 and ISO 27001 and for buyer security questionnaires.
What do I get at the end of an engagement?
A report you can use for audits and attestations, with confirmed attack paths and exploit evidence, plus downloadable artifacts. AI-led includes unlimited retests; human-led includes a retest to verify your fixes.
What is continuous penetration testing?
Continuous is a bespoke program that keeps testing your application over time, re-running full coverage on every security-relevant change so new attack paths surface as you ship. It fits teams with more mature security programs that want always-on coverage. We scope the cadence, coverage, and price to your environment.
What is the guarantee?
The AI-led pen test comes with a guarantee: you only pay if we find a high or critical severity issue. If we do not find one, that engagement costs you nothing. The guarantee applies to the AI-led pen test only, not to continuous or human-led engagements.
How often can I run an AI-led penetration test?
As often as you ship. Each engagement is a one-time test, so you can run one whenever you push a meaningful change, and AI-led includes unlimited retests to verify your fixes.
What is the difference between AI-led and human-led penetration testing?
AI-led uses autonomous agents to test your application on demand, with results in hours and a report you can use for audits and attestations. Human-led brings human experts for deep, manual testing of complex business logic over a longer engagement. They complement each other, and many teams use both.