Flat where you can, scoped where you need us.

Start an application pentest yourself at a flat price, retests included. For agents and embodied AI, one conversation scopes it to your environment.

Pricing across the surfaces

Applications & systems

From $950
per application, self-serve

Pentest your apps, APIs, and cloud, continuously.

AI agents

Custom
scoped to your agents

Red-team and harden your LLM agents.

Embodied AI

Custom
scoped to your fleet

Secure the software brain of your embodied AI.

Every engagement: sealed single-use infrastructure · verified findings only · your data trains nothing · first report in days

Flat. Retests included.

The self-serve wedge, in full. One audit-ready pentest, continuous testing on every release, or coverage across your whole portfolio.

Pentest

$950per application

One full AI pentest of an app or API, with an audit-ready report.

  • Full methodology coverage on one target
  • Verified, proof-backed findings only
  • Audit-ready report (SOC 2 / ISO 27001 ready)
  • Retests included for 30 days
  • Sealed single-use infrastructure
Start a pentest
Recommended

Continuous

Custom pricing

The plan we recommend. Retest automatically on every release.

  • Everything in Pentest
  • Automatic retest on every deploy
  • Continuous assurance, not a point-in-time PDF
  • Trend + regression tracking across runs
  • Priority model routing
  • Private support channel
Talk to sales

Enterprise

Custom pricing

Coverage across your whole portfolio, with the controls your security org expects.

  • Everything in Continuous
  • Multiple apps + APIs, one agreement
  • Custom scope, SSO, and data-handling terms
  • Run in your own cloud / VPC
  • Auditor-facing reporting + evidence export
  • Dedicated security engineer
Talk to sales

Test on every release, not once a year

A traditional pentest is a single event: one report, then eleven months blind. Uvy runs on every release, so your coverage keeps time with your code.

Pricing questions

How does pricing work across the surfaces?

+

Application pentesting is self-serve with a flat price, so you can start one yourself and test on every release. Agents and embodied AI are scoped to your environment in a short conversation, then priced as a program. Get in touch and we will put together the right coverage.

Why flat pricing on applications instead of per-engagement?

+

Because AI does the work that used to take a team weeks. Our costs are predictable, so yours are too. Flat pricing also means you can test on every release instead of rationing pentests to once a year.

Do retests cost extra?

+

No. A Pentest engagement includes retests for 30 days, so when you ship a fix you can confirm it's actually fixed, and prove the regression is closed, without a new engagement. For retesting that never expires, the Continuous plan retests automatically on every release.

Is there a zero-findings guarantee?

+

If a run surfaces nothing exploitable, you still get the audit-ready report documenting the coverage and the clean result, which is exactly what an auditor wants to see.