There is no hard limit on the number of URLs or domains per package. All targets should, however, belong to the same business application. For example, an e-commerce platform may span multiple subdomains, APIs, or third-party web services—these can be covered by a single package. Testing a different system, like e-banking, would require a separate package.
ImmuniWeb On-Demand
Get a QuoteCompliance-Ready Web Application Penetration Testing
ImmuniWeb® On-Demand leverages our award-winning Machine Learning technology to enhance the speed and accuracy of web application penetration testing. Each pentest is conducted manually by certified experts, fully customizable to meet your business and regulatory requirements, and backed by a zero false-positives SLA.
Unlimited Patch Verification and 24/7 Expert Support
Included with every project is unlimited patch validation to ensure vulnerabilities are effectively remediated. You'll also have 24/7 access to our security analysts for personalized assistance, making ImmuniWeb On-Demand the ideal solution for organizations seeking audit-ready, high-assurance penetration testing.
Key Features
- SANS Top 25 & business logic — beyond OWASP Top 10
- Threat-Led Testing — Simulation of real attacks relevant to your business and industry
- DevSecOps Native — Unlimited patch validation, SDLC & CI/CD integration
- Zero False-Positives SLA — 100% validated findings, money-back guarantee
- Rapid Delivery SLA — Always on-schedule testing and report delivery
- First-Class Reports — Zero noise, full exploitation cycle, threat-aware risk scoring