APIsec Pricing

Flexible plans to support every type of API security testing need from
independent pen testers to large-scale, integrated enterprise DevSecOps teams

Choose the plan that fits your security testing requirements

Free

Free Forever
Sign Up

Pen Test Edition

$325/month

per 100 Endpoints

30 Day Trial

Standard

$650/month

per 100 Endpoints

30 Day Trial

Pro

$2600/month

per 100 Endpoints‍

30 Day Trial

Users

Single user
Single user
Team
Team

Support

Community
Community
Premium
Premium

OWASP API Top 10 Coverage

Full Coverage
Full Coverage
Full Coverage
#2, 4, 6, 7

Authenticated  testing

Internal API Scanner

Security Testing

(Server config, headers, injection, authentication, data exposure)

Business Logic Testing

(BOLA, RBAC, mass assignment)

Custom-branded Reports

Scheduled, continuous testing

Integrations

(Gateway, CI/CD, ticketing)

Shift Left API Security

APIsec delivers peace of mind for forward-thinking security and tech leaders

Matthew March
EVP/CIO

There are API security solutions that may monitor for anomalies or alert you when something might be under attack. That information is valuable, but the reactive nature of it is dangerous, especially in this industry, because that's where breaches happen. The ability to do proactive, continuous scanning of our APIs offers a much more comprehensive approach to API security. APIsec is always checking our APIs, finding vulnerabilities, and the level of detail is amazing.

Sebastien Jeanquier
Chief Security Officer

It was very important for me that we weren't just scratching the surface of security by trying to throw a dumb scanner at a bunch of endpoints and failing in a bunch of cases because it's not able to follow the business logic of different paths. With APIsec, Upvest has both the depth and the breadth of testing on the basis of a variety of logic within the API itself.

Mark Nagiel
CISO

Comprehensive API security testing can be a big challenge. Not only are there dozens of security categories that we wanted to test for, but it was also important that we were running tests every time the code changed. Our primary focus with APIsec has been the thorough nature of the way the scans are executed. We are now confident in the breadth, depth, and cadence of the API security testing portion of our vulnerability management program.

Josh Franklin
Sr. Manager Information Security Operations

APIsec delivered on exactly what we needed; an API security solution that was pretty hands off as much as possible, with strong automation and intelligence, that would allow us to understand our API landscape, and discover and address any potential issues before they reach production.

Explore More Case Studies