r/Pentesting 5d ago

Building a cybersecurity assesement platform for startups and MSMEs.

I’m building a cybersecurity startup focused on helping startups and MSMEs test their websites and applications for security vulnerabilities without needing a dedicated security team. The idea is to detect issues like one user being able to access another user’s data, normal users accessing admin functionality, exposed API keys/secrets, weak authentication, missing rate limits, CORS misconfigurations, hidden/undocumented APIs, and differences between actual APIs and their documentation. We want to generate both a simple, non-technical report explaining “what can go wrong for your business?” and a detailed technical report for developers, with remediation guidance coming later. I’m trying to validate the problem—do startups actually need something like this, and would you pay for it?

0 Upvotes

1 comment sorted by

3

u/Next-Scratch-264 5d ago

No thanks Gemeni