I will perform a security audit on your saas or web app

Algeria

I speak Arabic, English, French

Your Chill Penetration tester

am a Computer Security Engineering student and eJPT-certified penetration tester specializing in ethical hacking and cybersecurity. I help identify security weaknesses through web application penetrat...
About this Gig

Shipping fast as a solo founder usually means security review gets skipped. That's how exposed API keys, broken auth, and unprotected endpoints end up in production and how one bad actor turns into a data breach, a leaked customer list, or a suspended hosting account.

I'm an eJPT-certified penetration tester with hands-on experience auditing real production systems not just OWASP checklists copy-pasted into a report. I'll test your SaaS, web app, or API the way an attacker actually would, and hand you back a clear, prioritized list of what to fix first.

What I check (scoped to your package):

  • Authentication & session handling (broken auth, session fixation, weak password policies)
  • Authorization / access control (IDOR, privilege escalation, broken object-level access)
  • Injection risks (SQL, NoSQL, command injection) on inputs and API params
  • API security (rate limiting, mass assignment, excessive data exposure)
  • Exposed secrets & misconfigurations (leaked API keys, open storage buckets, debug endpoints left on)
  • Infra-level exposure (webhooks, worker queues, reverse proxies/tunnels, cloud VM ports)

What you get back: A report ranked by severity (Critical / High / Medium / Low), each find