Solutions
Security solutions you can use today
servasec builds security tooling. AppGuard is our first solution: an open source ASPM platform, available today. It aggregates findings from your scanners, scores them and tracks them from detection to remediation. The next pieces land here, and our services step in when they need to be applied in a real environment.
Available solution
AppGuard
Application Security Posture Management for teams running SAST, SCA, DAST and secret scanning. AppGuard aggregates findings from 20+ scanners into one dashboard, scores them with EPSS and asset criticality, and tracks them from detection to remediation.
- 20+ native scanners, auto-detected and normalized
- Findings lifecycle, assignments and due dates
- EPSS-based risk scoring and version comparison
- Results pushed from any CI/CD with a single curl command
- HMAC-signed webhooks to Slack, Teams or your endpoint
- Team-based RBAC and per-application permissions
How to get it
- Open sourceFree · AGPLv3
Self-hosted with a single Docker Compose command, unlimited apps and users.
- Self-hosted Pro500 EUR/year
Everything in open source, plus SSO/SAML/OIDC, MCP Server, audit log and email support.
- SaaSFrom 19 EUR/month
Hosted and managed by servasec, no infrastructure to run. 14-day free trial.
Services
Engagements run by the servasec team
Three services, each with a defined scope, a published methodology and a written deliverable. This is the human side: the part that applies the solutions in your environment.
| # | Service | Focus | Summary |
|---|---|---|---|
| 01 | Infrastructure hardening | Active Directory, CI/CD pipelines and Kubernetes clusters, hardened in place. | |
| 02 | Penetration testing | Applications, APIs, infrastructure in one engagement. | |
| 03 | Red team engagement | Objective-driven adversary simulation against a critical target. |