Detectify
External attack surface management platform combining continuous automated scanning with real-world hacker research
- Also known as
- detectify
Available worldwide · Popular in: SE, EU
What is Detectify?
A cloud-based security platform that continuously discovers, monitors, and tests your external attack surface across domains, applications, and APIs. Uses payload-based scanning, ethical hacker research, and AI-driven vulnerability testing to identify exploitable weaknesses before attackers can exploit them.
Detectify pricing
Plans, per-tier features and add-ons, dated and linked to live pricing. Pricing changes often; always verify at source before you rely on it.
Free tier available. Subscription plans from €2,500–€15,000 annually. 14-day free trial.
Starter
FreeGreat for developers and security researchers
- teams
- 1
- users
- 5
- API scanning (REST & GraphQL)
- Standard integration templates
- Email support
Standard
For growing teams requiring advanced access controls and comprehensive API scanning
- users
- 10
- Up to 10 users
- API scanning (REST & GraphQL)
- Single sign-on (Okta, Ping Identity, OneLogin, SAML 2.0)
- 2 hours expert onboarding
- Dedicated professional support
Professional
For scaling operations requiring internal network visibility and automated CI/CD workflows
- teams
- 2
- users
- unlimited
- internal_environments
- 1
- Unlimited users across 2 teams
- CI/CD integration with internal scanning
- Advanced discovery (IP ranges & apex domains)
- All integrations access
- White-labeled scan reports
- 5 hours hands-on onboarding
- Dedicated customer success manager
- Surface Monitoring with continuous asset discovery
- Application Scanning
Enterprise
Contact salesFully customizable solution for enterprise-scale security operations
- teams
- unlimited
- users
- unlimited
- internal_environments
- 3
- Unlimited users and teams
- 3 internal scanning agents included
- Fully customized vulnerability tests and modules
- Service level agreement (SLA)
- Dedicated customer success manager and solutions engineer
- 15 hours tailored onboarding
- Quarterly business reviews
- Priority early access to new features
- All Professional features
Add-ons
- PCI ASV Scanning€500/yr
- Additional domains (Surface Monitoring)
- Additional application scan targets
- Additional internal scanning environments
What Detectify does
The capabilities that matter for attack surface management, normalised so it lines up with every alternative. “-” means we haven't confirmed it, not that it's missing.
- Deployment model
- Hybrid
- Continuous daily scanning
- ✓
- Agentless external discovery
- ✓
- Automated asset attribution
- ✓
- Cloud cspm integration
- -
- Certificate transparency monitoring
- -
- Dark web exposure monitoring
- -
- Servicenow CMDB sync
- -
- Jira ticketing integration
- ✓
- Cve vulnerability mapping
- ✓
- SOC2 type ii
- -
- ISO 27001
- ✓
- Pricing model
- Subscription tier
Platform & deployment
Independently observed- CLI
- Web
- Cloud / SaaS
- Self-hosted
Integrations (8)
Independently observed- Jira
- Slack
- Okta
- Ping Identity
- OneLogin
- SAML 2.0
- AWS Marketplace
- Workato
Detectify alternatives
Other attack surface management we track, ranked by the same independent score.
- NucleiAutomated security testing platform that continuously scans applications, APIs, code, and infrastructure using AI to identify vulnerabilitieslow · 26%
- Amasslow · 17%
- Microsoft Defender EASMIdentify and understand security gaps in web-facing resourceslow · 22%
- CyCognitoContinuous exposure management platform that identifies and validates vulnerabilities in your external attack surfacelow · 3%
- Tenable Attack Surface ManagementContinuously discover and monitor internet-facing assets to understand and reduce external security exposurelow · 15%
Compare Detectify
Side by side against other attack surface management, attribute by attribute, with a source on every value.
The Vioscale score: one lens on the evidence
Not user reviews and not a paid placement: a confidence-weighted blend of the independent signals below (adoption, activity, security posture, and more), which you can sort and re-weight yourself. Vendors can correct their listing but can never move their rank, and stars are weighted low as a vanity metric. It is one way to read the evidence for Detectify, not the verdict.
| Signal | Score | Weight | Contribution | Evidence |
|---|---|---|---|---|
| Pricing transparency | 100 | 0.08 | 8.4 | ✓ |
| Capabilities | 81 | 0.05 | 4.0 | ✓ |
| Security posture | 45 | 0.07 | 3.3 | ✓ |
| Price level | 25 | 0.05 | 1.3 | ✓ |
| Integrations | 27 | 0.04 | 1.1 | ✓ |
| Reliability | 0 | 0.07 | 0.0 | - |
Computed . Re-weight it by intent, or see the full method.
All data & sourcesshow ↓
Every value we hold, with its source, retrieval date, and confidence. This is the evidence behind the score: don't trust it, verify it.
Features
| Attribute | Value | Evidence |
|---|---|---|
| Capabilities | Iso 27001: Yes · Pricing model: subscription_tier · Deployment model: hybrid · Continuous daily scanning: Yes · Cve vulnerability mapping: Yes · Jira ticketing integration: Yes | mediumsource · 2026-08-25 · 60% |
Integrations
| Attribute | Value | Evidence |
|---|---|---|
| Count | 8 | mediumsource · 2026-08-25 · 60% |
Market
| Attribute | Value | Evidence |
|---|---|---|
| Availability | HqCountry: SE · PrimaryMarkets: … · AvailabilityScope: global · AvailableCountries: … · NotAvailableCountries: … | highsource · 2026-08-25 · 75% |