Web application vulnerability assessment
We check sign-in, sessions, input handling and access control against the OWASP guidance your scope names, such as a stated release of OWASP ASVS (Application Security Verification Standard). OWASP is an open application security community. Logged-in areas are covered too, with a test account for each role you provide.