Everything you need to know about our security assessments. Can't find your answer? Email us and we'll reply within one business day.
A website security assessment is a structured review of your website's publicly accessible security posture. We examine your site from the outside, the same perspective an attacker would have, using a combination of manual testing and automated scanning tools. The result is a written report listing every vulnerability we found, its severity, and what needs to be done to fix it. It tells you exactly where your website stands and what actions to take.
The full process takes up to one week. The initial assessment and report are typically delivered within two business days. Remediation (fixing the issues) takes a further two to three days depending on what was found. You will receive a response within one business day of submitting your request confirming we have started.
No. We conduct a fully external, non-intrusive assessment. Your website stays live and accessible to your visitors throughout the entire process. We do not perform any actions that could interrupt your service or affect your visitors.
Yes. Remediation is available as a paid service. Once you receive your report, you can choose to have us fix the vulnerabilities directly, or we can provide step-by-step guidance your developer can follow. Either way, we confirm every issue is resolved before closing the engagement and send you written confirmation that the work is complete.
We work with any publicly accessible website regardless of the platform: WordPress, Shopify, Wix, custom-built sites, and more. We work with businesses of every size, including freelancers, local shops, service providers, e-commerce sites, and larger organisations. Our reports and pricing are designed for business owners, not enterprise IT departments with dedicated security teams.
Cybersecurity is an ongoing process, not a one-time task. New vulnerabilities are discovered regularly, software updates can change your security posture, and threats continue to evolve. A website that was secure six months ago may have new weaknesses today. Regular security assessments help identify newly discovered vulnerabilities, verify that previous fixes remain effective, and maintain a stronger overall security posture over time. We recommend reviewing your website security at least once a year, or after any significant changes to your site or hosting setup.
Simply fill in the contact form on our homepage with your name, website URL, and email address. We will be in touch within one business day to confirm we have started. Alternatively, you can reach us directly at info@letoviasec.com or on WhatsApp. There is no commitment, no payment required upfront, and no technical knowledge needed to get started.
You are free to act on the report yourself, share it with your developer, or ask us to handle the fixes. There is no pressure to purchase anything. If you do engage us for remediation, we re-run the assessment once the work is complete and send you written confirmation that every issue has been resolved.
Most business websites contain security vulnerabilities the owner is unaware of. Attackers continuously scan the internet for weak points: misconfigured headers, outdated software, missing authentication controls, and email spoofing vulnerabilities are common in sites that have never been formally reviewed. A security assessment gives you a clear picture of your current risk, so you can address real issues rather than guessing. The consequences of a breach, including data loss, customer trust damage, and downtime, typically far outweigh the cost of a preventive review.
You receive a written security assessment report delivered by email. The report lists every vulnerability found, clearly labelled by severity: Critical, High, Medium, or Informational. Each finding is explained with full context: what was discovered, why it is a risk to your business, and what specific action is needed to fix it. The report is written for business owners, not IT departments. Every recommendation includes a clear next step.
Yes. All assessment findings, your personal details, and your website information are treated as strictly confidential. We do not share your report, your name, or your website details with any third party without your explicit consent. Our assessments are conducted discreetly and professionally. You can review our full privacy practices in our Privacy Policy.
Yes. WordPress is one of the most widely used platforms and also one of the most commonly targeted by attackers. Our assessments are well suited to WordPress sites and cover WordPress-specific risks including plugin vulnerabilities, version exposure, login page protection, and security header configuration. We also support Shopify, Wix, Squarespace, custom-built sites, and any other publicly accessible website, regardless of platform.
We recommend a security assessment at least once a year for most businesses, or any time you make significant changes to your site, such as switching hosting providers, adding new features, changing platforms, or installing new plugins. New vulnerabilities are discovered in common software and platforms on a regular basis, meaning a website reviewed six months ago may have new weaknesses today. Regular assessments help you stay ahead of emerging risks.
Still have a question? We reply within one business day.