Pentest reporting, without the grind

From findings to a client-ready report in minutes

VulnQuill is the reporting platform for freelance pentesters and small consultancies. Track engagements, write each finding once, and ship branded PDF, DOCX & XLSX reports — with a client portal that makes a two-person shop look like a top-tier firm.

Free-forever tier · 350+ finding templates · unlimited bring-your-own-key AI · INR & USD

app.vulnquill.com/dashboard
VulnQuill dashboard — engagements, open findings, severity and retest status
Built by pentesters, for pentesters/ CVSS 3.1 · CWE · CVE/ Multi-tenant & org-scoped/ REST API + MCP server/ Nessus & Burp import
The workspace

Run the whole engagement in one place

Stop stitching together a Word template, a spreadsheet, and three tabs of scanner output. Recon to signed report — one workspace, no context-switching.

Reporting

From raw findings to a signed report

Pick your findings, choose a template, and generate a branded report your client can actually read — cover page, TOC, severity charts, your logo and colors.

  • PDF · DOCX · XLSX · CSV — JavaScript-free, XSS-safe rendering.
  • QA gate & approval — only reviewed findings ship.
  • Draft with AI — executive summaries & narratives, your model key.
app.vulnquill.com/engagements · Reports
VulnQuill report builder — QA gate, quality checks, template selection and AI executive summary
Engagements

The whole engagement, at a glance

Severity distribution, top findings, scope, deadlines and team — the state of the assessment in a single screen, so nothing slips before the report goes out.

  • Live severity breakdown across every finding.
  • Checklist, activity & retest deltas per engagement.
  • Built-in recon to discover subdomains in scope.
app.vulnquill.com/engagements · Overview
VulnQuill engagement overview — severity distribution, top findings, scope and team
Findings

Findings with real structure

CVSS 3.1 vectors, CWE/CVE and OWASP mapping, evidence, steps-to-reproduce, impact and remediation — written once, reused across engagements from a 350+ template library.

  • CVSS · CWE · CVE · OWASP classification, structured.
  • Evidence & affected domains attached to each finding.
  • Review workflow — draft → approved → published.
app.vulnquill.com/engagements · Finding
VulnQuill finding detail — CVSS score, CWE/CVE classification, description and impact
And the rest

Everything an engagement needs

The pieces that usually live in five different tools — in one workspace, at every tier.

Client portal

A read-only portal your client logs into — on your own subdomain. Internal review notes stay internal; clients see only what you publish.

Unlimited AI writing

Draft narratives, executive summaries and remediation with Claude, GPT, Gemini or local Ollama. Bring your own key — unlimited, every tier.

REST API + MCP

A full REST API and an MCP server to drive findings from your own tooling and agents. Automate the parts you already scripted.

Recon & importers

Built-in subdomain recon to map scope, plus Nessus & Burp importers so scanner output lands as structured findings.

QA & retest workflow

Submit → review → approve, with a QA queue, retest deltas, activity log, and RBAC for OWNER / PENTESTER / CLIENT.

350+ templates

A curated library of finding write-ups with CVSS, CWE and OWASP pre-filled — start from a solid draft instead of a blank page.

Why teams switch

Built for the people who write the report

Enterprise tools start near $500/month. Free tools cost you a weekend of setup. VulnQuill sits exactly where a growing 2–15 person shop lives.

01

INR-native, UPI-ready

The only serious platform that bills in ₹ with GST invoicing and USD — no forced dollar pricing, no card-only checkout.

02

Client portal at the low tier

The one feature your buyer's client actually sees. Others gate it behind a $199 plan; we unlock it early.

03

Unlimited AI, zero add-on

Bring your own model key and generate as much as you want — free, on every tier. No per-generation metering.

04

Your own subdomain

Every org gets you.vulnquill.com for login and the client portal — professional from day one, no setup.

Pricing

Start free. Upgrade when you win the work.

The free tier is gated on concurrent active engagements, never on findings. Annual billing gets two months free.

Free
₹0
$0 / forever
  • 1 user · 2 active engagements
  • Full CVSS/CWE findings editor
  • PDF & DOCX export
  • Unlimited BYO-key AI
Get started
Solo
₹749 /mo
$19 / month
  • Unlimited engagements
  • All formats incl. XLSX/CSV
  • Full 350+ template library
  • Custom branding · portal (3)
Choose Solo
Most popular
Team
₹2,999 /mo
$69 / month · 5 seats
  • Everything in Solo
  • QA & approval, RBAC
  • Unlimited client portal
  • REST API + MCP · recon
Start Team trial
Consultancy
₹7,999 /mo
$149 / month · 15 seats
  • Everything in Team
  • Custom domain · white-label
  • SSO & priority support
  • Bundled AI · audit export
Talk to us

Exclusive of 18% GST for Indian businesses · extra seats from ₹499/user · self-hosted plan available

Sitting an exam?

Write your OSCP, CPTS or PNPT report — free

Preloaded exam layouts, unlimited personal reports, zero setup. The same engine the pros ship client work with. No card, ever.

OSCPOSEPCPTSPNPTeWPTX
Claim free plan
Ready when you are

Ship your next report from VulnQuill.

Spin up a workspace in under a minute. Import your first Nessus scan and watch a client-ready report build itself.