Skip to content
Contact us

For agencies and software houses

Add protection to every client app.

One workflow across projects, with a clear report to hand to each client.

AppStatus
App, Status, Protected, Monitoring, Needs review

A service line, not a side project.

Offer mobile app protection to every client without building the tooling yourself. The same setup works across projects, and the reports are ready to hand over.

  • Same setup for every project
  • Client-ready reports
  • Partner pricing on request

What you get

  • 01

    One workflow, many apps

    The same pull request flow protects every Android and iOS project you maintain.

  • 02

    Reports your clients understand

    Scan produces a graded, MASVS-mapped report you can share, and Pulse shows what was blocked in each app.

  • 03

    Per-app pricing

    Pay per app, so the cost follows the projects you actually protect.

  • 04

    Works with every stack

    Native, React Native, Expo and Flutter projects, on whichever CI each client uses.

  • 05

    Evidence for client reviews

    A trail of what was attempted and stopped, per app, for the quarterly review.

  • 06

    Partner programme

    Resale and referral terms are available on request.

Rolling it out across clients

  1. 1

    Scan the portfolio

    Send each client's app to Scan and rank them by risk.

  2. 2

    Protect app by app

    Merge a protection pull request per project, in the client's own repository.

  3. 3

    Report every month

    Share the Scan report and the Pulse summary with each client.

CIIllustrative example
# one command, in each client's own CI$ npx moatgator protect

What goes in a client report

Baseline

  • Graded Scan report
  • Findings mapped to OWASP MASVS

Ongoing

  • Threats attempted and stopped
  • Detections by app version

Next steps

  • Recommended policy changes
  • Plan fit for the app

Frequently asked questions

Can we resell Moatgator?

Partner and resale terms are available. Contact us to talk through your portfolio.

How do we report to clients?

Scan produces a MASVS-mapped report you can share, and Pulse shows what was blocked in each app.

Where does the code live?

In each client's own repository and CI. Moatgator adds a pull request there and never needs your source code.

Is pricing per client or per app?

Per app. Each protected app is on its own plan, so costs map cleanly to what you bill.

Can one plan cover several apps?

Plans are per app. For large portfolios, talk to us about partner pricing.

Ready to protect your app?

Start free, or tell us what you need.