Magebean — Magento Security Audit and Maintenance

Standardized audit with 81 baseline rules + CVE monitoring, then keep your store safe with weekly scans, patching and monitoring.

Onboarding Audit — $499

The audit can be purchased standalone (prepaid). It’s the first step to understand real risk and usually leads into Maintenance.

Audit Requirements

We recommend running on staging/dev. SSH read-only access to the Magento root is required. We do not modify systems during the audit.

  • Credentials are used only to run the audit and are deleted after delivery.
  • Turnaround: 24–48h after receiving access.

What you get

  • Coverage: 12 controls, 81 rules + known CVE checks (core & extensions).
  • Compliance mapping: OWASP/CWE mapping for internal & agency handoff.
  • Prioritized action plan: Critical/High/Medium ordering with clear fixes.
  • Quick hardening: basic config fixes (headers, permissions, robots, admin path).

The audit is prepaid. After the audit, if out-of-scope work is substantial, we will recommend Maintenance $499/month (preferred) or provide an estimate for Extras $100/h.

Security Maintenance — $499/month

Weekly scans & patching to keep risk low and costs predictable.

Deliverables

  • Weekly scan (81 rules + CVE monitoring) with HTML/PDF reports.
  • Auto-apply patch/minor updates (core & extensions, when granted).
  • Remediation of Critical/High findings within scope.
  • Email support (Mon–Fri), 48h response SLA.

Why it works

  • New CVEs appear weekly — monthly or bi-weekly checks aren’t enough.
  • Predictable cost vs. ad-hoc bug fixing that balloons.
  • Non-competitive with your agency; we’re the security layer.

Extras — $100/h (billed in 1h blocks)

  • Bug fixing / debugging (checkout, payments, extension conflicts).
  • Minor upgrades & vendor hotfix application.
  • Additional hardening (2FA, WAF/Cloudflare rules, malware scans).
  • Basic performance/infra tuning (Nginx/Apache, Redis, Varnish, DB).
  • Consulting & advisory (jobs >5h are estimated upfront).

Payment policy: All services are prepaid. Audit $499 upfront. Maintenance $499/month invoiced at the start of each period (Payoneer). Extras are prepaid for tasks ≤5h, or 50% upfront for larger jobs.

Ready to start?

Begin with an Audit — $499 per store • Delivery in 24–48h

Access is used only to run the audit and permitted maintenance tasks. We do not change systems outside the agreed scope. Credentials are deleted when the engagement ends.

Request Audit – $499

Submit your details. We’ll confirm and send a secure payment link. SSH credentials are requested after payment.