Skip to content
RapidSpike
  • Solutions
    • CartShark
    • Synthetics
    • Overview
    • Pricing
    • Overview
    • Pricing
    • All Features
    • Magecart Attack Detection (Webskimming)Monitor your checkout for webskimming attacks.
    • Customer Journey MonitoringEmulate real customer interactions and ensure key processes are live 24/7.
    • PCI DSS v4.0 ComplianceMeet the requirements for PCI DSSv4 6.4.3 and 11.6.1.
    • Performance MonitoringEnsure peak customer experience with Web Vitals and page load monitoring.
    • Shopify
    • WordPress
    • Third Party MonitoringTrack all of your third party website plugins, gateways and other add-ons.
  • Sectors
    • EnterpriseSupporting global brands with complex needs.
    • eCommerceShopify, Magento, BigCommerce and custom platforms.
    • TravelEnabling the monitoring of complex booking journeys.
    • AgenciesA powerful partner in providing support and service contracts.
    • GamingMonitoring interactive gaming platforms.
    • Public SectorMeeting performance and reliability SLAs of government bodies.
  • Case Studies
  • Pricing
  • Learn
    • BlogNews, advice and platform updates from the RapidSpike marketing team.
    • RapidSpike AcademyBecome an expert in page load performance, security and synthetics!
    • Knowledge BaseHelpful guidance for understanding the world of website monitoring.
  • Log In
    • RapidSpike
    • CartShark
Get Started
RapidSpike
Effortless Security Testing

Web Application Penetration Testing

Find the weaknesses before malicious actors do with regular diagnostics.

Assess Your Website Now

Continually test your internet-facing applications

Continuous, not annual

Test regularly with automated penetration testing, rather than relying solely on an annual or quarterly point-in-time assessment.

Built for live environments

FaultLine helps identify vulnerabilities introduced as applications, infrastructure and dependencies change. It runs without disrupting services or affecting users.

Testing that adapts

FaultLine doesn’t simply run the same checklist against every target. Initial discoveries influence what happens next, allowing testing to focus on technologies, weaknesses and potential attack paths identified during the assessment.

What Faultline Tests

Test. Find. Fix. Repeat.

  • Authentication & Session Testing
    Check login, password reset, MFA, cookies/tokens, logout, and session management.
  • Authorization Testing
    Determine whether one user can access another user’s data or privileged/admin functionality, including IDOR/BOLA issues.
  • Input and Injection Testing
    Look for SQL injection, XSS, command injection, SSTI, path traversal, file-upload weaknesses, and related issues.
  • Server-Side Testing
    SSRF, insecure deserialisation, XML-related weaknesses, request-processing problems, and dangerous backend integrations.

  • API Testing
    REST/GraphQL endpoints, object-level authorisation, mass assignment, excessive data exposure, rate limits.
  • Business-Logic Testing
    Check abuse of legitimate functionality in unintended ways, such as manipulating prices, bypassing workflow steps, reusing coupons, or circumventing limits.
  • Reporting
    Document each finding with evidence, impact, severity, reproduction steps, and remediation guidance.
Easy Set Up Start Today

A history for every finding

See when a vulnerability was first detected, how it has changed, what actions have been taken and whether it continues to appear in subsequent assessments. Continual assessment is the key as to whether any new vulnerabilities and chances

Structured, explained results

FaultLine turns technical discoveries into structured findings with severity, supporting evidence, affected assets and explanations of why the vulnerability matters.

FaultLine from RapidSpike

Helping you keep your website secure in an increasingly hostile digital world.

Easy Set Up Process – Steps To Going Live

01
Add your website URL

Add your website URL, and you will be able to use a lite version of FaultLine for FREE, showing you how it works. To use all the features, you will need to pick a plan in terms of frequency and number of URLs. Verify your URLs and set payment for the monthly subscription. You will find the pricing here.

02
Access All FaultLine Features

Verify your URL to access all the FaultLine features. You will be given a TXT record to add to your domain DNS. Once verified, set up the monthly payment subscription and you will have full access to the features.

03
Find Fix Test & Repeat

Run a scan at the frequency of your choice. Find the faults and fix. Document the fix to keep a record within the system. Continually repeat to keep your website as safe as you can.

Want to learn more about our Product Services? Find out more

Pricing

Pricing varies depending on the frequency and number of assets you want to scan. You are in control, you choose what’s the best fit for your organisation.

Flexible pricing that adapts to your assets.

FAQs

The Answers to Your Questions

RapidSpike delivers enterprise-grade website and cybersecurity monitoring, and has been trusted by global brands for over a decade. In 2018, we pioneered advanced technology to detect “Magecart” web skimming attacks — a breakthrough that earned recognition at both the European and Global Ecommerce Awards. In 2024, we secured the prestigious InnovateUK Smart Grant to accelerate development of this technology, which was launched in 2025 as CartShark. Launching automated web application pentesting was a natural progression. Today, we monitor over $40 billion in ecommerce transactions annually, providing critical protection for some of the world’s leading online businesses.

Yes — You can try FaultLine Lite for Free for one url with no upfront charges. You just need to enter you name, company name, email address and url to access a FaultLine Lite test.

No. You can sign up to FaultLine using the ‘Get Started’ links on the page. You can then select the frequency and number of urls you wish to test. For a preview of FaultLine you can select a FaultLine test for one url for Free.

Our pricing is based on the frequency you choose for scans and the number of url’s you choose to scan. With any full scan frequency you can carry out 1 manual scan so that you don’t have to wait for the next scheduled scan to see the fixes and improvements you have made.

A Lite scan doesn’t give you a full set of results and can only be set up on a monthly basis. A Full plan gives you a comprehensive pentest and you can also run a manual scan before the next scheduled scan. A Plus plan involves a pentest with human interaction. A pentester will evaluate the results and give advice on what action needs to be taken. This will also give you a certified audit for compliance.

No manual scans do not accumulate and rollover. You can carry out one manual scan per Full plan in between the scheduled scans you have selected. 

No, you can test as many urls as you wish. However for Full scans you will need to verify the url you wish to test. This is an easy process of adding a record to your domain’s dns.

Yes you can pause your plan and your payment will be paused also. The results of your scans will remain in your account. When restarting your plan there may well be more fixes and findings due to the increased time frame. You could also be exposed to risk whilst not scanning frequently.

If you need a validated pentest report, this can be organised with FaultLine Plus and a manual pentest. The pentester will review your existing results, confirm the identified vulnerabilities, perform additional testing where required and produce a final authenticated security assessment report

Get in touch to discuss this option

Play
ConTinual Testing, Within One Comprehensive Tool

Clear Findings, Continuous Security

FaultLine finds the cracks before predators do

Company

  • About Us
  • Careers
  • Press
  • Contact
  • RapidSpike Log In
  • CartShark Log In
  • FaultLine Log In

Platform

  • Synthetic Monitoring
  • CartShark Security
  • Performance Monitoring
  • Third Party Monitoring
  • PCI Compliance
  • Page Load
  • Uptime
  • Assurance & SEO
  • Alerting & Integrations
  • All Features >

Value

  • Pricing
  • Case Studies
  • Magecart Attacks Explained
  • RapidSpike and New Relic

Learn

  • Blog
  • Knowledge Base
  • RapidSpike Academy
  • API Docs
  • System Status
  • Product Roadmap
X Instagram YouTube Linkedin

© 2026 RapidSpike. All rights reserved.

  • Privacy Policy
  • Terms of Service
  • Vulnerability Disclosure Policy
Scroll to top
  • Synthetics
    • Synthetic User Journeys
    • Magecart Attack Detection
    • Third Party Monitoring
    • Performance Monitoring
  • CartShark
    • CartShark Magecart Detection
    • Magecart Attacks Explained
  • Sectors
    • Enterprise
    • eCommerce
    • Travel
    • Digital
    • Agencies
  • Pricing
  • Blog
  • Log In
    • RapidSpike
    • CartShark