Services Unlocked | Number of Packages Required | |
| Level 1 | Threat Assessment and Code Review for Injection Attacks | 2 |
| Level 2 | Code Review for Authentication and Session Management Issues as well as Cross-site Scripting | 4 |
| Level 3 | Code Review for Insecure Direct Object Reference and Security Misconfiguration | 6 |
| Level 4 | Code Review for the Rest of OWASPs Top 10 | 8 |
| Level 5 | One Round of Retest to Ensure Proper Vulnerability Remediation | 10 |