Suggestions appear as you type. Use the up and down arrows to choose one and Enter to open it.

This page's audience real numbers from our own analytics — open to see them
–Visitors
–Page views
–Clicks to vendors
–Time on page
–Reading now
Clicks to vendors, by tool
  • –
Top countries
  • –
Devices
  • –

– · counted by iTechGuides's own first-party analytics, bots removed, every figure rounded down · how we count

Quixxi Scan review

Freemium#12 of 21 in Mobile Application Security Testing Software

Low-cost per-scan mobile security testing with static and dynamic coverage.

8.1/10Editor score
Quixxi Scan8.1 Visit Quixxi Scan

Reviewed by iTechGuides Editors · Editorial team · Updated Oct 2026

Quixxi Scan is a cloud-based mobile application security testing product for developers, enterprises, and government organizations. It combines static application security testing with dynamic application assessment for Android and iOS apps. SAST analyzes binaries or code for vulnerabilities, while DAST uses runtime or emulator-based assessment to examine behavioral and data-security issues. Scanning is available through the Quixxi portal, REST API, and development workflows, making the product relevant to teams that need repeatable checks during mobile app development.

Pricing is structured around both one-time scans and recurring per-app plans. The SAST Scan option costs $29 per scan and provides static assessment for Android and iOS. A monthly SAST plan costs $49 per app per month and includes unlimited scans, while the annual SAST plan costs $499 per app per year with unlimited scans. DAST Scan costs $199 per scan and provides dynamic assessment for Android or iOS. A free plan is also available. The published pricing model suits teams that want to start with individual scans, while organizations seeking enterprise arrangements are directed to custom quotes.

Quixxi Scan’s feature set extends beyond basic vulnerability discovery. It includes sensitive-data analysis in internal and external storage, SSL pinning validation, root detection validation, endpoint identity validation, and compliance analysis against OWASP, PCI DSS, and NIST. Vulnerability reports include remediation recommendations, and REST API scanning can connect with CI/CD pipeline workflows. The product is a strong fit for teams needing broad mobile assessment coverage at per-scan pricing. Teams requiring self-hosted deployment, or DAST coverage for both mobile platforms in one scan, should consider alternatives.

Quixxi Scan pros and cons

  • Where it wins
    • Covers Android and iOS with static and dynamic assessments
    • Checks sensitive data, SSL pinning, root detection, and endpoints
    • Maps findings to OWASP, PCI DSS, and NIST with remediation reports
  • Where it doesn't
    • DAST scans assess Android or iOS rather than both together
    • Cloud deployment may not suit teams requiring self-hosted testing
    • Enterprise buyers are directed toward custom quotes

Quixxi Scan fact sheet, pricing and score →

Advertiser disclosure: iTechGuides is reader-supported. Vendors can pay for top positions in our rankings and for a place on other products' pages, and we may earn a commission when you click some links. How we rank.

Last updated · How we research and update