Ensure methodologies are followed correctly, regardless of who's running the engagement. Track coverage, assign tasks, and ensure your team follows the same playbook.
Includes methodologies, unlimited projects, training & support
Book a 15-minute discovery call or see how Dradis Pro helps with consistency
Trusted by 1,171+ security teams in 75 countries over 19 years





Pro adds node-level methodologies for consistent testing across all your assessments. Both are self-hosted and offline-capable.
Know who is working on what and see how much is left to do. Methodologies are always loaded, always up to date, and always followed.
See exactly what's been tested and what's still ahead. Real-time visibility means never forgetting any steps.
Track task assignments and progress across your team. No more duplicate work or confusion about coverage.
Update the template once, everyone gets the latest version automatically. New check? Add it so everyone learns about it.
Same methodology, same results—regardless of who's running the engagement. No more checklist hunting.
Instead of keeping checklists in a shared folder somewhere, have them already loaded in your project before you start. Easy to maintain, always up to date.
Security testing comes in all shapes and sizes. Load one methodology for straightforward assessments, or attach different checklists to each phase or node.
Straightforward webapp assessment? Load one methodology for the entire project.
Complex engagement with multiple phases? Load separate checklists for internal, external, and webapp testing.
Infrastructure assessment? Attach Active Directory, SQL Server, or IIS configuration reviews to specific hosts.
Start with industry-standard methodologies or build custom checklists that match your team's workflows. Support for OWASP, PTES, OSCP, HIPAA, and many more.
Is everyone using the latest checklist? Dradis Pro makes maintaining and updating your methodologies simple.
CE has no methodology management. Pro adds node-level methodologies for structured, consistent testing.
| Feature | CE (Free) | Pro Assess | Pro Remediate |
|---|---|---|---|
| Basic note-taking | |||
| Task tracking and coverage | |||
| Pre-made methodology templates | |||
| Custom methodology builder | |||
| Custom branded reports | |||
| Issue Library (60+ entries) | |||
| Multiple projects | |||
| JIRA/Azure/ServiceNow integrations |
Yes. Export your project from CE as a Package, then import it into Pro. Your findings, notes, and custom content transfer completely. Zero data loss.
Methodologies can be applied at the project level or attached to individual nodes (hosts, applications, etc.). Each methodology contains tasks with descriptions, guidance, and status tracking.
Assess includes methodologies, unlimited projects, onboarding, training, and email support. Pricing info here.
Yes. Create completely custom methodologies based on your team's workflows, or use our pre-made templates as starting points.
View full feature comparison or learn more about methodologies
If Dradis doesn't meet your expectations for any reason, simply let us know and we'll refund you in full. No questions asked.
No risk. No questions asked. Full refund if you're not completely satisfied.
Request a 15-Minute Discovery CallJoin 1,171+ security teams ensuring thorough, consistent testing with Dradis Pro methodologies.
Book a 15-minute discovery call to find the right solution for your workflow
Trusted by 1,171+ security teams in 75 countries over 19 years





Here's what teams using Dradis say
"Creating reports with Dradis Pro saves us up to 4 hours per project compared to using Word manually."
Case Study: see the real results Include is getting in this short case study .
“In our rather complex report, we do things differently, adding a challenge. But the challenge was accepted and it works out great. Today, 90% of our reporting process has been automated.”
Your email is kept private. We don't do the spam thing.