Zerocopter
Zerocopter is a Netherlands-based cybersecurity marketplace that connects organizations with a vetted global community of ethical hackers to deliver Recon, Pentest-as-a-Service, Bug Bounty, and Coordinated Vulnerability Disclosure services through one managed platform.
- Company typePrivate
- Founded2014
- HeadquartersAmsterdam, Netherlands
- Headcount1–10
- GTM typeB2B
- OfferingSoftware
What Zerocopter does
Zerocopter B.V. is a Netherlands-based cybersecurity marketplace platform founded by hackers that connects organizations with a global community of vetted ethical hackers and researchers. The company operates from Groningen with a legacy office address in Amsterdam, structured as a Dutch private limited liability company (B.V.). Its platform (app.zerocopter.com) offers four integrated services — Recon (external reconnaissance and asset inventory), Pentest-as-a-Service (time-boxed penetration testing with real-time collaboration), Bug Bounty (continuous, 'no cure, no pay' testing where customers pay only for verified findings plus a 20% handling fee), and Coordinated Vulnerability Disclosure (managed responsible disclosure policy). A Triage Team of security experts validates reported vulnerabilities against frameworks such as OWASP 10 before findings reach the client.
The technology model combines curated human expertise (researchers are screened through ID verification, background checks, and international watchlist screening) with platform automation for triage, reporting, and shared workspaces. Zerocopter applies a horizontal segmentation, targeting organizations with evolving digital assets that need continuous security testing beyond point-in-time assessments — primarily software-first companies whose release cycles outpace traditional pentest cadences.
Commercially, the company runs a hybrid revenue model: transaction-based Bug Bounty programs (with a fixed setup fee plus variable researcher rewards budget and a 20% Zerocopter fee), subscription-based CVD and PTaaS, and usage-based Dedicated Hacker Time and Recon engagements. Go-to-market is sales-led and enterprise-focused, supplemented by self-serve platform access, direct consultation (book-a-call, WhatsApp), events/newsletters, and a bottom-of-funnel CSM function. With 1–10 reported employees, a single disclosed funding event of approximately $1.46M (2016), and leadership including CEO Erik Ploegmakers/Edwin van Andel, founder Junior Meijering, COO Marja Doedens, and Head of Researchers Olivier Beg, Zerocopter operates as a lean, capital-efficient boutique platform rather than a venture-scale business.
Zerocopter firmographics
Firmographics- Name
- Zerocopter
- Legal name
- Zerocopter B.V.
- Website
- https://zerocopter.com
- Company type
- Private
- Founded year
- 2014
- Operating status
- Operating
- Headcount range
- 1–10 employees
- Short description
- Zerocopter is a Netherlands-based cybersecurity marketplace that connects organizations with a vetted global community of ethical hackers to deliver Recon, Pentest-as-a-Service, Bug Bounty, and Coordinated Vulnerability Disclosure services through one managed platform.
- Ownership category
- akta.pro rank
Zerocopter industry classification
Industry- Product category
- Cybersecurity Testing Platform
- NAICS
- Security Systems Services (56162)
- SIC
- Services-Prepackaged Software (7372)
- akta.pro primary industry
- Bug Bounty, Vulnerability Disclosure & Security Services (FSAPAJAL)
Keywords
Where Zerocopter is headquartered
LocationHeadquarters
- HQ city
- Amsterdam
- HQ country
- Netherlands
- HQ region
- Europe
Offices2 records
Markets served
Zerocopter business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Personnel, Technology or R&D, Operations, Marketing or Sales, Infrastructure, Supply Chain
Revenue model
- Bug Bounty Programs: No cure, no pay model with fixed setup fee plus variable researcher rewards budget. Zerocopter takes 20% fee on researcher rewards. Organizations only pay for valid findings.
- Coordinated Vulnerability Disclosure (CVD): Fixed monthly or yearly subscription fee plus variable rewards for reporters. Zerocopter takes 20% fee on reporter rewards.
- Pentest as a Service: Time-boxed testing of specific applications with real-time overview, shared workspace, and detailed analysis of critical components.
- Recon Service: Fixed fee per reconnaissance engagement to map all online assets, identify weak or exposed spots.
- Dedicated Hacker Time: Hourly rate access to extended team of hackers for personalized security support and addressing unique security concerns.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Transaction based/ take rate | Pay-as-you-go | Bug Bounty - Variable pricing based on program scope |
| Subscription | Monthly | CVD - Fixed subscription with variable reporter rewards |
| Usage-based | Pay-as-you-go | Dedicated Hacker Time - Hourly rate |
| Unit Pricing | Pay-as-you-go | Recon Service - Fixed per engagement |
| Other | Monthly | Entry-level cybersecurity roles |
Go-to-market motion3 records
Distribution channels3 records
Marketing channels8 records
Zerocopter product offering
Product offeringCore offering
Zerocopter operates a security marketplace platform that connects organizations with a global community of vetted ethical hackers for continuous vulnerability discovery. It delivers four core services through a single platform: Recon (external asset mapping), Pentest-as-a-Service (time-boxed penetration testing), Bug Bounty (continuous "no cure, no pay" testing), and Coordinated Vulnerability Disclosure (managed responsible disclosure). An in-house Triage Team validates all findings before they reach the customer, so clients only receive actionable, severity-categorized reports.
Product overview
Zerocopter is a security marketplace platform that connects organizations with a vetted global community of ethical hackers. The platform offers four integrated services: Recon (external reconnaissance and asset inventory), Pentest-as-a-Service (PTaaS — time-boxed penetration testing with real-time collaboration), Bug Bounty (continuous 'no cure, no pay' testing by vetted hackers), and Coordinated Vulnerability Disclosure (CVD — managed responsible disclosure). All services are accessible through the Zerocopter Platform (app.zerocopter.com), share common triage, reporting, and project management tooling, and are supported by a Triage Team of security experts who validate all incoming findings. The platform combines human hacker expertise with smart automation to provide ongoing, 360-degree security rather than one-time assessments.
Differentiator
Problem solved
Functional benefit
Products and services
- Recon Reconnaissance service that maps an organization's publicly exposed online assets, identifies weak or forgotten systems, and delivers a risk-ranked inventory with actionable next steps. Intended for organizations seeking a baseline view of their external attack surface before deeper testing.
- Pentest-as-a-Service (PTaaS) Time-boxed penetration testing of a specific critical application, delivered through a shared workspace with real-time visibility into findings and detailed analysis of critical components. Targeted at organizations needing focused testing of a defined system or application rather than continuous coverage.
- Bug Bounty Continuous, fully managed 'no cure, no pay' security testing program where vetted ethical hackers search for vulnerabilities within a defined scope. Customers pay a fixed setup fee plus a variable researcher rewards budget, with a 20% Zerocopter handling fee on rewards, and only pay for verified valid findings.
- Coordinated Vulnerability Disclosure (CVD) Managed vulnerability disclosure policy that provides a safe, legally protected channel for external researchers to report issues. Zerocopter filters duplicates and validates findings before forwarding only actionable reports to the customer. Offered on a fixed monthly or yearly subscription plus variable reporter rewards (with 20% Zerocopter fee).
- Dedicated Hacker Time Hourly-bookable access to an extended team of vetted hackers for security challenges lacking ready-made solutions, providing personalized support and addressing unique security concerns at an hourly rate.
Quantifiable outcome
- Continuous coverage replacing point-in-time testing
- +1 more outcomes
Companies that use Zerocopter
Customer profileSegments2 records
Ideal customer profiles2 records
Zerocopter technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Feature6 records
Zerocopter partnerships and signals
Strategic signalScale indicators1 record
Recent moves7 records
Expansion highlights5 records
Zerocopter competitors and assessment
Company assessmentDirect peers
- Bugcrowd: Managed bug bounty and crowdsourced security platform offering Bug Bounty, PTaaS, and vulnerability disclosure services. Competes head-to-head with Zerocopter on enterprise security testing programs and shared researcher-marketplace model.
- Cobalt: Pentest-as-a-Service platform that connects enterprises to vetted security testers via a managed platform. Overlaps with Zerocopter's PTaaS offering and shares the managed marketplace approach to offensive security testing.
- Intigriti: Europe-based bug bounty and vulnerability disclosure platform headquartered in Belgium. Directly comparable to Zerocopter as a European-anchored ethical hacking marketplace targeting enterprise customers with continuous testing programs.
- HackerOne: The largest global bug bounty and vulnerability disclosure platform, connecting organizations with a community of ethical hackers. Directly competes with Zerocopter across Bug Bounty and CVD offerings and shares the same hacker-marketplace business model.
- Synack: Managed crowdsourced security platform combining a vetted researcher network with smart automation for penetration testing and vulnerability discovery. Comparable to Zerocopter across PTaaS and continuous testing services.
- YesWeHack: French bug bounty and vulnerability disclosure platform operating a global researcher community. Directly competes with Zerocopter's Bug Bounty and CVD offerings, particularly in European enterprise and public-sector accounts.
Broad incumbents
- Bishop Fox: Established offensive security consultancy offering traditional pentesting alongside Cosmos PTaaS platform. Broader incumbent that overlaps Zerocopter's PTaaS and Bug Bounty offerings as part of a wider security services portfolio.
Emerging players
- Hadrian: Amsterdam-based offensive security platform combining automated asset discovery with hacker-led testing. Comparable to Zerocopter through its continuous testing positioning and Dutch heritage.
- Detectify: Sweden-based vulnerability scanning and external attack surface management provider. Overlaps with Zerocopter's Recon service and shares a European cybersecurity roots and developer-focused buyer base.
- Pentera: Automated security validation platform that simulates attacker techniques to test enterprise defenses. Adjacent peer that competes for the 'continuous security testing' budget line that Zerocopter targets with Bug Bounty and PTaaS.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat4 records
Key risks6 records
Key highlights6 records
Customer concentration
Zerocopter social profiles
Digital presenceZerocopter compliance and trust
Trust signalCompliance3 records
Zerocopter financial estimates
Financial estimateRevenue estimate
Valuation estimate
Zerocopter leadership team
Management profileNumber of profiles
Profiles5 records
Zerocopter funding detail
Funding detailFunding overview
Funding rounds1 record
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Zerocopter M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Zerocopter
What does Zerocopter do?
Zerocopter operates a security marketplace platform that connects organizations with a global community of vetted ethical hackers for continuous vulnerability discovery. It delivers four core services through a single platform: Recon (external asset mapping), Pentest-as-a-Service (time-boxed penetration testing), Bug Bounty (continuous "no cure, no pay" testing), and Coordinated Vulnerability Disclosure (managed responsible disclosure). An in-house Triage Team validates all findings before they reach the customer, so clients only receive actionable, severity-categorized reports.
Is Zerocopter a public or private company?
Zerocopter is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was Zerocopter founded?
Zerocopter was founded in 2014. It employs 1 to 10 people.
Where is Zerocopter based?
Zerocopter is headquartered in Amsterdam, Netherlands, in the Europe region.
How does Zerocopter make money?
Five revenue lines are on record. Bug Bounty Programs are the primary driver. The others are coordinated Vulnerability Disclosure (CVD), pentest as a Service, recon Service and dedicated Hacker Time.
Who are Zerocopter's main competitors?
Direct peers on record are Bugcrowd, Cobalt, Intigriti, HackerOne, Synack and YesWeHack. Bishop Fox is listed as a broad incumbent. Emerging players are Hadrian, Detectify and Pentera.
Does Zerocopter have an API?
No public API is recorded for Zerocopter.
What industry is Zerocopter in?
Zerocopter's product category is Cybersecurity Testing Platform. Its primary akta.pro industry code is FSAPAJAL, Bug Bounty, Vulnerability Disclosure & Security Services. Its NAICS code is 56162 and its SIC code is 7372.