The line
that changes
everything

In geospatial terms, a breakline marks where terrain fundamentally changes. Dispatch is that shift. A self-hosted platform that carries diligent and structured security work end to end. From scope to signed report, and everything in between. Own the whole line: run your own programme, or deliver it to clients.

One platform. The whole line.

Most cybersecurity work is split across separate solutions: one to scope, another for project management, another for reporting, and another for sales CRM. These are often across vendors and outside your control and/or visibility.

Dispatch runs the whole engagement in one malleable self-hosted platform; Scope, quote, scan, and deliver a signed, quality-controlled report. Batteries included.

Continuous, not point-in-time. The scan that stops seeing a finding is the proof of the fix.
01 · CUSTOMISE

Shape

  • Brandinglogo, colours, typography & document styling
  • Service catalogueofferings, currency, pricing & questionnaires
  • Templatespre-set reports & proposals, or build your own
  • Component librarycompose & reorder document sections
  • Runbooksallocate one to a service for a consistent and continuous process from requirement to delivery
02 · SELL

Scope

  • Service catalogueshared comprehensive catalogue for you and your clients. Methodologies and frameworks included
  • Questionnairesbuild once & reuse; capture scope, diligence & per-service detail as guided forms
  • Proposalsa priced and signable document; every amendment is a new version, locked once agreed
  • Commercialsrate card, effort (days or hours), per-client currency, plus discounts or fees on any line or the whole quote
  • Attestationscope, project & proposal, signed by all parties
03 · TEST

Scan

  • Automated scansthe platform runs the real scanning & recon tools for you, following the process you've defined
  • Runbook-drivenan evolving runbook of automatable steps that forms a service's methodology
  • Manual uploadresults from a tool you ran yourself, in place of a live scan
  • Live captureTool output is read and turned into findings (vulnerabilities, good practice & technical commentary)
  • Custom ruleswrite your own logic for what counts as a finding, and preview the results before applying
  • Findings libraryreport-ready vulnerabilities, good practice & technical commentary
  • Evidence-richtool output is captured and carried into each finding with evidence & scan metadata logged, then tagged CWE, CVE, CVSSv4 & ATT&CK
04 · KNOW

Track

  • Project statustrack each engagement through its lifecycle: scoping, active, closed, with dates and running totals of scans, assets & findings
  • Calendarstaff assignments, scheduled scans & three different calendar views
  • Readinessprerequisites verified and client prep tracked, so the engagement is ready before day one
  • Notificationsemail keeps the engagement moving: invites, updates, deadlines, sign-offs and more reach the right people automatically
  • Asset inventorypersistent across engagements, with first & last-seen dates
  • Web exposurethe real target behind CDN- / WAF-fronted hosts
  • Change trackingwhat's new, gone or unchanged since the last scan
  • Intelopen-source recon (OSINT) that maps your external footprint: WHOIS / ASN infrastructure, discovered domains & exposed identities
  • Attributionauto-links that intelligence to the right asset, and queues the rest for review
05 · DELIVER

Prove

  • Framework evidencecoverage mapped to major frameworks (800-53, 800-171, OWASP, CMMC L2) — real evidence, not a compliance score
  • Proof of testingevery scan keeps its source IP, timestamps, exact command & evidence. A defensible record your blue team can match against its SOC / SIEM to tune monitoring
  • Quality gatea controlled review before anything reaches a client: tracked changes, sign-off & an audit trail of every decision, with self-reviews flagged
  • Frozen finalsonce final, a document is locked for good, new versions supersedes, the original never changes
  • Branded outputreport in the browser or PDF, plus a full data workbook

It carries the work, diligently

Consistency isn't a promise, it's a mechanism. Preparation, sign-off and quality control are built into the platform.

Before it starts
Project prep, built in

Project management is built in: it checks pre-requisites and walks the client through prep, so the engagement is ready before day one.

ReadinessAcme · External
Pre-requisites verified
Client prep checklist sent
Access & credentials secured
Operational & risk questions answered
Before it runs
Scope, signed off

Before any scan runs, whoever owns the scope signs off. Two parties where there are two, or just you when there's one. Same record either way: proof of what was authorised.

Scope AttestationSoW v3
Client — attested
Vendor — attested
As it runs
Method, not memory

Customisable playbooks give every engagement the same baseline methodology. Rigour comes from the process, not individual experience.

MethodologyWeb App · External
124checks executed
Each step recorded & timestamped
Coverage mapped to methodology
Before it ships
Every gap, flagged

Before a report or proposal (SoW) goes to review, an automated pass hands the author every gap. They fix it, or proceed and own it. Either way, the decision is on record.

QA CheckAcme_External_v3
12findings documented
3missing proof-of-concept
2missing evidence image
1empty section

Most tools cover a slice.
Dispatch covers the line.

A vulnerability scanner sees data. A reporting tool sees authored content from interpretting data. A GRC product sees assurance. Each owns a slice of the pipeline, and the gaps between them are where work falls through. Dispatch spans the whole line as one continuous record.

A fragmented stack
Coverage nobody can pin down
Dispatch
One platform, end to end

One platform,
three ways to run it.

The same operator toolkit, whichever way you work: run it in-house inside your own organisation, deliver it to clients as a firm or MSSP, or run solo as an independent. One platform, three ways in.

For in-house teams

Run the routine programme yourself, and reclaim budget for specalized and bespoke consultancy.

Insource with the same platform professionals deliver. Output and evidence-driven.

Run the programme yourself

For firms & MSSPs

Consolidate the CRM, the scoping spreadsheet, the manual Word templates, and bespoke scanners with one platform. Level up with a customisable platform that supports white labeling and dilligent delivery that is efficent and defensible.

Own the delivery, keep the margin

For independents

Solo consultants, freelance testers, bug-bounty hunters and researchers. Carry the whole engagement alone, from scope to signed report, and still deliver like a firm of ten, under your own brand and on your own box.

Run solo, deliver like a firm
Not sure which fits? Answer a couple of questions about how you work. Find your fit

Built by
operators,
for operators.

We're cybersecurity practitioners who've spent years in the field, delivering assessments, managing operations, building service lines, and navigating the gaps that established tooling and practices consistently failed to address. BREAKLINE SECURITY was born from that experience: the accumulated knowledge, the hard-won lessons, and the conviction that things could be built meaningfully better.

This isn't a pivot or a product experiment. it's the outcome of necessity, shaped by real engagements.

Completely self-hosted, for your privacy and security
Transparent, fair, and flexible pricing
No vendor lock-in, clear licensing
Shaped by experience, hard-won lessons, ambition, and necessity

Three principles.
Everything we build.

Not theory. Not a pitch deck. Three commitments that shape every product decision, pricing call, and line of code we write.

01

Operator-Built Capabilities

Everything here was built by practitioners who've been on the front line. Inside client environments, running real assessments, and living with the friction that existing tooling and processes never resolved.

What we're building is a direct and conscientious response to empower technical delivery and to support fair and secure business operations; putting the client and operator experience where it belongs.

02

Accessible Excellence

Enterprise-grade capability shouldn't require enterprise budgets or institutional backing.

Security improves when professional tools and automations reach more practitioners, not when they're locked behind complexity, opaque pricing, or gatekeeping.

Dispatch is transparently priced, cleanly licensed, and built to remove the friction between skilled professionals and the work..

03

Simple to Run, Easy to Audit

We purposefully build lean. No unnecessary abstraction, no tangle of moving parts because the person who has to self-host it and the auditor who has to trust it both benefit from software they can actually understand.

Complexity you can't understand is complexity you can't trust. So the platform stays simple to stand up, simple to protect, and clean as it grows.

Your hardware.
Your data.
Your terms.

Dispatch runs entirely on your infrastructure. One instance for your own programme, or one instance to service your clients. The only thing that ever leaves the box is a data-free daily licence heartbeat.

Have one instance for you and your clients, or have multiple isolated instances for clients who require strict data protections.

No cloud tenancy, no telemetry, no forced upgrades, completely customisable and private.

Self-hosted and private. Nothing leaves but a data-free licence heartbeat
Multi-tenant: one instance, many isolated organisations
Single-tenant: one instance per restricted client.
Deterministic & AI-free in the record of what's true
Clean licensing, no per-asset or per-seat metering
Ready when you are

Transform your
security infrastructure.

Your infrastructure, clients, operations, and data. Your choice.