Offensive security,
done properly.
I'm Timo De Clercq, an independent penetration tester. Companies hire me to find the vulnerabilities that matter, before someone else does.
Sectors I've tested in
Bugs with my name on them.
Independent research, reported responsibly.
Breaking and building.
Offensive security is what I'm known for, but I also build the tools and automation around it.
Pentests
Hands-on security testing of your external edge, internal network, and applications. I find the vulnerabilities that matter and prove the impact, not just a scanner dump.
Bug Bounty
I hunt across public and private programs for real, exploitable bugs. The same offensive mindset, pointed at live targets and measured by proven impact.
Software development
I build the tools around the work: automation that removes the manual grind, AI-driven workflows, and custom security tooling.
Three fronts, one mindset.
I work on three fronts, all driven by the same offensive mindset: penetration testing for companies, bug bounty hunting on live targets, and software that automates the work and turns findings into tools.
Breaking things is only half the job; explaining the breakage so it gets fixed is the other half. Developers get reproduction steps they can follow at their desk, boards get risk in the language of the business, and nobody gets 200 pages of scanner output.
Let's talk.
Tell me what you're building and what you're worried about. You'll hear back within a day.