shouldiuse.io

Categories

VERDICT

Should I use Crest-approved?

Manage Cookie Consent - crest-approved.org

Skip. CREST is a not-for-profit accreditation body for penetration testers, not software — there is nothing here to buy or deploy. If you came for cookie-consent management, this is the wrong site entirely.

Confidence

Medium. Based on 25+ public sources. None describe a cookie-consent product; all describe a cybersecurity accreditation body.

Ratings

  • Value for moneyNot a purchasable product
  • Ease of useNo product to use
  • Feature depthAccreditation body, not software
  • Support qualityComplaints process exists; no support data
  • Security postureNo public findings in either direction

Pricing

Not disclosed

ModelNot disclosed
Monthly feesNot disclosed
HardwareNot disclosed

Best for

  • Pen-testing firms seeking accreditation
  • Infosec pros pursuing certifications
  • Buyers vetting pen-test suppliers

Not for

  • Anyone shopping for cookie-consent software
  • Teams wanting deployable SaaS
  • Small businesses needing a simple tool
  • Non-security companies buying software

Gotchas - check before you buy

high

Tagline says 'cookie consent' but all sources show a certification body — total mismatch.

medium

Accreditation and certification fees are not published; expect quote-based pricing.

medium

Practical exams and sample application papers show real staff time required.

Pros and cons

Pros

  • Recognised accreditation for penetration testing providers
  • Runs a public marketplace for finding accredited suppliers
  • Publishes a formal complaints process for firms and individuals
  • Backed by major security vendors like Bugcrowd and Synack

Cons

  • Not software — an accreditation body with nothing to deploy
  • Accreditation requires exams, audits and renewals, not a purchase
  • No public pricing; fees live behind application pages

Sources & method

Analyzed 10/05/2026 - 12 sources - No known vulnerabilities found in the sources reviewed.

official x4review x3security x2news x3

Key stats

  • Not rated

    Rating

  • Not disclosed

    Starting price

  • 12

    Sources

  • Analyzed

  • Value for money. Not a purchasable product
  • Ease of use. No product to use
  • Feature depth. Accreditation body, not software
  • Support quality. Complaints process exists; no support data
  • Security posture. No public findings in either direction

Pricing

Not disclosed

Security

No known vulnerabilities found in the sources reviewed.

What users say

Reddit threads among security professionals treat CREST as a respected penetration-testing credential; there are no user reviews of any software product.

Companies that use it

  • Synack
  • Bugcrowd⁹
  • Trustwave11
  • QA
  • DigitalXRAID
Full analysis

Based on 25+ public sources. None describe a cookie-consent product; all describe a cybersecurity accreditation body.

Not a product — CREST accredits pen-testers; nothing to buy. Cookie-consent shoppers need a different site.

Methodology

Based on 25+ public sources. None describe a cookie-consent product; all describe a cybersecurity accreditation body.

Sources

  1. CREST Knowledge Hubcrest-approved.org
    official
  2. Complaints Handling Processcrest-approved.org
    official
  3. official
  4. CREST Marketplacemarketplace.crest.org
    official
  5. security
  6. security
  7. review
  8. review
  9. news
  10. news
  11. news
  12. CREST certification encyclopediacybersecurityswitzerland.com
    review

Rate this review

Anonymous. You can change your vote.

Loading votes…

Comments

One queue. No nested comments. Give a display name first. Limit: 200 words per comment and 7 comments per day. You can edit or delete yours.

Save a name to write a comment.

0 / 200 words

No comments yet.