30-day free trial on all plans

Simple, fair pricing.

Pick a plan that fits your team. Card required to start the trial. Cancel anytime, no questions asked.

Starter

$79/mo

For individual developers and small teams shipping secure code.

  • Up to 4 team seats
  • Up to 5 GitHub repositories
  • All connectors (GitHub, Cloudflare, Vercel, Supabase, Resend)
  • Full findings with step-by-step fix instructions
  • Code reviewed for security issues before it ships
  • Severity breakdown + risk trend tracking
  • AI coding agent integration (Claude Code, Codex, Cursor)
  • Slack alerts for critical findings
Most popular

Growth

$299/mo

For teams approaching SOC 2 or selling to enterprise customers.

  • Everything in Starter
  • Up to 10 team seats
  • Unlimited GitHub repositories
  • SOC 2 compliance dashboard + evidence export
  • Priority email support
  • Custom alert routing

Enterprise

Custom

For larger teams with custom compliance, deployment, or scale needs.

  • Everything in Growth
  • Unlimited seats and repositories
  • SSO / SAML / SCIM
  • Custom connectors and on-prem agents
  • Dedicated security engineer
  • 99.9% SLA + 24/7 support

Not sure which plan? Book a 15-minute walkthrough →

FAQ

Common questions

Do I need a credit card to start?+
Yes. We collect your card when you start checkout, but you won't be charged for 30 days. Cancel before the trial ends and you owe nothing.
What happens after the trial?+
You're automatically moved to your chosen plan. We'll email you a reminder a few days before the trial ends.
Is access read-only?+
Yes. We connect to your infrastructure with read-only OAuth tokens. We never write to or modify your systems.
What's the SOC 2 export?+
Growth plan users can export a formatted evidence pack (control mapping, open findings, remediation history) to share with auditors.
Can I switch plans later?+
Yes. Upgrade or downgrade at any time from your dashboard. Changes take effect at the next billing cycle.
How is data handled?+
All data is encrypted in transit and at rest. We are SOC 2 Type II ready, GDPR aware, and data is stored exclusively in US regions.