Simple, usage-based pricing

Start free. Scale when you ship.

The in-browser tools and npm packages are free and open. A hosted API key unlocks the advanced engine (cross-tool & MCP rules); paid plans raise limits and add hosted AI. You only pay for hosted volume — not for the open engine.

Free

For trying the tools and small projects.

$0/month
Start free
  • All in-browser tools & npm packages (basic engine)
  • Hosted advanced engine with an API key (cross-tool + MCP rules)
  • 2,000 API requests / month
  • 30 requests / minute per key
  • Account-synced scan history
  • LLM Gateway (secure proxy): scan → forward → scan, bring-your-own-key
  • Bring-your-own-key AI remediation

Pro

Popular

For teams shipping agents to production.

$49/month
Contact sales
  • Everything in Free
  • 50,000 API requests / month
  • 120 requests / minute per key
  • Hosted AI remediation & LLM Gateway completions (no key to manage)
  • Priority email support

Team

For organizations with higher volume and controls.

Custom
Contact sales
  • Everything in Pro
  • 250,000 API requests / month
  • 300 requests / minute per key
  • Team seats & SSO (planned)
  • Custom rules & SLA (planned)

Paid checkout isn't self-serve yet — contact us and we'll set you up while we finish billing. Limits and quotas listed above are enforced today on API keys. Team seats, SSO, and custom rules are on the roadmap and labeled as planned.

Compare plans

FeatureFreeProTeam
Monthly price$0$49Custom
API requests / month2,00050,000250,000
Rate limit / minute (per key)30120300
In-browser tools & npm packages
Hosted advanced engine (cross-tool + MCP)
LLM Gateway (secure proxy)Bring your own keyBYOK + hostedBYOK + hosted
Hosted AI — no provider key to manage
Account-synced scan history
SupportCommunityPriority emailPriority + SLA (planned)

Every plan includes the free in-browser tools, npm packages, and the LLM Gateway; paid plans add hosted AI (no provider key to manage) and higher limits.

What's free vs. paid

Free & open: every in-browser tool, the @opensecureai npm packages (scanner, firewall, agent-guard) with the basic engine, the CLI & GitHub Action, and the anonymous API (basic engine, IP rate-limited). No account required.

Hosted (account + API key): the advanced engine — cross-tool data-exfiltration chains, confused-deputy, MCP annotation-spoofing, tool-name shadowing, and attack-surface analysis — plus account-synced scan history. Free accounts get it at low volume; paid plans raise the limits.

LLM Gateway (secure proxy): a firewall in front of any model — it scans the prompt, forwards it to the provider/model you pick (OpenAI, Anthropic, xAI, Groq), then scans the response, blocking or flagging prompt-injection and leaked secrets/PII inline. Free with your own key; paid plans add hosted completions so there's no provider key to manage.

Paid add-ons: hosted AI remediation without managing a provider key, higher monthly quotas and per-minute limits, and priority support. Your usage is visible on the dashboard.