Team — for a single security team
For SOCs, IT-security teams, or MSPs running detection + response themselves. Priced per analyst seat with unlimited connected mailboxes and unlimited reporter surface (Outlook + Gmail add-in installs).
Includes: Watchguard reporter surface, Assessor cockpit, ZAP org-wide remediation, hash-only threat intel enrichment, unlimited tenant IOC library, dry-run purge preview, weekly analyst report PDF.
MSSP — for managed-security providers
One workspace, many client tenants. Per-tenant verdict policy, per-tenant IOC library, per-tenant audit log. Priced by number of client tenants, not per-mailbox.
Includes everything in Team, plus: tenant-isolated Assessor cockpit, per-tenant billing rollup, MSSP admin roles, cross-tenant reporting for the SOC director.
Enterprise — for named accounts
Fixed-price annual contract with founder-on-call incident bridge, custom deployment (on-prem VM or single-tenant cloud), tenant-scoped model tuning, and SOC-adjacent integrations built by our team.
Includes everything in MSSP, plus: private compute for AI verdicts, tenant-isolated model updates, private threat-intel feeds, priority feature roadmap slot.
Honest note on where this page is
Public per-seat numbers are being finalised for Q4 2026. Until then, we send a personal pricing letter within one business day of a demo — same math, less awkwardness for both of us.
