Pricing

One forfait per domain. Sold only when in place.

Priced against what each function actually does today — not the whole catalogue advertised as if it were finished. A forfait sells only what is marked in place below; anything still in observation is shown, never billed as delivered.

13 forfaits122 functions in place18 in observation

Sign in to subscribe — a session is required to open Stripe Checkout.

Code & Software Supply Chain

$79
/ month

per organization, up to 10 repositories; $5 per repository beyond that

  • Multi-language Rules
  • OWASP Application Top 10
  • OWASP API Top 10
  • OWASP LLM Top 10
  • Framework Surface
  • Noise Management
  • Language Coverage
  • Inter-procedural Taint Analysis
  • Binary Analysis
  • Dependency Vulnerabilities
  • Asset Inventory
  • CI/CD Security
  • Typosquatting
  • License Compliance
  • Container Images
  • Malicious Packages
  • SBOM Generation
  • Provenance & Signing
  • Reproducible Builds
  • Vendor Risk

Application

$99
/ month

per organization, up to 5 applications; $15 per application beyond that

  • Web Vulnerability Scanning
  • Liveness Verification
  • Fuzzing
  • Application Crawling
  • Authenticated DAST
  • Authorization Testing
  • Browser Security
  • IAST / RASP
  • Mobile Security

Surface & Network

$69
/ month

per organization, up to 20 targets (domains, addresses); IDS sensor supplied by the customer

  • Service Discovery
  • TLS Configuration
  • HTTP Headers
  • DNS Posture
  • External Exposure
  • Attack Surface Management
  • Certificates & PKI
  • Segmentation Validation
  • Network Intrusion Detection (IDS)
  • NDR
  • Flow Analysis
  • DNS Filtering
  • Zero Trust & Access
In observation
  • Wireless Security
  • WAF / Inline Protection
  • Anti-DDoS & Rate Limiting
  • Bot Defense

Cloud & Containers

$89
/ month

per cloud account; $40 per additional account

  • IaC Scanning
  • Configuration Audit
  • Drift Detection
  • Container Hardening
  • CSPM
  • CIEM
  • Kubernetes Security
  • Container Runtime
  • Hardening Benchmarks

Host & Ransomware

$4
per host / month

$39 per month minimum; integrity agent, decoys and containment included

  • File Integrity
  • Host Monitoring
  • Ransomware Detection
  • Automatic Containment
  • EDR
  • Malware Analysis
  • Backup Integrity
  • Patch Management
  • Application Control
Live total$40/mo

Identity & Data

$99
/ month

per organization; exposed-credential monitoring included

  • Authority Matrix
  • Secrets & Keys
  • Authentication Posture
  • Session Security
  • OAuth & Federation
  • Personal Data Discovery
  • Encryption at Rest & Key Management
  • Data Classification
  • Leak Prevention
  • Database Posture
  • Privacy Compliance
  • Backup Governance
In observation
  • Compromised Credentials
  • Privileged Access
  • Behavioral Analysis

Compliance & Governance

$149
/ month

per organization; SOC 2 / ISO 27001 catalogue, risk register, audit evidence

  • Policy as Code
  • Audit Evidence
  • Compliance Frameworks
  • Risk Register
  • Remediation Tracking
  • Cyber Insurance
  • Coordinated Disclosure
  • Business Continuity

Operations & Response

$149
/ month

per organization, 20 GB of logs per month included; $3 per GB beyond that; AI incident forensics available as an add-on

  • Automated Response
  • Log Collection & Correlation
  • Detection Rules
  • Threat Hunting
  • Incident Management
  • Forensics
  • Orchestration Playbooks
  • Decoys
  • Vulnerability Feeds
  • Web3 Incident Corpus
  • Public Audits & Contests
  • Findings Prior Art
  • Bug Bounty Program Watch
  • New CVE Alerting
  • Real-world Exploitability
  • Indicators of Compromise
In observation
  • Underground Monitoring

Offensive Validation

$199
/ month

per organization, up to 3 targets; or $299 per one-off campaign

  • Mutation Testing
  • Symbolic Execution
  • Vulnerability Reachability
  • Exploit Chains
  • Pentest Report
In observation
  • Proof by Exploitation
  • Attack Simulation
  • Detection Validation
  • Adversarial Load Testing

Smart Contract Audit

$50 → $20
per contract, degressive

tiered and cumulative within a calendar month: 1 to 10 contracts $50, 11 to 20: $40, 21 to 30: $30, beyond that $20; the count resets each month; one contract = up to 20 KB of source

  • Solidity Static Analysis
  • Multi-model Panel
  • Invariants & Properties
  • Economic Security
  • Fork Diff
  • Deployed Drift
  • On-chain Monitoring
  • Multi-ecosystem
  • Source Verification
  • Cross-chain Security
Live total$50

1 × $50

Web3 Monitoring

$39
/ month

per monitored protocol; continuous deployed-drift and on-chain monitoring

  • Governance & Upgradability
  • Scam Detection
  • Wallet Security
  • MEV & Ordering
  • On-chain Compliance

AI & Agents

$49
/ month

per organization; injection suites, MCP, guardrails, model provenance

  • Static OWASP LLM Top 10
  • Transcript Leakage
  • Model Provenance
  • Autonomous Agent Guardrails
  • RAG Pipeline Security
In observation
  • Runtime Prompt Injection
  • Tool & MCP Security

Email & CEO Fraud

$29
/ month

per organization; mailbox ingestion, BEC detection; the rest of the human factor follows once wired up

  • Email Security
In observation
  • Phishing Simulation
  • Awareness Training
  • Pretext Surface
  • Insider Risk

Sentinelleai Complete

every monthly plan at its base cap; contract audits billed per use

Web3 contract audits are billed per event even for members of this bundle — the per-contract forfait is not among the recurring forfaits the bundle grants.

$499
/ month
Add-on

Deep contract verification

Beyond the multi-AI panel: mutation testing measures whether your test suite actually catches a broken guard, and Echidna fuzzes your invariant properties to try to falsify them. Because both run against your own repository, this is offered only when your repo qualifies— a green Foundry test suite for mutation, an invariant harness for Echidna. The fee covers the CPU time of a full pass (tens of minutes).

$50
/ run
Teams & companies

Group plans, priced per seat.

One subscription for a whole team: every member signs in with their own account and inherits the plan, under central administration and a single bill. Manage members and subscribe from your organisation.

Team

$39
/ seat / mo

Minimum 3 seats

For a security team that needs several people scanning under one account and one bill.

  • ·Pooled access to the core scanning suite (code, app, surface, cloud, host, identity, AI, human-factor, web3 drift)
  • ·Central member management with owner / admin / member roles
  • ·One consolidated bill for the whole team
  • ·Optional shared workspace — the team sees the team's results
Set up a team

Business

$69
/ seat / mo

Minimum 5 seats

For a company that wants the full platform, compliance evidence and awareness programme across its team.

  • ·Everything in Team, pooling the ENTIRE recurring suite per seat
  • ·Governance & compliance evidence (SOC 2 / ISO 27001 catalogue, risk register)
  • ·Log retention & SecOps analytics (SIEM, 20 GB/month included)
  • ·Offensive validation surface and org-wide phishing simulation + awareness training seats
  • ·Priority support
Set up a team

Enterprise

Custom

From 25 seats

For a larger organisation needing SSO, provisioning and a negotiated contract.

  • ·Everything in Business
  • ·Single sign-on (SAML / OIDC) and SCIM provisioning
  • ·Dedicated onboarding, a named contact and a custom SLA
  • ·Volume seat pricing and annual invoicing
Contact sales
Function by function

Every function, every forfait, one price.

Every function each forfait lists — delivered or in observation — with the forfait it belongs to and the price that covers it.

FunctionForfaitStatusPrice
Autonomous Agent GuardrailsAI & Agents In place$49
Model ProvenanceAI & Agents In place$49
RAG Pipeline SecurityAI & Agents In place$49
Runtime Prompt InjectionAI & Agents In observation$49
Static OWASP LLM Top 10AI & Agents In place$49
Tool & MCP SecurityAI & Agents In observation$49
Transcript LeakageAI & Agents In place$49
Application CrawlingApplication In place$99
Authenticated DASTApplication In place$99
Authorization TestingApplication In place$99
Browser SecurityApplication In place$99
FuzzingApplication In place$99
IAST / RASPApplication In place$99
Liveness VerificationApplication In place$99
Mobile SecurityApplication In place$99
Web Vulnerability ScanningApplication In place$99
CIEMCloud & Containers In place$89
Configuration AuditCloud & Containers In place$89
Container HardeningCloud & Containers In place$89
Container RuntimeCloud & Containers In place$89
CSPMCloud & Containers In place$89
Drift DetectionCloud & Containers In place$89
Hardening BenchmarksCloud & Containers In place$89
IaC ScanningCloud & Containers In place$89
Kubernetes SecurityCloud & Containers In place$89
Asset InventoryCode & Software Supply Chain In place$79
Binary AnalysisCode & Software Supply Chain In place$79
CI/CD SecurityCode & Software Supply Chain In place$79
Container ImagesCode & Software Supply Chain In place$79
Dependency VulnerabilitiesCode & Software Supply Chain In place$79
Framework SurfaceCode & Software Supply Chain In place$79
Inter-procedural Taint AnalysisCode & Software Supply Chain In place$79
Language CoverageCode & Software Supply Chain In place$79
License ComplianceCode & Software Supply Chain In place$79
Malicious PackagesCode & Software Supply Chain In place$79
Multi-language RulesCode & Software Supply Chain In place$79
Noise ManagementCode & Software Supply Chain In place$79
OWASP API Top 10Code & Software Supply Chain In place$79
OWASP Application Top 10Code & Software Supply Chain In place$79
OWASP LLM Top 10Code & Software Supply Chain In place$79
Provenance & SigningCode & Software Supply Chain In place$79
Reproducible BuildsCode & Software Supply Chain In place$79
SBOM GenerationCode & Software Supply Chain In place$79
TyposquattingCode & Software Supply Chain In place$79
Vendor RiskCode & Software Supply Chain In place$79
Audit EvidenceCompliance & Governance In place$149
Business ContinuityCompliance & Governance In place$149
Compliance FrameworksCompliance & Governance In place$149
Coordinated DisclosureCompliance & Governance In place$149
Cyber InsuranceCompliance & Governance In place$149
Policy as CodeCompliance & Governance In place$149
Remediation TrackingCompliance & Governance In place$149
Risk RegisterCompliance & Governance In place$149
Awareness TrainingEmail & CEO Fraud In observation$29
Email SecurityEmail & CEO Fraud In place$29
Insider RiskEmail & CEO Fraud In observation$29
Phishing SimulationEmail & CEO Fraud In observation$29
Pretext SurfaceEmail & CEO Fraud In observation$29
Application ControlHost & Ransomware In place$4
Automatic ContainmentHost & Ransomware In place$4
Backup IntegrityHost & Ransomware In place$4
EDRHost & Ransomware In place$4
File IntegrityHost & Ransomware In place$4
Host MonitoringHost & Ransomware In place$4
Malware AnalysisHost & Ransomware In place$4
Patch ManagementHost & Ransomware In place$4
Ransomware DetectionHost & Ransomware In place$4
Authentication PostureIdentity & Data In place$99
Authority MatrixIdentity & Data In place$99
Backup GovernanceIdentity & Data In place$99
Behavioral AnalysisIdentity & Data In observation$99
Compromised CredentialsIdentity & Data In observation$99
Data ClassificationIdentity & Data In place$99
Database PostureIdentity & Data In place$99
Encryption at Rest & Key ManagementIdentity & Data In place$99
Leak PreventionIdentity & Data In place$99
OAuth & FederationIdentity & Data In place$99
Personal Data DiscoveryIdentity & Data In place$99
Privacy ComplianceIdentity & Data In place$99
Privileged AccessIdentity & Data In observation$99
Secrets & KeysIdentity & Data In place$99
Session SecurityIdentity & Data In place$99
Adversarial Load TestingOffensive Validation In observation$199
Attack SimulationOffensive Validation In observation$199
Detection ValidationOffensive Validation In observation$199
Exploit ChainsOffensive Validation In place$199
Mutation TestingOffensive Validation In place$199
Pentest ReportOffensive Validation In place$199
Proof by ExploitationOffensive Validation In observation$199
Symbolic ExecutionOffensive Validation In place$199
Vulnerability ReachabilityOffensive Validation In place$199
Automated ResponseOperations & Response In place$149
Bug Bounty Program WatchOperations & Response In place$149
DecoysOperations & Response In place$149
Detection RulesOperations & Response In place$149
Findings Prior ArtOperations & Response In place$149
ForensicsOperations & Response In place$149
Incident ManagementOperations & Response In place$149
Indicators of CompromiseOperations & Response In place$149
Log Collection & CorrelationOperations & Response In place$149
New CVE AlertingOperations & Response In place$149
Orchestration PlaybooksOperations & Response In place$149
Public Audits & ContestsOperations & Response In place$149
Real-world ExploitabilityOperations & Response In place$149
Threat HuntingOperations & Response In place$149
Underground MonitoringOperations & Response In observation$149
Vulnerability FeedsOperations & Response In place$149
Web3 Incident CorpusOperations & Response In place$149
Cross-chain SecuritySmart Contract Audit In place$50 → $20
Deployed DriftSmart Contract Audit In place$50 → $20
Economic SecuritySmart Contract Audit In place$50 → $20
Fork DiffSmart Contract Audit In place$50 → $20
Invariants & PropertiesSmart Contract Audit In place$50 → $20
Multi-ecosystemSmart Contract Audit In place$50 → $20
Multi-model PanelSmart Contract Audit In place$50 → $20
On-chain MonitoringSmart Contract Audit In place$50 → $20
Solidity Static AnalysisSmart Contract Audit In place$50 → $20
Source VerificationSmart Contract Audit In place$50 → $20
Anti-DDoS & Rate LimitingSurface & Network In observation$69
Attack Surface ManagementSurface & Network In place$69
Bot DefenseSurface & Network In observation$69
Certificates & PKISurface & Network In place$69
DNS FilteringSurface & Network In place$69
DNS PostureSurface & Network In place$69
External ExposureSurface & Network In place$69
Flow AnalysisSurface & Network In place$69
HTTP HeadersSurface & Network In place$69
NDRSurface & Network In place$69
Network Intrusion Detection (IDS)Surface & Network In place$69
Segmentation ValidationSurface & Network In place$69
Service DiscoverySurface & Network In place$69
TLS ConfigurationSurface & Network In place$69
WAF / Inline ProtectionSurface & Network In observation$69
Wireless SecuritySurface & Network In observation$69
Zero Trust & AccessSurface & Network In place$69
Governance & UpgradabilityWeb3 Monitoring In place$39
MEV & OrderingWeb3 Monitoring In place$39
On-chain ComplianceWeb3 Monitoring In place$39
Scam DetectionWeb3 Monitoring In place$39
Wallet SecurityWeb3 Monitoring In place$39

In observation rows are shown for transparency only — they are not sold as delivered and are excluded from what a forfait bills for today.

FAQ

Questions people actually ask

Which currency are prices in?

USD. Prices shown on this page are before any tax; Sentinelleai does not add tax to any invoice.

How does billing actually work?

Subscribing opens a Stripe-hosted Checkout page. Card data is entered on Stripe's own page and never touches Sentinelleai's servers.

How do I cancel or change a forfait?

Use the "Manage billing" button above. It opens the Stripe Customer Portal, where plans, payment methods, and cancellation are handled directly.

What does "in observation" mean?

The function is on a forfait's roadmap but is not fully delivered yet. It is shown for transparency and is never billed as delivered — only functions marked "in place" count toward what a forfait sells today.