Simple, Transparent Pricing

Pick a plan based on how many application instances you need to protect. Annual billing saves 20%.

Starter

$79/mo

For small teams protecting up to 3 application instances

  • Up to 3 protected instances
  • SQL injection + command injection blocking
  • Path traversal defense
  • Email alerts
  • 7-day event retention
  • Community support
Get Started

Enterprise

Custom

For organizations running 50+ instances across multiple environments

  • Unlimited protected instances
  • All Growth protections
  • Authentication abuse detection
  • Custom SIEM integration (OCSF)
  • Terraform provider + REST API
  • 1-year event retention
  • Dedicated CSM + SLA
  • SOC 2 + ISO 27001 reports
Contact Sales

Frequently Asked Questions

Every Growth plan includes a 14-day free trial. Install the agent, let it baseline your application for 48 hours, then test blocking for the remaining days. No credit card required to start. If you decide not to continue, the agent uninstalls cleanly with a single command.
Yes. Upgrades take effect immediately and are prorated for the current billing cycle. Downgrades take effect at the next billing cycle. Your behavioral baselines and event history carry over between plan changes — no re-learning needed.
The agent does not capture request payloads, response bodies, or database query results. It only captures metadata: function names, query structures (parameterized — no values), file paths, and network destinations. All metadata is encrypted with TLS 1.3 in transit and AES-256 at rest. We are SOC 2 Type II certified and comply with GDPR Article 32.
Agent installation takes under five minutes for Docker-based deployments. Add an environment variable to your container definition, redeploy, and the agent starts instrumenting automatically. For Kubernetes, apply the Raven.io DaemonSet manifest. The 48-hour baselining period runs passively — no action needed from your team during that window.
We recommend running in observe-only mode during your first week in production. The agent logs every event it would have blocked without actually blocking. Review these events in the dashboard, whitelist legitimate patterns, then switch to blocking mode. Enterprise plans include a dedicated CSM who helps tune the baseline for your specific application.