Plans and capabilities
Paid plans and add-ons are quoted to your needs (devis sur mesure) — no public price list.
Each tier below lists what you get — analysis depth, reporting, compliance coverage, deployment, and support. Commercial offerings are priced as a custom quote; Free / Local runs in your browser with no account.
Free / Local
Real vulnerability intelligence, zero cost. No sign-up. Runs in your browser.
Zero cost. Real results.
- Analyze any SBOM instantly — CycloneDX, SPDX, and SWID formats supported
- Real vulnerability data from OSV.dev — live CVEs, no simulated results
- Ransomware, privacy, and supply chain risk flagged per component
- NTIA EO 14028 compliance assessment included
- Export findings to JSON or CSV — no account, no subscription
No sign-up · Runs in your browser
Professional / Cloud
Cloud-synced analyses, full compliance reports, and board-ready exports.
Full visibility. Full control.
- Unlimited analyses — no monthly caps, no surprise limits
- Everything in Free, synced to the cloud — access your analyses from any device
- Full CVSS v3 scoring with Critical / High / Medium / Low breakdown
- NTIA EO 14028, NIST SP 800-161, and ISO 27001:2022 compliance in one report
- Board-ready PDF and HTML reports — Executive, Compliance, Technical, and Comprehensive formats
- Stakeholder messaging view — auto-generated risk narratives for each audience
- Batch-analyze up to 10 SBOMs at once and export results in JSON, CSV, Excel, or HTML
- Analysis history with one-click re-analysis against the latest CVE data
We respond with terms matched to your usage
Enterprise
Unlimited scale, on-premises deployment, and dedicated support.
No limits. No compromises.
- Unlimited SBOM analyses — no monthly cap
- Full on-premises or air-gapped deployment — your data never leaves your network
- ISO 27001:2022 + NIST + NTIA compliance evidence generated on demand
- Custom risk scoring aligned to your organization's threat model
- Priority support SLA — named engineer, guaranteed response time
- Volume licensing and annual contracts available
- All Professional capabilities included — batch analysis, PDF/HTML export, stakeholder reports
Custom quote · No commitment required
Request a custom quote
You have reviewed the plans and capabilities above. Tick what you want priced — we open the contact form with your selections.
Selections map to the same options described in the tier cards, add-ons, and architecture profiling.
Available options
Learn how architecture profiling works — or tick the box above to include it in your quote request.
You can also contact us directly without selecting options.
Understand your starting point
Take the free diagnostic to benchmark your software maturity in ~10 minutes — then start free in the browser, or contact us for enterprise deployment.