PRICING

Choose Your Plan

Choose the plan that fits your needs – flexible options with no hidden fees, built to grow with you.

Community

Explore the platform in a free, non-regulated environment.Get started instantly and scale when you’re ready.

$0 /month

Includes:

  • Fair Use Policy
  • 1 User, 1 API key (addtl. available)
  • Unlimited Inventories
  • CycloneDX & SPDX Support
  • CI/CD Integration
  • Secure SBOM Sharing
  • Package Intelligence (Basic) Analyzes software packages across ecosystems to surface dependency structure, organizational exposure, and supply chain risk intelligence.
  • Vulnerability Matching (Basic) Matches SBOM components against known vulnerabilities from public security databases.
  • FOSS License Visibility (Basic) Provides visibility into open source licenses used across your software components.
  • Community Support

Team

Built for small teams starting with SBOM and supply chain security. Collaborate, integrate, and establish first workflows.

$29 /month

Sold on annual contracts and billed yearly.

Everything in Community, plus:

  • Incl. 5 Users
  • 5 API keys
  • Secure SBOM Request & Response Workflows Request, receive, track, and manage SBOM exchanges securely across suppliers and teams.

Optional

  • Additional Users Add more team members with role-based access and collaboration features.
  • Advanced Vulnerability Data Enhanced vulnerability intelligence with enriched metadata, exploitability, and prioritization signals.

Professional

Designed for regulated suppliers with compliance requirements. Manage secure SBOM exchange at scale.

$1,240 /month

Sold on annual contracts and billed yearly.

Everything in Team, plus:

  • Unlimited Users
  • Package Intelligence with Geo-Risk Identifies package provenance and maintainer geo-risk to support supply chain risk analysis. Identify maintainer and contributor country provenance Detect packages with elevated geopolitical exposure Support supplier and procurement risk decisions
  • Advanced Vulnerability Data
  • FOSS License Risk Management AI-powered identification of license conflicts and potential FOSS compliance issues.
  • Advanced Analytics (Exposure Management) Cross-SBOM analytics to identify affected products, suppliers, and systems during security incidents.
  • Policies Manager Define and enforce custom SBOM quality, compliance, and sharing policies across the organization.
  • Quality Gate Automatically validates SBOMs against NTIA, OWASP, and custom policy requirements. Automatically validate SBOM quality and completeness Enforce NTIA, OWASP, and custom policies Reduce manual review and compliance effort
  • Component Health Tracks package quality, maintenance activity, vulnerability history, and ecosystem health indicators.
  • Professional Support

Optional

  • SBOM Redacted Sharing Securely share partial or filtered SBOMs while protecting sensitive intellectual property.
  • SBOM Trust Center Publish approved SBOM information through a controlled public or customer-facing portal. Publish approved SBOMs directly on your website Redact sensitive data while maintaining transparency Full audit trail for all external access Learn more about Trust Center
  • SBOM Communication Center Coordinate vulnerability response workflows using VEX and CSAF security advisory standards. Centralize supplier and customer SBOM communication Coordinate incident response with VEX & CSAF support Track supplier responsiveness and remediation workflows