Pricing · v3.5.0

Detection is free. Coordination is paid. Governance is enterprise.

The Pipelock security engine is free and always will be. Paid plans add multi-agent coordination for teams running many named profiles from one deployment. Enterprise is for fleets that need central governance.

  • Apache-2.0 core
  • No phone home
  • No machine binding
  • 30-day refund
  • Offline license
  • Cancel anytime

Community

$0

Forever. No credit card.

Full security engine, one default security profile.

One profile. Full free engine.

Move to Pro for multi-agent coordination: separate policies, budgets, and audit trails for named profiles.

01 Detect

  • Fixed-order scanner pipeline, 65 DLP patterns (keys, tokens, PII)
  • MCP scanning: input, response, and tool poisoning
  • Prompt-injection detection across encoding chains
  • SSRF, private-IP, and cloud-metadata blocking
  • Canary tokens: plant a synthetic secret, know the moment it moves

02 Enforce

  • Kill switch with 6 independent sources (fail-closed)
  • Adaptive enforcement + human-in-the-loop approvals
  • MCP tool policy: warn, block, redirect, defer
  • Guard manifests: filesystem and command-execution enforcement
  • Kernel-enforced egress containment (nftables owner-match)

03 Prove

  • Ed25519-signed decision receipts
  • Free receipt verifiers: CLI (Go, TypeScript, Rust, Python) and in-browser, no server
  • Web evidence viewer: pipelock evidence view renders a session as a self-contained HTML report
  • Signed audit reports (HTML, JSON, SARIF)
  • Signed, hot-reloadable rule bundles (28 community rules)

04 Operate

  • Fetch, forward, and WebSocket proxy + MCP (stdio + HTTP)
  • TLS interception + cross-request detection
  • Process sandbox: Landlock + seccomp (Linux + macOS)
  • Core CLI, all 7 presets, Prometheus + OTLP, attack simulation

Free engine to paid coordination. The same flat rate either way.

Your agent count can 10x. Your bill won’t.

  • No seats
  • No per-agent pricing
  • No per-request metering
  • Flat rate at every tier

Fleet governance

Fleet governance is flat-priced too

Anyone can verify a Fleet Receipt Report with the free Apache binary. Only an Enterprise Conductor can mint one.

For teams that need signed policy distribution, fleet audit aggregation, and procurement evidence. No seats. No per-agent meter. No quote maze.

Day-two operations ship with it: enrol and remove followers, publish and roll back policy, rotate and revoke keys, back up and restore control-plane state, and query the fleet audit trail.

Enterprise on-ramp

01 Evaluate

$5,000

60 days

Credited toward year one if you sign within 30 days of the eval ending. You walk away with your own signed Fleet Receipt Report either way.

Start a $5k eval

03 Annual

$25,000

per year

Flat contract. Your agent count can grow without changing the bill.

Buy annual: $25,000/yr

Everything in Pro, plus fleet governance and signed evidence.

Fleet control

  • Signed policy bundles pushed to every follower
  • One-command rollback
  • Emergency remote kill, M-of-N signed

Evidence and audit

  • Signed fleet report, verified offline with the free binary
  • Durable fleet audit aggregation and query
  • Live stream observability

Ongoing operations

  • Enrollment-token lifecycle and recovery
  • Backup, restore, repair
  • Self-hosted, named entity, async support
  • Async product support with a response target, not an SLA
  • No professional services
  • Self-hosted, no phone home

At a glance

What changes between tiers

Detection is free. Coordination is paid. Governance is enterprise.

FeatureCommunityProEnterprise
Detection and evidence · free at every tier
Fixed-order scanner pipelineFullFull
MCP proxy + tool scanningFullFull
Process sandbox + kill switchFullFull
Signed reports (HTML / JSON / SARIF)FullFull
Agent Evidence Level records (native)FullFull
Coordination · Pro
Named security profiles1 defaultUnlimited
Per-profile DLP, allowlists, rate limitsNoYes
Per-profile mode + enforce overridesNoYes
Per-profile MCP tool policyNoYes
Usage budgets per profileNoYes
Dedicated agent listeners + CIDR resolutionNoYes
Per-profile audit trails + Prometheus labelsNoYes
Fleet governance · Enterprise
Signed fleet policy distributionNoYes
Fleet audit aggregation + one-command rollbackNoYes
Emergency remote kill, M-of-N signedNoYes
Fleet Receipt ReportsNoYes
The Assess license ($999/yr) is separate from these tiers and works with any of them.

Assess · annual license

Grade your deployment. Keep the receipt.

$999/yr

Run pipelock assess against your deployment and get the full security assessment: server-specific findings, remediation guidance, and detailed framework mappings. Every run is Ed25519-signed by default; the license adds an offline-verifiable attestation and badge anyone can re-check with the free verifier.

Free Summary

  • Overall letter grade
  • Section scores
  • Top findings summary
  • Pass/fail verdict
  • Ed25519-signed manifest

Community Forever Promise

Everything that shipped free in v0.3.6, the last release before paid features, stays free. No clawbacks.

That includes the full scanner pipeline, all proxy modes, MCP protections, TLS interception, kill switch, HITL approvals, audit logging, metrics, reports (HTML, JSON, SARIF), integrity monitoring, all CLI commands from that release, and all presets. If it detects, blocks, scans, or produces signed evidence, it stays free.

Pricing FAQ · 10 answers

Answers before you buy

Straight answers about plans, trials, renewals, and refunds.

Try Pro30 days
Card required
No
Automatic charge
No
Available now
Yes
Start the trial
What counts as a "security profile"?
A security profile is a named configuration for a specific agent, workflow, or trust boundary. Each profile gets its own DLP patterns, allowlists, rate limits, mode, enforce flag, MCP tool policy, session profiling thresholds, and request budgets. Agents can be identified by dedicated listener ports, source CIDRs, or headers. Community uses one default profile. Pro lets you create as many named profiles as you need. See the Pro reference deployment for the full architecture.
Do licenses phone home?
No. License verification is fully offline using Ed25519 signatures. No network calls, no telemetry, no tracking. The binary verifies the license locally at startup.
Can one license run on multiple machines?
Yes. No machine binding, no hardware fingerprinting. You can deploy Pipelock on as many machines as you need within your licensed scope.
What happens when a license expires?
Agent profiles are disabled. Single-profile protection stays fully active. The proxy keeps protecting traffic, it simply falls back to Community features. No bricking, no lockouts.
Can I try Pro features before buying?
Yes. Pro has a 30-day trial with no card and no automatic conversion. Start the trial to get access now.
What does the Assess license include?
Run pipelock assess against your deployment. The free summary shows your grade, section scores, and top findings, signed by default. The Assess license ($999/yr) adds the full report: server-specific findings, remediation guidance, detailed framework mappings for OWASP, NIST AI RMF, EU AI Act, and SOC 2, and the optional attestation and badge. No consulting call required. See sample reports.
What's the difference between Pro and Enterprise?
Scope. Pro coordinates multiple named security profiles under one admin boundary. Enterprise is central fleet governance: Pipelock Conductor distributes signed policy bundles, aggregates fleet audit batches, and supports M-of-N emergency remote kill. Fleet Receipt Reports let procurement and audit teams verify what a whole fleet enforced, offline, with the free Apache binary. Anyone can verify a Fleet Receipt Report; only an Enterprise Conductor can mint one.
How does license renewal work?
Active subscribers get a replacement license by email before the current one expires. Install it with pipelock license install <token> and restart Pipelock. If a paid license expires, Pipelock falls back to Community instead of shutting off protection.
What's the refund policy?
30-day money-back guarantee, no questions asked. Annual plans get prorated refunds after 30 days. All refunds processed through Polar. Full refund policy.
How do I manage my subscription?
Log into the Polar customer portal to update your payment method, switch plans, download invoices, or cancel. You can also email luckypipe@pipelab.org and we will handle it for you.

Ready when you are

Start free. Upgrade when you need multi-agent coordination.

Single Go binary (Apache-2.0 core; Enterprise features under ELv2). Cancel anytime.