Pricing

The software is free.
You pay for delivery.

Every capability ships in the open-source Open tier, Iris included. Nothing is gated. The paid tiers sell the work around it: managed hosting, support, and bespoke install and integration.

Open
Free self-hosted · open source

The entire platform. You run it, you own it, you keep every byte. Bring your own model or run Ollama locally.

Deploy on GitHub
POPULAR
Pro
Per user billed monthly · pricing shown at checkout Volume pricing? Contact us →

We host, patch, and keep it running. Same platform as Open, none of the ops. Redaction on by default before any LLM call.

Get started →
Custom
Custom on-prem · per project

We install it on your perimeter, integrate it with your stack, and build what your org specifically needs. SSO, SLA, 24/7 support.

Talk to us →
What you need to self-host Open
Linux host or VM2 vCPU · 4 GB RAM · 20 GB disk
Docker + Composedocker compose up, nothing else
LLM API key or OllamaAny OpenAI-compatible endpoint, or run Ollama locally for zero data egress
Network access to your targetsScanner runs from inside your perimeter, no inbound rules needed
The full platform 26 capabilities · free in every tier
Full 8-agent pipeline (Recon to Reporter)
Iris host agent: process, file, network & log telemetry
Asset discovery (CT logs + nmap CIDR sweep)
Vulnerability scanning (nmap + nuclei)
CVE correlation: 338k+ NVD entries
SSVC prioritization (deterministic, 0 LLM tokens)
CISA KEV + FIRST EPSS daily sync
Watchtower: KEV & EPSS spike alerts
Red / Blue adversarial validation
Phishing campaigns (asset-aware lures)
Auth phishing simulation (MFA/OTP)
Credential exposure (HIBP integration)
Dark web + IOC feeds (ThreatFox / URLhaus)
Incidents & case management
Posture timeline & risk scoring
Executive dashboard (11 widgets)
Scheduled scans & jobs (cron)
Slack / Email / PagerDuty / OpsGenie alerts
Data redaction before any LLM call
MCP integration
Audit log (append-only)
RBAC: Admin / Analyst / Viewer
REST API + scoped API keys
Permission policies (AI action gates)
Community verdict memory (k-anonymity)
BYO model: Ollama, vLLM, or any OpenAI-compatible API
What the paid tiers add
Openfree
Proper user
Customper project
You host it yourself (Docker, open source)
Managed cloud infrastructure & updates
Email support
On-prem / air-gapped installation
Guided integration with your stack
Bespoke development for your org
SSO / SAML & tenant isolation
Dedicated SLA & 24/7 priority support

Can I switch tiers later?

Yes. The Open tier uses the same Docker images as Pro and Sovereign. Migration is a config change, not a re-deployment.

What LLMs does it use?

Your choice, on every tier. Run Ollama or vLLM locally, point it at any OpenAI-compatible API, or disable LLM calls entirely and stay 100% deterministic. The managed Pro tier defaults to Claude Sonnet with redaction on.

Does the deterministic core cost LLM tokens?

No. SSVC prioritization, CVE correlation, KEV matching, EPSS scoring, and Watchtower alerts are 100% deterministic. Zero LLM calls, zero per-query cost.

What does "data redaction" mean?

Before any prompt reaches the LLM, Horus replaces hostnames, IPs, and emails with stable per-org pseudonyms (host-a, ip-1, user-x), then de-pseudonymizes on the response side. Your actual infrastructure identifiers never appear in an LLM prompt. On the Open tier, point Horus at a local Ollama instance and nothing leaves your network at all.

What exactly reaches the LLM, and what never does?

Zero LLM calls · stays on your network
CVE correlation against NVD (338k+ entries)
SSVC prioritization · fully deterministic
KEV matching and Watchtower alerts
EPSS scoring and spike detection
Asset inventory and raw scan output
Audit log and posture history
HIBP credential exposure checks
Reaches LLM · pseudonymized first
Red / Blue debate arguments per finding
Judge verdict and confidence score
Executive summary generation
Iris event triage classification
Phishing lure generation (no real employee data)

On the managed Pro tier the LLM is Claude Sonnet with redaction on by default. On Open, swap it for any endpoint or run Ollama locally for zero egress.

Is there a free trial for Pro?

Yes. The live demo is pre-loaded with 30 days of scan history, real CVE findings, Red/Blue debate transcripts, and phishing campaign results. No card required.

What does Custom cover?

On-prem or air-gapped installation, integration with your existing stack, and development of the specific capabilities your org needs. Plus SSO/SAML, a dedicated SLA, and 24/7 priority support. Scoped and priced per project.

A whole security team.
For less than one analyst.

The demo is pre-loaded with 30 days of posture history, real CVE findings, Red/Blue debate transcripts, and phishing campaign results.