Pay for scans, not tooling maintenance
Every plan includes the MCP security server, live CVE data, and every supported language. Plans differ only in scan runs and team features.
Starter
25 audit runs / month
For individual auditors and small teams getting started.
Create free account- MCP security server in your IDE
- Always-current CVE & vuln databases
- Web, Solidity & Solana coverage
- No local scanner or rule-pack updates
- Unlimited repositories
- Email support
Team
Most popular120 audit runs / month
For security teams auditing across multiple codebases.
Create free account- Everything in Starter
- Shared team workspace & report history
- False-positive triage at scale
- CI / pull-request scanning
- OWASP posture tracking over time
- Priority support
Scale
500 audit runs / month
For audit firms and enterprises with continuous audit needs.
Create free account- Everything in Team
- SSO / SAML
- Custom detectors & playbooks
- Compliance-ready reporting
- Dedicated onboarding & support
- Uptime & response-time SLA
All prices in USD, billed monthly. Annual billing available on request.
Frequently asked questions
What counts as a scan run?
One run is a full scan of a repository against the current detectors and CVE databases. Follow-up tool calls on existing findings (details, triage, fix suggestions) don't consume runs.
Do I have to update scanners or CVE feeds?
No. Hi AUDIT is an MCP server. Detectors, CVE data, and vulnerability databases stay current on our side. You add it once and keep using it.
What happens if I run out of runs?
You can purchase additional runs on demand or upgrade your plan at any time. Unused runs don't roll over between months.
Do all plans include every language?
Yes. TypeScript/JavaScript, Python, Go, Rust, Java, COBOL, Solidity, Solana, and 12 more are included on every plan.
Need more than 500 runs a month?
Contact us for volume pricing and self-hosted deployment options.
