One price, exactly your size.

Free

For anyone trying CybeDefend on real code.

$0

  • 10static scans
  • 50AI credits
  • the whole platform

No card, no time limit.

SAST, SCA, IaC and secret scansAutoFix and BLSA, with your credits

Developer

For solo devs shipping side projects with an AI agent.

$19/mo

$228 billed yearlySave 10%

3 repositories · 1 seat100 AI credits / month

In every plan

  • SAST, SCA, secrets, IaC, CI/CD and licence scansunlimited
  • VibeDefend, IDE plugins, AutoFix, Security Champion
  • GitHub & GitLab
  • Zero-Day Threat Monitoring
  • Email support

Team

For small product teams shipping every week.

$229/mo

$2,748 billed yearlySave 8%

10-20 repositories · 5-10 seats1,500 AI credits / month

Everything in Developer, plus

  • Container security and registries
  • CI/CD, REST API, Slack, Jira and Linear
  • Role-Based Access Control (RBAC)
  • GRC / SIEM export

Enterprise

Custom deployment for regulated, multi-team orgs.

  • Unlimited repositories, seats and AI credits
  • SSO / SAML, private deployment, account manager
  • 99.5% uptime SLA

Custom quote

Talk to sales

Team and Scale grow with add‑ons: $12 per extra repository, $24 per extra seat. Add‑ons are billed monthly. Annual billing applies to the base plan.

Find your plan
Compliance reports?
Your fitTeam

$249/mo

$249 base

What ships in each plan, side by side. No asterisks, no upsell traps.

FeatureDeveloper$19/moTeam$229/moMost popularScale$640/moEnterpriseCustom quote
Pricing & limits
Repositories310 (up to 20, +$12/mo each)25 (up to 50, +$12/mo each)Unlimited
Developer seats15 (up to 10, +$24/mo each)15 (up to 25, +$24/mo each)Unlimited
AI credits / month1001,5005,000Unlimited
Static scans (SAST/SCA/IaC/Secrets)UnlimitedUnlimitedUnlimitedUnlimited
Core security scanners
AI-BOM · Discovery & cataloging (EU AI Act / NIST AI RMF)Not includedNot includedIncludedIncluded
SAST · Static analysis with reachabilityIncludedIncludedIncludedIncluded
SCA · Dependencies + license riskIncludedIncludedIncludedIncluded
Secret Detection · Catch leaked tokens before commitIncludedIncludedIncludedIncluded
License Compliance · Open-source license risk, classifiedIncludedIncludedIncludedIncluded
IaC · Terraform · CloudFormation · Ansible · K8sIncludedIncludedIncludedIncluded
Container Security · Image scanning + runtime contextNot includedIncludedIncludedIncluded
CI/CD · GitHub Actions · GitLab CI · Jenkinsfile · TektonIncludedIncludedIncludedIncluded
BLSA (business-logic security)Not includedNot includedEarly accessIncluded
Integrations
GitHub & GitLabIncludedIncludedIncludedIncluded
IDE plugins (VS Code, JetBrains, Cursor, Claude Code)IncludedIncludedIncludedIncluded
VibeDefend · agent-time review on every promptIncludedIncludedIncludedIncluded
Action Guard · LLM judgment on risky actions500, then regex500, then regexUnlimited*Unlimited*
CI/CD (GitHub Actions, GitLab CI, Jenkins, Azure DevOps, Bitbucket Pipelines)Not includedIncludedIncludedIncluded
REST APINot includedIncludedIncludedIncluded
Slack integrationNot includedIncludedIncludedIncluded
Container Registries (Docker Hub, GCR, ACR, Quay, GitHub/GitLab Registries, AWS ECR, Harbor, JFrog)Not includedIncludedIncludedIncluded
Task management (Jira, Linear)Not includedIncludedIncludedIncluded
Issue tracking (GitHub Issues, GitLab Issues)Not includedIncludedIncludedIncluded
Capabilities
Cybe AutoFix (verified patches)IncludedIncludedIncludedIncluded
Cybe Security Champion (IDE copilot)IncludedIncludedIncludedIncluded
Zero-Day Threat MonitoringIncludedIncludedIncludedIncluded
Business-context engineNot includedBasicAdvancedCustom
Role-Based Access Control (RBAC)Not includedIncludedIncludedAdvanced
GRC / SIEM exportNot includedIncludedIncludedIncluded
Security PoliciesNot includedNot includedIncludedIncluded
SBOM generation (CycloneDX, SPDX)Not includedNot includedIncludedIncluded
Report Generation (OWASP, CWE exports)Not includedNot includedIncludedIncluded
Reports by Scanner TypeNot includedNot includedNot includedIncluded
Report storage · retentionNot includedNot included90 days365 days
SSO / SAMLNot includedNot includedNot includedIncluded
Dedicated tenant / on-premise**Not includedNot includedNot includedIncluded
Services
Community supportIncludedIncludedIncludedIncluded
Email supportIncludedIncludedIncludedIncluded
Dedicated Slack channelNot includedNot includedIncludedIncluded
Response timeBest effortWithin 72 hoursWithin 24 hours24/7 Priority
Account managerNot includedNot includedNot includedIncluded
Onboarding workshopNot includedNot includedIncludedIncluded
Uptime SLABest effortBest effortBest effort99.5%
Roadmap influenceNot includedNot includedQuarterlyDirect
  • Unlimited within fair use. We only step in on volumes far beyond what a team uses.
  • Dedicated tenant and on-premise are billed on top of the plan, quoted with your deployment.
Startup programme

Free months for startups.

Building with agents? Two tiers, decided by your stage.

Incubated, before funding

You have not raised yet and you are part of an incubator or an accelerator.

6months free

On the plan you pick. Then the standard price of that plan, nothing else changes.

Seed to Series A

You have raised a round.

3months free

Same deal, shorter, because you have runway.

In both tiers

  • A startup CSMOne named contact from day one, not a shared inbox.
  • An engineer for the first integrationOn request, ours works with yours until the scans run in your pipeline.

How it works

  1. Apply with your company name, your stage, and your incubator or lead investor.
  2. We read every application by hand and answer within a few days.
  3. The free months are applied directly to your subscription.
The free plan stays free for everyone, programme or not.Apply to the startup programme

Frequently asked

How do I try CybeDefend before paying?

Every account starts with 50 AI credits and 10 free static scans, no card, no time limit. Spend the credits on Cybe AutoFix patches and BLSA business-logic scans. The 10 scans cover SAST, SCA, IaC and secret detection. Paid plans unlock unlimited static scans, so you upgrade the day you need more.

What counts as an AI credit?

AI credits power Cybe AutoFix patch generation and BLSA business-logic analyses. Static scans, SAST, SCA, IaC and secret detection, never consume credits. They're unlimited on every paid plan.

Can I change plans later?

Yes. Upgrade from your dashboard at any time. Changes prorate to the day.

Where is my data stored?

We run two isolated regions: EU (eu.cybedefend.com) and US (us.cybedefend.com). You pick at signup, your data stays where you put it. Enterprise customers can deploy in a private VPC or on-premise.

What's the difference between Scale and Enterprise?

Enterprise comes with a contractual 99.5% uptime SLA on dedicated infrastructure (VPC or on-prem), plus SSO / SAML, advanced RBAC, 24/7 support and a named account manager. Scale runs on shared infrastructure with Slack support, BLSA early access and the advanced business-context engine, built for platform teams scaling a security programme without yet needing the dedicated-tenant + audit-heavy guarantees of Enterprise.

Install VibeDefend in 5 seconds.

One command wires every coding agent on your machine to CybeDefend: your business rules, your compliance frameworks, and guards that block destructive calls before they fire.

Install in 5 secondsNode 18.17+
npx -y @cybedefend/vibedefend@latest install
Auto-detects
  • Claude CodeClaude Code
  • CursorCursor
  • OpenAI CodexOpenAI Codex
  • WindsurfWindsurf
  • GitHub CopilotVS Code Copilot