AI agent security that scales with your stack.

Start free. Upgrade when you need verified intelligence and automated remediation.

Hundreds of rules · Any AI agent platform · No sign-up required

Free
$0forever

See what’s exposed. Fix what’s known.

  • Unlimited scans, any platform
  • Guided fixes for known vulnerabilities
  • Monitor unlimited agents: detect threats, 24-hour history
  • 50 AI credits/mo (1 deep scan)
  • HTML + JSON reports
$npx firmis-cli init

Open source. No credit card. No account for scanning.

Early Bird$29/mo for first 12 months. Limited early bird pricing.
Pro
$49$29/mo

Know what’s real. Fix it automatically.

  • Everything in Free, plus:
  • Unlimited deep scans (AI-verified)
  • One-click auto-fix
  • Monitor unlimited agents: detect + block threats, 7-day history
  • 500 AI credits/mo
Start free trial

14 days free, then $29/mo early bird.

Early Bird$199/mo for first 12 months. Limited early bird pricing.
Business
$299$199/mo

Prove it to your auditors.

  • Everything in Pro, plus:
  • Monitor unlimited agents: detect + block + enforce policies, 90-day history
  • Penetration testing
  • Compliance evidence generation
  • Up to 10 seats, up to 10 projects
  • 3,000 AI credits/mo
  • Custom rules + white-labeled reports
Start free trial

14 days free, then $199/mo early bird. Founder-led onboarding.

Custom
Custom

Enterprise-grade, your way.

  • Everything in Business, plus:
  • Monitor unlimited agents — fleet-wide + webhooks, custom history
  • SSO/SAML, RBAC, SLA
  • Dedicated support
  • Unlimited projects and users
  • Custom compliance frameworks
Contact us

Founder-led sales.

Need more AI credits?

Pro and Business users can buy credit packs anytime. No automatic charges. You choose when to top up.

100
credits
$10
$10.0¢/credit
500
credits
$40
$8.0¢/credit
2000
credits
$120
$6.0¢/credit

Credit packs are one-time purchases. Pack credits expire after 12 months. Available to Pro and Business users.

Feature comparison

Every plan monitors unlimited agents. No per-agent pricing.

FeatureFreeProBusinessCustom
Scan (static)UnlimitedUnlimitedUnlimited + custom rulesUnlimited + custom rules
Deep scan (AI verification)1/monthUnlimited (uses credits)Unlimited (uses credits)Unlimited (uses credits)
FixSafe fixes (guided)One-click verified fixesAuto-quarantine + disableAuto-quarantine + disable
MonitorUnlimited agentsUnlimited agentsUnlimited agentsUnlimited agents
DetectionDetectDetect + blockDetect + block + enforceFleet-wide + webhook
History24 hours7 days90 daysCustom
IntelligenceRule-based detectionContextual exploit simulationCatches attacks no rule coversCustom models
ReportsHTMLPDF + badgeWhite-labeledWhite-labeled + custom
CIGate on known vulnsGate on verified threatsPolicy enforcement gatePolicy enforcement gate
AI credits/mo50500 (top-up available)3,000Custom
Pentest / compliance / policy
Projects / seats1 / 11 / 110 / 10Unlimited / Unlimited
SSO / SAML / RBAC
SupportCommunityEmailPriorityDedicated

Built for regulated teams

SOC 2
CC6 / CC7
EU AI Act
Article 9 / 15
GDPR
Article 32
NIST AI RMF
Govern / Map
OWASP Agentic
Top 10
ISO 42001
AI Management
MITRE ATLAS
Adversarial ML

Every finding maps to the frameworks your auditors already know.

Frequently asked questions

What’s the difference between tiers in simple terms?

Every tier monitors unlimited agents with no per-agent limits. Free detects threats and keeps 24 hours of history. Pro detects and blocks threats automatically with 7 days of history. Business detects, blocks, and enforces organization-wide policies with 90 days of history. Each tier also adds intelligence: Pro adds AI-verified deep scans and one-click auto-fix, Business adds penetration testing and compliance evidence.

What are AI credits?

Deep scan uses 5 AI credits per component analyzed. Rule-based scanning and safe fixes are always free and unlimited. AI credits power the intelligence layer that tells you which findings are real threats vs expected behavior. Credits reset monthly. Pro and Business users can buy top-up packs starting at 6c/credit.

What happens when I run out of credits?

Rule-based scanning and safe fixes keep working. Unlimited, always. The deep scan layer pauses until credits reset next month. Pro users can buy credit packs anytime. No surprise charges, no automatic overages.

Is the free tier really unlimited?

Yes. Unlimited static scans, safe fixes (CVE patches, secret redaction, config hardening), monitoring for unlimited agents (detect threats, 24-hour history), and 50 AI credits per month. No credit card, no account required for scanning.

How does the free trial work?

Pro and Business both include a 14-day free trial. You get full access to all features in the tier you choose. Cancel anytime during the trial and you won’t be charged. After 14 days, your subscription continues at the listed price (or early bird price if available). If you cancel, you keep Free tier features — unlimited scans, detect threats across all your agents, 24-hour history, and 50 AI credits per month.

How is this different from other security tools?

Traditional security tools cover npm, pip, and container images. Firmis is purpose-built for AI agent stacks: MCP servers, Claude skills, Cursor rules, CrewAI agents, and more. Hundreds of detection rules map your complete attack surface across both code patterns and instruction files. Then deep scan verifies exploitability, fix patches automatically, and monitor blocks threats at runtime.

How do I get the early bird price?

Early bird pricing is $29/mo for Pro and $199/mo for Business for the first 12 months (normally $49/mo and $299/mo). Limited availability. Sign up on the pricing page and the discount applies automatically.

Start scanning in 30 seconds

Free forever. No account needed.

$npx firmis-cli init