pricing
Scan free. Pay to prove it.
Local scanning is free forever. Upgrade when you need auditable artifacts or automated enforcement ahead of the January 2027 deadline.
Free
$0forever
Local scanning for individuals and open-source projects.
- Infinite local directory traversal
- Color-coded table reports
- Quantum readiness grading
- Git-Diff micro-scanning (--diff)
- Zero network footprint
Standalone Auditor (CBOM)
$4,999/ year
Machine-readable CBOM generation and client-ready PDFs for auditors.
- Everything in Free
- CycloneDX 1.6 CBOM export
- JSON/XML asset serialization
- High-Fidelity CISO report PDF
- FIPS 140-3 validation mapping
- Signed Policy Exemptions
most popular
DevSecOps Enterprise
$24,999/ year (site license)
Up to 30 Contributing Developers | Unlimited Repositories
- Everything in Standalone Auditor
- Continuous CI/CD build gates
- Cryptographic Agility Scorecard
- Native OTel SIEM streaming
- Automated PR Remediation Engine
- 800ms Network Fallback Safeguards
Compare Plans & Features
Detailed side-by-side break-down of what each tier provides.
| Feature | Free | Standalone Auditor (CBOM) | DevSecOps Enterprise (CI/CD) |
|---|---|---|---|
| Offline local scanning | |||
| Crypto primitives audit (RSA, ECC, hashes) | |||
| CNSA 2.0 sunset date mapping | |||
| CycloneDX 1.6 CBOM export (.json) | |||
| Terminal Code Remediation Blocks | Basic | Detailed | Detailed |
| CI/CD Pipelines gate enforce (--fail-on=critical) | Yes (exit codes) | ||
| Automated Git PR Engine (--git-pr) | |||
| Central Compliance Dashboard SaaS | |||
| Developer Seat Allocation | 1 Developer | 1 Developer | Growth: 30 / Scale: 100 / Custom: 100+ |
Zero Network Footprint
CipherMap runs 100% locally. We never see or host your source code. Every scan, report, and CBOM is generated entirely on your machine.