Pricing
Start free on Developer. Every plan includes agent identity, rule-based guardrails and the proof below. Team and Enterprise are set up with us directly.
In every plan, free
- AI System graphEvery agent, model, tool and data source, and how they connect.
- Signed AIBOMA signed bill of materials for each AI system, comparable release to release.
- Trust passportA verifiable trust page you can publish for each AI system.
- Signed audit trailEvery agent decision on a signed, tamper-evident record.
Secure your first agents — no credit card required.
- Up to 3 connections
- 1 communicating agent · 100 requests / mo
- 1 application
- Rule-based guardrails
- Audit log, webhooks & API keys
The Individual and Advanced limit tiers, set up with us directly.
- Everything in Developer, plus:
- Higher connection, agent and request limits
- ML guardrails; LLM guardrails on Advanced
- Cost monitoring and budget policies
- Teams, roles and governance dashboard (Advanced)
- SIEM forwarding (Advanced)
For organizations running agents at scale, with every control.
- Everything in Team, plus:
- Unlimited connections, agents, requests and members
- SSO (SAML/OIDC) and SCIM 2.0
- Approvals for sensitive operations
- Custom roles and access reviews
- Compliance export and EU AI Act risk assessment
- Dedicated account manager
Work directly with the engineering team. Scoped per engagement.
- Architecture support for your agent estate
- Integrations with the runtimes you already run
- Rollout assistance to production
- A direct feedback loop into the roadmap
- Plan limits set for the pilot
Developer is self-serve. Design Partner and Enterprise are scoped and priced per engagement, and we set the plan up with you — there is no checkout to click through. Team is set up the same way.
What each plan includes
Only what differs is listed. In every plan: agent identity, MCP server management, rule-based guardrails, the audit log, webhooks, API keys, bring-your-own-key model configuration, the AI System inventory and graph, discovery from your GitHub and GitLab repositories, a signed AI bill of materials (AIBOM) and a trust passport for each AI system, incident response, the remediation planner, unused-permission findings, pre-deployment MCP supply-chain scans and business-value tracking. A Team engagement is set up on one of two limit tiers, Individual or Advanced; where they differ, the Team column says which. Design Partner pilots have their limits set for the pilot.
| Limit or feature | Developer | Team | Enterprise |
|---|---|---|---|
| Price and limits | |||
| How to get it | Self-serve, free | Talk to us | Talk to us |
| Active connections | 3 | Individual: 15 · Advanced: 50 | Unlimited |
| Team members | 1 (owner only) | Individual: 1 · Advanced: Up to 9,999 | Unlimited |
| Team nesting depth | No teams | Individual: No teams · Advanced: 2 levels | 99 levels |
| Communicating agents | 1 | Individual: 5 · Advanced: 25 | Unlimited |
| Agent-to-agent requests per month | 100 | Individual: 5,000 · Advanced: 100,000 | Unlimited |
| Registered applications | 1 | Individual: 3 · Advanced: 20 | Unlimited |
| Cross-organization agent shares | No | Advanced tier: Up to 10 | Unlimited |
| Support | Community | Individual: Email · Advanced: Priority email | Dedicated account manager |
| Guardrails, cost and operations | |||
| ML-powered guardrails (content moderation) | No | Yes | Yes |
| LLM-powered guardrails (prompt injection, hallucination) | No | Advanced tier | Yes |
| Connection-level guardrail editing | No | Yes | Yes |
| Cost monitoring and usage tracking | No | Yes | Yes |
| Budget policies and spending limits | No | Yes | Yes |
| In-app notifications | No | Yes | Yes |
| Agent governance policies | No | Yes | Yes |
| Teams, access and security | |||
| Organizations, teams and groups | No | Advanced tier | Yes |
| Role-based access control | No | Advanced tier | Yes |
| Agent governance dashboard and compliance controls | No | Advanced tier | Yes |
| SIEM forwarding (Splunk, Datadog, Microsoft Sentinel) | No | Advanced tier | Yes |
| Custom security policies | No | Advanced tier | Yes |
| IP allowlist and blocklist restrictions | No | Advanced tier | Yes |
| Custom domain verification (DNS) | No | Advanced tier | Yes |
| Enterprise controls | |||
| Single sign-on (SAML/OIDC) | No | No | Yes |
| SCIM 2.0 provisioning | No | No | Yes |
| Service accounts for machine-to-machine agent ownership | No | No | Yes |
| Custom role definitions | No | No | Yes |
| Approval workflows for sensitive operations | No | No | Yes |
| Temporary role elevation with expiration | No | No | Yes |
| Automated access reviews | No | No | Yes |
| Per-team resource quotas | No | No | Yes |
| Advanced analytics and reporting | No | No | Yes |
| Compliance data export | No | No | Yes |
| EU AI Act risk assessment | No | No | Yes |
Limits apply per organization; “Unlimited” means no practical cap. Team, Design Partner and Enterprise are scoped per engagement. Prefer email? Contact Sales at hello@praesidia.ai.
Common questions
Can I change plans later?
Yes. Changes take effect as soon as they are applied. Self-serve payment is not open yet, so beyond Developer we set your plan up with you directly — talk to us.
What counts as a connection?
A connection is a governed link between two entities — an app, an agent, or an MCP server. Guardrails and policies are applied per connection.
What counts toward the monthly request limit?
Each agent-to-agent task counts once; a retry of the same task does not. Guardrail evaluations and audit records never count. The count covers the whole organization and resets each calendar month (UTC).
At the limit, further submissions are declined until the next month. Enterprise has no practical cap.
What is a design partner?
A founder-led pilot for teams putting agents into production now. We scope it with you — typically €5k–€20k depending on the estate. Apply here.
Do you support open source?
Praesidia is proprietary, commercially licensed software. The audit verifier and the client SDKs carry permissive open-source licences (Apache-2.0 and MIT) and are distributed directly to customers and their auditors; the source repositories are not public today. Paid plans add higher limits and advanced governance and enterprise capabilities.
Start securing your AI agents today.
Create your workspace and connect one agent. No credit card required.