Pay only for the pods you protect, not the nodes they run on. Pod-level billing ties your cost to actual attack surface, typically a fraction of node-priced runtime security.
Billing is based on the peak number of pods monitored in a calendar month. Usage is measured via a weekly heartbeat from each sidecar: no agents to install, no reconciliation required. Change plans any time from the portal dashboard.
Each workload learns its own normal. No rules to write.
Automatic sidecar injection for labeled namespaces.
Alert, isolate via NetworkPolicy, or terminate based on severity.
Real-time pod inventory, usage tracking, and billing estimates.
Deploy alongside existing workloads. No SDK, no instrumentation.
Ed25519-signed license with pod entitlements and expiry.
Rich-formatted incident messages via Slack webhook, built in. Point the generic webhook at any other system you already run.
Multi-namespace CRD-based configuration, declarative and versionable.
Install your license on any number of clusters. Pod inventory and detection events roll up into a single fleet-wide portal view.
Hands-on deployment help from the team that built the sidecar, on every plan.
Sign up in under a minute. Your account starts in demo mode. Once we've reviewed your signup and issued your license, your dashboard unlocks and you can deploy the sidecar to your cluster.