GitGuardian pricing

What middleBrick covers

  • Public pricing not listed; quotes based on scope and features
  • Free tier limits scans and lacks automation
  • Starter adds dashboard, email alerts, and MCP Server
  • Pro includes scheduled scans, diff detection, and CI/CD integration
  • Enterprise offers customization, SSO, and audit logs
  • Factors like authentication and monitoring shape final costs

Pricing model overview

Public pricing details for this scanner are limited. The service does not publish per‑scan or per‑API rates on a public price page. Quote derivation depends on deployment mode, number of assets, authentication method, and optional continuous monitoring features. Enterprise terms are typically required to receive a formal proposal that specifies per‑seat or per‑API costs, if applicable.

Free tier capabilities and limits

The no‑cost entry tier is designed for minimal, occasional use. It includes CLI access and allows a small number of scans per month. Restrictions include limited dashboard functionality, no automated notifications, and no access to continuous monitoring or compliance reporting features. This tier is suitable for initial assessments where ongoing visibility is not required.

Starter tier feature set and billing considerations

Stepped up usage requires a subscription that increases the number of APIs you can scan and adds dashboard, email alerts, and MCP Server access. Billing is typically subscription‑based rather than pay‑as‑you‑go, with defined monthly or annual cycles. Authenticated scanning in this tier supports common methods such as Bearer tokens, API keys, Basic auth, and cookies, and requires domain verification to ensure only asset owners run scans on protected endpoints.

Pro tier continuous monitoring and integrations

The higher tier adds scheduled rescans, diff detection to surface new or resolved findings, and alerting through email with rate‑limiting. Integration options include CI/CD gates via a GitHub Action, programmatic API access for custom workflows, and an MCP Server for AI‑assisted tooling. Compliance reporting such as PDF exports is available, and findings can be mapped to frameworks like PCI‑DSS 4.0, SOC 2 Type II, and OWASP API Top 10 (2023).

Enterprise customization and support

Large deployments often require negotiated enterprise terms. These can include unlimited or scaled API coverage, custom rule definitions, SSO integration, detailed audit logs, and SLA guarantees. Dedicated support and extended retention policies are typically part of this tier, with billing structured around organizational scope and monitoring frequency rather than simple per‑API metrics.

Factors that influence quote formation

Because public prices are not disclosed, final quotes depend on multiple variables. The number of unique endpoints, required authentication types, need for continuous monitoring, desired integration depth, and report frequency all affect cost. Organizations seeking precise figures should contact sales with inventory details and compliance expectations to receive a tailored proposal.

Frequently Asked Questions

Is pricing publicly listed on a price page?
No, there is no public price page with per‑scan or per‑API rates. Contact the provider to receive a formal quote based on your asset count and feature requirements.
What billing models are used?
The service typically uses subscription‑based billing for tiers above free, with annual or monthly cycles. Enterprise arrangements may be negotiated based on scope and monitoring needs.
Do compliance reports affect pricing?
Including compliance reporting and integrations such as CI/CD gates or Slack alerts is generally part of higher tiers and can influence the final quote.
Can small teams use the free tier effectively?
Yes, the free tier supports basic CLI scans at a low volume. It lacks dashboard history, automated alerts, and advanced integrations, which are available in paid tiers.