Pricing

Free forever. Webhooks everywhere. On-prem when you need it.

Three plans, published limits. All 25 signals, webhooks, and read/export of your own SBOM + inventory are on every tier. Enterprise gating applies only to SSO, SCIM, SIEM streams, and on-prem. Billed through Paddle with a 14-day money-back guarantee on every paid plan.

Detection layer is not a tier

All 25 signals on every tier. SBOM and inventory export too.

Tier gates apply to scale (storage, bandwidth, users), enterprise integrations (SSO, SCIM, SIEM), and deployment shape (on-prem, air-gapped) — never to the detection layer or your view of your own data.

Pricing

Simple plans that scale with your rollout

Start free, upgrade when policy moves into production, and flip to Unlimited when you need enterprise integrations or on-prem deployment.

Free

Try Chainsaw on a single team.

$0 forever
  • 500 MB storage
  • 1 GB bandwidth (up + down)
  • 3 users
  • All 25 signals on every tier
  • All package managers
  • Policy enforcement & monitoring
  • Read & export your own SBOM + inventory
  • Webhooks
  • Community support

Recommended

Pro

For teams rolling out in production.

$149 per month
  • 5 GB storage
  • 25 GB bandwidth (up + down)
  • 10 users
  • Everything in Free
  • Billy AI assistant
  • Priority email support
  • Advanced dashboards & audit trails
  • Extended SBOM snapshot retention
  • Webhooks

Extra data billed at $1.50 / GB.

Unlimited

For orgs that need unlimited scale and enterprise fit.

$1,199 per month
  • Unlimited storage
  • Unlimited bandwidth
  • Unlimited users
  • Everything in Pro
  • SSO (SAML & OIDC) + SCIM provisioning
  • Third-party integrations (SIEM, ticketing)
  • On-prem deployment eligibility
  • Dedicated onboarding & SLAs

Platform & Integrations

Tier-gated capabilities. Volume limits above apply to every plan; the items below are boolean — either included in the tier or not.

Capability Free Pro Unlimited
Billy AI assistant ·
Single sign-on (SAML & OIDC) · ·
SCIM provisioning · ·
On-premise / air-gapped deployment · ·
SIEM export · ·
Ticketing integrations (Jira, ServiceNow) · ·

Need something custom?

On-prem deployments, custom integrations, or volume pricing

Unlimited unlocks third-party integrations and on-prem eligibility. If you need bespoke deployment, air-gap, or a negotiated contract, jump on a 30-minute call.

Talk to sales

Billing handled by Paddle (merchant of record)

Paid plans are sold and billed through Paddle, who handles payment processing, tax, and invoices. We never see your card details. Every subscription is covered by a 14-day money-back guarantee — full refund within 14 days of your first upgrade, prorated refund for unused time thereafter.

FAQ

Pricing FAQ

Why does Pro cost less than other supply-chain tools?

Because Chainsaw does one thing well — policy enforcement on the install path — rather than bundling scanning, dashboards, remediation tickets, and every adjacent category into a single seat price. If you need broader posture management, pair Chainsaw with an SCA tool; that's the pattern we see most often.

Is there a per-developer seat fee?

No. Pricing is plan-based, not seat-based. Usage is bounded by storage and bandwidth caps applied to the org as a whole. Add developers freely inside the plan's user count.

Is the Free plan really free forever?

Yes. 500 MB storage, 1 GB bandwidth (upload + download combined), 3 users. No credit card required. Built for a single team evaluating Chainsaw on a non-critical repo.

What happens if my team exceeds Pro limits?

Usage keeps working. Additional data is billed at $1.50 per GB on Pro, you see usage in the billing dashboard, and you get an in-app nudge at 80% of cap.

Are the supply-chain attack signals included on Pro?

Yes — all 25 signals fire on every tier. Install-script exfiltration, maintainer takeover, version anomalies, hidden Unicode, publish velocity, reserved namespaces, Docker malware feed, per-layer image enforcement, APT/Yum/DNF provenance, typosquat, repo liveness, checksum fail-closed, transitive-risk closure, maintainer-age reputation, RTT (repo trust traits), and the rest all run on Free, Pro, and Unlimited. Tier gates only apply to enterprise integrations (SSO, SCIM, SIEM streams) and on-prem deployment — never to the policy layer.

Can I see and export the SBOM and dependency inventory on Free?

Yes. Reading and exporting the org's own SBOM and inventory is on every tier — these are your data, not ours to gate. Pro and Unlimited extend snapshot retention and add advanced dashboards / audit-trail history. The CycloneDX 1.6 + SPDX export is available on every plan.

Can I change plans at any time?

Yes. Upgrade or downgrade from the in-app billing page. Upgrades apply immediately. Downgrades take effect at the end of the current billing period so you retain the paid features you've been using.

Are webhooks available on every plan?

Yes. Webhooks are not paywalled. Every tier can configure up to five webhooks per user for events like blocked installs. Only SIEM streams (Splunk HEC, Microsoft Sentinel, IBM QRadar) and SCIM are Unlimited-only.

Does Chainsaw support on-prem or air-gapped deployments?

On-prem is Unlimited. The CLI can bake the server URL at build time so air-gapped users never see a public origin. Book a call for custom rollouts.

Which plan includes SSO?

SAML, OIDC, and SCIM provisioning are Unlimited-only. Password plus TOTP works on Free and Pro; invite-based role assignment applies on every tier.

Do you offer annual pricing or volume discounts?

Yes. Contact sales for annual terms on Pro and Unlimited, and for volume pricing above 50 users.

What's the SLA on paid plans?

Pro includes business-day support. Unlimited includes a 99.9% uptime SLA and dedicated onboarding. Details are shared during custom-contract discussions.