Priced on the risk you remove — not seats.
Per-seat pricing punishes AI adoption and has nothing to do with your actual exposure. CAGIS.ai prices on governed AI agents — your real risk surface — and makes the outcomes it delivers visible, so what you pay tracks the value you get.
Get AI governance in place — fast.
- On-device behavioral threat detection — 60+ rules / 12 attack categories, multi-step (cross-call) chain detection, anti-obfuscation (shell-AST) scanning
- PII / secret DLP — 12 detectors with reversible, on-device tokenization
- Approval policy — allow / ask / deny with per-risk effects; fails closed, even offline
- Decision audit trail + risk-scored fleet inventory (devices & AI assets)
- Per-agent usage metering + a personal “my usage” view
- Claude Code + Codex — one-command install, zero-dependency binary (macOS + Linux, arm64 / x64)
- Agent discovery + governance-coverage check across the fleet
- Self-service agent-token management + email support
Govern, optimize, and prove it — at scale.
- Everything in Team, plus:
- Multi-team governance + central Claude Code policy push (MDM) to every machine
- Role-based access control (member / admin / super-admin) + per-user capability toggles
- Hosted-surface governance for claude.ai & Cowork via the MCP gateway
- Cost management — per-agent & per-team metering, gateway-enforced budgets (block / warn), cost-optimization routing with spend-saved tracking
- Outcome & adoption analytics — leaks prevented, incidents caught, spend saved, seat utilization, per-developer leaderboard
- Tunable rollout — threat enforce / observe modes + per-detector DLP actions (mask / redact / tokenize / block)
- SSO (OIDC + PKCE) with just-in-time provisioning
- Org-wide searchable audit trail (decisions + admin config changes) · priority support & onboarding
Outcome-based, aligned to value delivered.
- Everything in Business, plus:
- Outcome-based commercial model + risk-reduction SLA
- Retroactive forensic scan of past agent transcripts — read-only, metadata-only — with tamper-evident, SHA-256-signed case bundles
- Forensic content review — opt-in redacted, AES-256-GCM-encrypted body retention (configurable 1–365 days) with browse & decrypt
- Custom DLP detectors + custom threat rules (RE2-guarded)
- Deep hosted-surface analytics — activity monitoring, engagement (DAU / WAU / MAU), per-user cost, live org-governance read
- ROI triangulation & value indicators — cost per PR, cost per commit, acceptance rate
- Compliance coverage mapping (SOC 2, ISO 27001, GDPR, HIPAA) with live evidence
- Dedicated environment (VPC / on-prem) + named security engineer + 24×7 support
Every plan reports what it's worth
CAGIS quantifies the outcomes it delivers so your spend is always tied to measurable risk reduction — the numbers that justify the line item.
A model that scales with value, not headcount
Security value comes from the AI activity you govern and the incidents you prevent — not the number of admins with a login. Anchoring price to governed agents keeps it simple and predictable to budget, while the outcome reporting proves the return. Enterprise goes further with a commercial model tied directly to the risk reduction we commit to.
Scope your deployment with usAny AI agent or endpoint under CAGIS governance — one developer's Claude Code, a CI agent, a hosted-surface connector. Users, dashboards, and audit are unlimited.
Governed agents are the stable anchor so bills are predictable. AI operations monitored are generously included; very high-volume programs are scoped in Business/Enterprise.
We agree on the outcomes that matter to you — leaks prevented, incidents, compliance coverage, spend saved — and align the commercial model and an SLA to that measurable risk reduction.
Yes. Team gets full on-device protection for a handful of agents; expand coverage as you roll out, with no per-seat penalty for adopting AI.