Pricing
Pay once. Keep the plugin.
Any single persona is $30 one-time. Optimus Prime is $40 one-time and unlocks every current and future persona. Add the optional Guardrails cloud layer for $9/mo at checkout — cancel anytime and the plugin still runs offline.
Single persona
Pick any one of the eight personas. Yours to keep.
- Clawmont security layer — secret scanner, tool firewall, audit log
- Any one persona, your choice — Dev, Trader, SRE, Data, Security, Researcher, CMO, or Sysadmin
- One-time license — no recurring fee
- Smart defaults + onboarding wizard
- 11-layer security stack, all independently testable
- Plugin stays open-source
Add Guardrails Cloud Security
+$9/mo- Real-time threat alerts — Discord, Slack, Telegram, email
- 90-day hosted audit trail
- Daily security digest
Added during checkout · Cancel anytime
Pay now, choose your persona in onboarding. Upgrade to Optimus Prime later for $10.
Optimus Prime
Every persona, merged and locked down.
- Clawmont security layer — secret scanner, tool firewall, audit log
- Everything in a single persona, plus:
- All eight personas merged + locked down
- Most-restrictive security across the full union
- Every future persona ships free — no re-tier
- Early access to supply-chain drift + pair-review battle-mode
Add Guardrails Cloud Security
+$9/mo- Real-time threat alerts — Discord, Slack, Telegram, email
- 90-day hosted audit trail
- Daily security digest
Added during checkout · Cancel anytime
One-time payment. All future personas included.
Or buy a persona directly — any one, $30
Verified, not claimed
Proof the Plugin Does What It Says
Numbers below come from the plugin's own test suite and the Sprint 11 golden-adversarial verification run. Every bypass attempt is in version control.
Sprint 11 verification: every entry in the Golden-Adversarial suite was stopped at the plugin layer, not the model layer. No prompt-level bypasses.
Vitest suite in packages/plugin runs clean on every commit. HMAC signing, credential scanning, tool firewall, schema validation — all covered.
Credential scanner, tool firewall, schema validation, MCP integrity pinning, path protection, session isolation, read-only mode, audit log, command guard, egress allowlist, tamper-evident logs.
Full pen test library in 02-Attacks/Phase 9 Vectors.md. Every attack pattern — secret exfiltration, rm -rf escalation, typosquat supply-chain, MCP substitution — blocked before reaching the model.