| Published price | Not published | Not published |
|---|
| Plans published | Compliance Automation Foundation, GRC Advanced, GRC Enterprise | Build Starter, Build DFY (Done for you), Build Stronger, Scale, Enterprise |
|---|
| Entry plan | Compliance Automation Foundation | Build Starter |
|---|
| Stated limits | Up to 50 FTEs; 1 pre-mapped framework: SOC 2, ISO 27001, Cyber Essentials, HIPAA or GDPR | 1 framework |
|---|
| Questionnaires per year | Not published | Not published |
|---|
| Expert services | Via partners | Consulting bundled in Build DFY and Build Stronger |
|---|
| Audit path | Auditors are part of the partner network. Audit inclusion by plan is not published. | Built-In Audit with partner auditors, run from an audit hub. |
|---|
| Penetration test | Not listed on the plans page. | Pen testing inside the platform (scoping with a pen test expert, reports, Jira tickets, retests); bundled in Build DFY and Build Stronger. |
|---|
| Integrations stated | Not published (the integrations page says "hundreds of tools") | 100+ on its integrations page (the home page says 150+) |
|---|
| Frameworks stated | 30+ pre-built frameworks | 80+ security, privacy and AI frameworks, with control cross-mapping (the framework library page lists 35) |
|---|