Open Beta

Hosted pricing for the decision layer

Keep the scanner. Pay for the hosted control plane that returns usable decisions.

OSS / Sandbox$0

Run the scanner yourself or use free hosted scans.

Self-host the open-source scanner from GitHub, or use the free public scan surface — 5 scans per day, no managed targets or workflows.

Dev
$29

Ship one app with vulnerability scanning baked in.

Auth, injection, and web vuln checks on every push. Scan, verify, and enforce policy — all from the CLI, API, or your MCP client.

Create Account
1 DAST target with vuln scanning
Auth, injection, and web app checks
PR evidence and policy enforcement
200 scans / 50 verify units / mo
API, CLI, and MCP access
Build Gate
$299
$2,988 billed annually

For teams adding verified security decisions to CI.

Everything in Dev plus multiple targets, webhooks, persisted remediation plans, and volume for preview deploys and merge gates.

Create Account
Multiple DAST targets, up to 5 seats
2,500 scans / 500 verify units / mo
10 persisted remediation plans
Webhook integrations for CI/CD
Metered overages — never blocked
Recommended
Agent Control
$999
$9,996 billed annually

For AI-native teams running higher-volume automated workflows.

Everything in Build Gate plus exposure scanning, approval tokens, advanced policy packs, and volume for coding agents and deployment paths.

Create Account
Full attack surface incl. exposure scanning
10,000 scans / 3,000 verify units / mo
75 persisted remediation plans, 25 protected agents
Approval-token workflows
Advanced policy packs
Private Control Plane
Custom

For enterprises that need private workers and runtime controls.

Annual contracts for regulated and platform-heavy buyers that need private deployment, SSO, audit export, and controlled runtime enforcement.

Talk to Sales
Starts at $30k ACV
Private workers or VPC deployment
SSO, audit export, and retention controls
Custom policy packs
Protected agents and gateway roadmap access

How pricing works

Shaker charges for hosted decisions, not just scanner access

The paid layer covers scans, verification, policy decisions, evidence, approval, and remediation in the hosted control plane.

Scan unitsweighted by scan depth and runtime
Verify unitsper retest or validation attempt
Policy evalsper machine decision in CI or agent workflows
Remediation plansper persisted remediation plan and handoff attempt