From open-source CLI to enterprise compliance platform. Start free, scale as your organization grows.
Individual developers and small teams getting started with compliance automation.
10–50 developer organizations that need visibility and alerting for compliance.
100+ developer organizations in regulated industries requiring full governance control.
// FEATURE_COMPARISON
| Feature | Free | Team | Enterprise |
|---|---|---|---|
| CLI Scanning | ✓ | ✓ | ✓ |
| Built-in Policies | 5 | 23 | 23 |
| 8 Framework Mappings (100+ Controls) | — | ✓ | ✓ |
| Auto-Remediation PRs | — | ✓ | ✓ |
| GitHub Action | — | ✓ | ✓ |
| JSON, HTML & PDF Reports | — | ✓ | ✓ |
| Web Dashboard | — | ✓ | ✓ |
| Slack & Webhook Notifications | — | ✓ | ✓ |
| PostgreSQL Evidence Ledger | — | ✓ | ✓ |
| Compliance Trend Tracking | — | ✓ | ✓ |
| Repository Scoping | — | ✓ | ✓ |
| Multi-Org / Multi-Tenant | — | — | ✓ |
| SSO / SCIM | — | — | ✓ |
| Custom Rego Policies via UI | — | — | ✓ |
| RBAC (Admin / Maintainer / Viewer) | — | — | ✓ |
| Policy Lifecycle & Approvals | — | — | ✓ |
| API Key Management | — | — | ✓ |
| Dedicated Support & SLA | — | — | ✓ |
// FAQ
Yes. The BuildGuard CLI is free to use. Download it, scan your org, and see results immediately. No account or credit card required.
Team and Enterprise plans are billed monthly or annually. Annual plans receive a 20% discount. Contact us for details.
The free CLI includes 5 core policies. Team and Enterprise plans expand to 23 policies mapped to SOC2, SOX (Section 404 ITGC), NIST 800-53, ISO 27001, PCI-DSS v4.0, FedRAMP Moderate Baseline, CIS Controls v8, and HIPAA Security Rule — covering 100+ specific controls across all eight frameworks.
BuildGuard is built on OPA/Rego. The free CLI ships with 5 policies and uses Rego for SOX separation of duties evaluation. The Enterprise tier adds a UI for custom policy authoring, versioning, and approval workflows.
BuildGuard is the governance and compliance automation layer, not a vulnerability scanner. It focuses on enforcing organizational policies (branch protection, code ownership, separation of duties, CI/CD hardening) and generating the evidence auditors need. It complements tools like Snyk and Checkov rather than replacing them.
Start with the free CLI today or contact us for a Team or Enterprise plan.