Reconnecting
Restoring connection…
Reconnecting
Restoring connection…
Per runner, not per seat.
At $20 a runner, one prevented 2 a.m. rollback pays for the year. See what that looks like.
Free
For evaluation and solo use.
$0 / forever
Start free- 3 runners
- 1 user
- 7-day audit retention
- All policy features
- Community support
Team
For production teams.
$20 / runner / mo
Start free- Up to 100 runners
- Unlimited users
- 90-day audit retention
- Single sign-on (OIDC)
- 99.95% uptime target
- Automated invoices
- Email support
Enterprise
For design partners and regulated teams.
Custom
Talk to sales- Unlimited runners and users
- 365-day audit retention
- SCIM directory sync
- 99.99% uptime SLA
- Security and procurement review
- Dedicated Slack support channel
- Design-partner deployment planning
- Rollout support
- Custom commercial terms
Up and running in minutes
From sign-up to your first audited action
Create an account
Free, no credit card. You're in the dashboard in under a minute.
Install a runner
One command on a Linux or macOS host — the dashboard hands you the install one-liner and watches it connect.
Run an action
Dispatch from the dashboard, or point Claude, ChatGPT, or Cursor at your account's MCP endpoint — and let policy decide.
Compare plans
| Feature | Free | Team | Enterprise |
|---|---|---|---|
| Runners | 3 | 100 | Unlimited |
| Users | 1 | Unlimited | Unlimited |
| Audit retention | 7 days | 90 days | 365 days |
| Policy + approvals | |||
| MCP server | |||
| Pack trust + drift blocking | |||
| SIEM export | — | ||
| Single sign-on (OIDC) | — | ||
| SCIM directory sync | — | — | |
| Uptime | — | 99.95% target | 99.99% SLA |
| Deployment planning | — | — | Design partner |
| Support | Community | Dedicated Slack support channel |
Frequently asked questions
What counts as a "runner"?
One installation of the emisar binary on one host — VM, container, or bare metal. Run as many runners as your plan allows. Human users are unlimited on Team and Enterprise.
Do you store the output of my commands?
Runner output is redacted before leaving the host; Emisar retains the resulting redacted output in audit log. The audit log also stores who, when, which action, and the exit code. Redaction uses 20 built-in patterns plus your own per-action rules.
How does billing work?
Paid plans are billed per runner through Paddle, our Merchant of Record. You get monthly invoices, and Paddle handles sales tax and VAT. We never see or store full card numbers.
Can I self-host?
The current product uses the hosted emisar control plane. The runner, MCP bridge, and packs are Apache-2.0 open source, and the repository includes deployable control-plane code (Business Source License) for evaluation — but supported self-hosted and air-gapped deployments are not generally available today. Tell us if that boundary is a requirement.
Can I cancel any time?
Yes. Cancel from billing settings and you drop back to Free at the end of the current billing period. Your audit data is retained per the Free retention window.
Do you support SSO and SCIM?
Yes. OIDC single sign-on (Okta, Entra ID, JumpCloud, Google Workspace, Keycloak, or any compliant provider) is on Team and Enterprise. Automatic offboarding needs SCIM 2.0 directory sync, which is Enterprise: deactivate someone in your IdP and emisar ends their sessions and revokes their keys without anyone touching the console. With OIDC alone they can't sign in again, but a live session or an existing API key keeps working until you suspend them here.
Do you offer startup discounts?
Yes. Email sales@emisar.dev with your YC or pre-seed letter and we'll take it from there.
More on how we handle data, secrets, and audit on the security page, and how billing and cancellations work in our refund policy.