Pricing
One-time Plugin for the AI tool you already use. Subscription CLI for ongoing local scans. Subscription GitHub Action for every PR. Each is sold and billed separately; you can buy one, two, or all three.
Snitch Plugin
One-time
$49.99
buy once, own forever, no subscription
A skill drop for Claude Code, Cursor, Windsurf, Codex, and 30+ other AI coding tools. Tell your AI to run a security audit; it reads the methodology and reports back. 68 categories at the moment of purchase. No internet calls.
Looking for the agent variant or a bundle? See the Plugin → Agents page.
Snitch CLI
Subscription
A binary you install on macOS, Linux, or Windows. Bring your own Claude / Codex / Gemini / OpenRouter key. Run snitch scan from any repo, get a Markdown report and SARIF file in under two minutes.
Pro
$19
per month
Team
$99
per month
Enterprise
Contact
us
Snitch GitHub Action
Subscription
Drop a 12-line workflow YAML into your repo. Snitch scans the changed files on every PR using your AI key, posts a sticky comment with findings, uploads SARIF to GitHub Code Scanning, and (optionally) blocks merge on critical findings. Currently sold direct via sales; pick a tier and we'll get you set up.
Pro
$19
per month
Team
$99
per month
Enterprise
Contact
us
FAQ
Do I need both CLI and the GitHub Action?
No. The two are independent. Use the CLI when you want to scan locally on demand. Use the Action when you want every PR scanned automatically. Many customers want one or the other; some want both. Each is billed separately.
Does the Plugin include the CLI or Action?
No. The Plugin is a one-time methodology drop for an AI coding tool. The CLI and Action are separate subscription products. Buy whichever combination matches how you work.
What happens to scan quota if I bounce between Pro and Team?
Quota resets at the start of each billing period. Upgrading mid-period prorates the new monthly cap. Downgrading takes effect at the next billing cycle.
Cancel any time?
Yes. Manage subscriptions from your dashboard via the Stripe customer portal. Cancellations take effect at the end of the current billing period.
Where does the AI inference happen?
On your machine (CLI) or on your CI runner (Action), using your provider key. Snitch's servers see only the license check and per-scan metadata, never your source code.