// PRICING

Start free. Scale when the auditors arrive.

Every plan produces the same Merkle-sealed report. Tiers differ only in volume and support.

FREE

RM 0/month
  • 3 audits / month
  • All 24 frameworks
  • Merkle-sealed report
  • Community support
Start free
MOST CHOSEN

PRO

RM 490/month
  • 50 audits / month
  • All 24 frameworks
  • Merkle-sealed evidence packs
  • CI/CD integration
  • Priority queue · email support
Contact sales

ENTERPRISE

Custom
  • Unlimited audits
  • Self-hosted or private cloud
  • Custom frameworks & clauses
  • SLA · dedicated engineer
  • Audit-trail export for counsel
Talk to us

ALL PLANS PRODUCE IDENTICAL SEALED REPORTS · TIERS DIFFER IN VOLUME AND SUPPORT ONLY

Asked by counsel, answered plainly.

Is an OAG report legal advice?

No. OAG reports are technical assessments mapping your code to framework controls. They are evidence for your legal team, not a substitute for it. We say this in the report, the Terms, and in every engagement.

Do you keep our source code?

No. Repositories are digested in an ephemeral workspace, analysed, and purged on completion. We retain the findings and the Merkle root — the evidence — not your code. Details in our Privacy Policy and Security pages.

Is our code used to train anything?

Never. Your code is not used for model training, benchmarking, or any purpose other than producing your audit. This is contractual, not aspirational.

What does "Merkle-sealed" actually buy me?

It proves the report existed in exactly this form at exactly this time, and has not been altered since. If a regulator — or a counterparty — questions the evidence, the seal is independently verifiable. Tampering is mathematically evident.

Can we run OAG on our own infrastructure?

Yes. Enterprise deployments run entirely inside your perimeter. Nothing leaves your network, and the audit chain is still sealed and verifiable.