Pricing
Start free with 5 assessments. Upgrade when you need more packs, team members, or compliance features.
Feature Comparison
| Feature | ||||
|---|---|---|---|---|
| Limits | ||||
| Clients | 1 | 10 | 50 | Unlimited |
| Active engagements | 1 | Unlimited | Unlimited | Unlimited |
| Team members | 2 | 5 | 15 | Unlimited |
| Storage | 500 MB | 50 GB | 200 GB | Unlimited |
| Atlas tokens / month | — | 1M | 5M | BYO key |
| Add-ons (extra users / clients / AI top-up) | — | ✓ | ✓ | ✓ |
| Assessment workflow | ||||
| Core assessment workflow | ||||
| Risk scoring + auto-flags | ||||
| Engagement templates (SOC 2, M&A, MSP intake, CMMC L2…) | — | |||
| Photo & barcode capture | ||||
| Field mode (mobile, offline queue, photo evidence) | — | — | ||
| Comments + @mentions | — | |||
| Engagement comparison reports | — | — | ||
| AI | ||||
| Atlas (portfolio chat with tool use) | — | |||
| AI report drafter (exec summary + risks + next steps) | — | |||
| Per-finding AI remediation | — | |||
| Bring-your-own AI key | — | — | ||
| CRM + commercial | ||||
| Clients, contacts, tasks, activity | — | |||
| Estimates + branded PDF | — | |||
| Proposals + e-signature accept | — | |||
| Pipeline + portfolio dashboard | — | |||
| Reporting & client portal | ||||
| Branded PDF reports | KweliTrak branded | Org branded | Per-client branded | Per-client branded |
| Client portal (audit, estimate, proposal accept) | ||||
| Per-client branding (logo, primary, accent) | — | — | ||
| CSV / Excel export | — | |||
| Weekly portfolio digest email | — | |||
| Per-client digest email (to client contacts) | — | — | ||
| Compliance & risk | ||||
| Compliance framework mapping (SOC 2, ISO, CMMC, HIPAA, NIST, PCI…) | — | |||
| Continuous monitoring + alerts (score drop, new critical, overdue remediation) | — | — | ||
| MSP self-compliance posture | — | — | ||
| Tokenised auditor portal (read-only) | — | — | ||
| Cross-client admin-access audit log | — | — | ||
| Team + access | ||||
| Per-client team roles (lead / engineer / reviewer / read-only) | — | |||
| Capability matrix (custom client roles) | — | |||
| External auditor access | — | |||
| SSO / SAML | — | — | ||
| Integrations & notifications | ||||
| Microsoft 365 (Secure Score → findings) | — | |||
| ConnectWise Manage (companies + configurations) | — | — | ||
| Datto RMM (sites + devices) | — | — | ||
| Slack + Teams: notifications, slash commands, Acknowledge button | — | — | ||
| CSV import | ||||
| REST API + webhooks | — | |||
| Custom integrations | — | — | — | |
| Reseller / multi-brand | ||||
| Sub-tenant invite + signup flow | — | — | — | |
| Branding inheritance to sub-tenants | — | — | — | |
| Support | ||||
| Documentation + community | ||||
| Email support | — | |||
| Priority support | — | — | ||
| Dedicated CSM + 99.9% SLA | — | — | — | |
| MSA / DPA / BAA on request | — | — | — | |
FAQ
A four-person MSP running 30 clients hates per-user pricing — every new hire taxes them. We charge for the value you ship (client coverage), not the team you ship it with. Soft seat caps prevent abuse, and add-ons let you tweak either lever.
Yes. Starter is free forever (1 client, 1 active engagement, no card). Paid plans include a 14-day trial with no card required.
We surface a friendly upgrade prompt with your current usage. Existing data stays accessible; you can either upgrade to the next tier or buy a single add-on (extra user seat, extra client slot, etc.).
Yes. Upgrades are pro-rated for the remainder of the cycle. Downgrades apply at the next renewal so you don't lose what you already paid for.
Yes — annual saves ~20%. Helps us fund the AI inference layer and helps you stop thinking about renewal.
First 50 paying orgs lock in 30% off for life on any paid tier. Enter FOUNDING30 at Stripe Checkout, or visit /pricing?founding=1 for the code.
On Business and Enterprise. Use your own Anthropic key with your own token pool — we still meter for billing fairness, but pass the marginal cost through.
Multi-layer: Postgres RLS scopes every client to its team, route-level middleware gates client URLs, cross-client admin access is audit-logged, and ~50 tables carry restrictive policies. TLS 1.2+ in transit, AES-256 at rest. We dogfood SOC 2 posture for our own org.
Yes — PDF, CSV, or REST API at any time. Org owners can request a full data export from Settings.
Start with the free plan — no credit card required. Upgrade anytime as your team and assessment needs grow.
Start Free Assessment →No credit card required · Free plan includes 5 assessments