Deterministic action gate. ·No model in the enforcement path ·Hash-chained, tamper-evident evidence log ·Shadow mode by default
Pricing · how an engagement works

Free to see it. Fixed fee to prove it. Licensed once you trust it.

We don't quote a gate price off a rate card, because it follows your agent's tool surface — how many consequential actions route through it, how hard the chokepoint is to make complete. So the number is set after a Phase 0 review, never before. What's free is the part that earns the meeting; what's paid is the part that proves it on your own traffic.

Tier 1 · self-serve
Conviction demo
€0
in your browser · no signup
  • The real engine, running in your browser against a mock agent
  • Two scripted attacks (refund abuse, payout laundering) + build-your-own
  • Type any jailbreak you like — the verdict won't move
  • One-click chokepoint check on your own tool list
Open the demo →
Tier 3 · annual
Enforce license
Quoted after pilot
annual · only once the report convinces you
  • Flip to enforce: BLOCK / HOLD with a human-review queue
  • Per-tenant policy config (your limits, your rules)
  • Evidence log retained for audit and incident review
  • CHOKEPOINT.md + CI ownership so coverage can't silently rot as you add tools
Discuss after pilot →
For compliance & audit

Need deterministic control you can evidence?

The gate produces exactly what an auditor wants to see: a deterministic control on consequential actions (not a probabilistic filter) and a hash-chained, tamper-evident log of every decision. It speaks directly to the EU AI Act's Art. 15 robustness-and-cybersecurity surface for high-risk systems.

See the compliance & evidence story →

Questions

Why won't you just give me a price?
Because an honest gate price depends on your agent's tool surface — how many consequential actions route through it, and whether the chokepoint can be made complete at all. A Phase 0 review answers that in days. Quoting before it would be guessing, and the one thing this product can't do is guess.
What's the difference between the pilot and the license?
The pilot runs in shadow mode: the gate observes your real traffic and logs every action it would have blocked, but stops nothing. It's how you see the value risk-free. The license is when you flip to enforce — the gate actually blocks and holds — with per-tenant policy and the CI drift-check that keeps the chokepoint complete. You only license after the pilot's evidence report convinces you.
What if Phase 0 finds my agent can't be fully gated?
Then we tell you — before you pay for a pilot. If your agent has a raw shell or an arbitrary query tool, the chokepoint can't be complete, and a completeness guarantee would be a lie. We'll show you exactly which path is open and what it would take to close it. That's a real answer, and it's cheaper to learn from a worksheet than a failed deployment.
DSGVO / data handling?
The gate runs in front of your agent, on your side. We need your tool list and, during a pilot, access to the decision stream — not your customer database. The evidence log is hash-chained and yours. Operator infrastructure is on Hetzner Falkenstein / Nürnberg. Full Datenschutz.
Can I see it work before I talk to anyone?
Yes — the live demo runs the real engine in your browser, and the pilot checklist shows exactly what an engagement involves. No email gate on either.