Skip to main content
CanaryVaultsCanaryVaults home
ProductsPricingBlogDocs
Start Free
← Back to BlogLaunch notes

Introducing enterprise inquiries — the honest version

July 20264 min readRelease

The pricing page now has an Enterprise column. Here is exactly what it buys, what it doesn't, and what happens when you email us — written plainly, because the audience for this plan can smell filler.


There is now an Enterprise plan on the pricing page. Before anyone asks: no, we did not move features behind it. Every detection surface — decoy identities, trap facts, the Shield firewall, honeypots, audit logging, agent monitoring — works the same on every plan. The limits change; the product does not. That has been our pricing rule from the start and Enterprise doesn't break it.

What Enterprise actually buys is the operational wrapper that larger teams need before they can adopt anything: an SLA, custom limits where the standard tiers don't fit, dedicated support, compliance documentation, a custom contract, and invoice billing instead of a card on file. It is listed at $120/month or $999/year as the anchor, and the honest description is 'Pro plus paperwork and promises in writing.'

Here is what happens when you send an enterprise inquiry: your email goes to the team that builds the product. There is no sales sequence, no SDR handoff, no mandatory discovery call. You will get a reply from someone who can actually answer questions about hash chains, data retention, and what the API does under a 402.

If you want a fast, useful exchange, include three things: which surfaces you care about, roughly what volumes you expect (documents, inspections per month, agents), and which compliance regime you're answering to, if any. That's enough for us to say yes, no, or 'here's the gap' in the first reply.

And what we won't promise, even for a contract: we won't claim the legal export PDF is court-admissible everywhere — it is tamper-evident, and admissibility is a question for your counsel in your jurisdiction. We won't claim out-of-the-box EU AI Act compliance — our audit records can feed an Article-12-style logging regime, but deployer-specific fields are yours to map. And we won't commit to shipping features that don't exist yet just to close a deal.

If that level of bluntness is what you were hoping an enterprise conversation would sound like, the address is hello@canaryvaults.com.


This article is about a shipped surface: All product surfaces. Integration details live in the docs.

Continue reading

More notes from the CanaryVaults team.

Featured

What a paste-site canary sees: the anatomy of a credential-stuffing hit

A walkthrough of the seeding pipeline end to end: how a decoy credential ends up on a paste site, what happens in the moments after someone tries to use it, and what lands in your alert channel.

Platform6 min read
Postmortem

Every page on our site was shipping an empty body

One call to useSearchParams() sat inside the root layout's only Suspense boundary, and deopted the entire application to client-side rendering. Twelve words of markup left our server. Nothing in the build said so.

Platform4 min read
Engineering

It worked, it said so, and nothing happened

A contact form returned 201 and showed a green confirmation every time. Nobody was ever notified. We went looking for more of these and found about thirty, all with the same shape.

Platform4 min read
CanaryVaults

Deception-based AI security. Decoys, trap facts, honeypots, prompt defense, and tamper-evident audit trails — one workspace.

Plant your first canary

PRODUCT

ProductsCanaryAgentDashboardPricingReferralGet started

RESOURCES

DocumentationQuickstartShieldEvidence formatAPIBlog

COMPANY

AboutSecurityReport a vulnerabilityContact

TRUST

Trust centerVerify evidenceStatusChangelogIncidentsDPA

COMPARE

vs Thinkst Canaryvs CanaryTokensFor SaaS teams

LEGAL

TermsPrivacyCookiesSubprocessorsSupport
deception-based AI security© CanaryVaults · canaryvaults.comsha-256 sealed · tamper-evident

CANARYVAULTS