AI Agent Security That Scales With You
Free scanning for every developer. Upgrade for Sentinel runtime monitoring and advanced threat detection.
Free
For individual developers
- Unlimited CLI scans
- MCP server scanning (23 patterns)
- Agent skill scanning (27 patterns)
- Trust scores (0-100)
- Typosquatting detection
- Registry browsing
- 50 API scans/month
Pro
For security-conscious developers
- Everything in Free, plus:
- Sentinel runtime monitoring (Beta)
- 5-minute monitoring sessions
- 3 concurrent servers
- Behavioral pattern detection
- 7-day history retention
- 1,000 API scans/month
Pro+
For production & teams
- Everything in Pro, plus:
- Advanced Sentinel patterns (Beta)
- 30-minute monitoring sessions
- 10 concurrent servers
- DNS tunneling & C2 detection
- Webhook & Slack alerts (Coming Soon)
- 30-day history retention
- 5,000 API scans/month
- Multiple API keys
- Priority scan queue
Need enterprise features? We're building expanded plans with SSO, custom integrations, dedicated support, and on-prem deployment. Get in touch
Vigile Sentinel — Runtime Phone-Home Detection
BetaStatic scanning catches what's in the code. Sentinel catches what the code actually does on the wire. It monitors MCP server network behavior in real-time to detect C2 beaconing, data exfiltration, DNS tunneling, and covert channels that static analysis misses.
C2 Beaconing
Catches tools phoning home on a schedule
Credential Theft
Detects SSH keys & tokens leaving your machine
DNS Tunneling
Spots data hidden in DNS queries
Sentinel is currently in Beta. Detection patterns are continuously improving and may produce false positives or miss certain threat categories. Sentinel should supplement — not replace — your existing security practices. Terms of Service.
Frequently Asked Questions
Is the CLI scanner really free?
Yes, completely free and always will be. The CLI scanner with all 50 detection patterns, trust scoring, and typosquatting detection requires no account or API key. Run npx vigile-scan anytime.
What does Sentinel detect that static scanning doesn't?
Static scanning analyzes code before execution. Sentinel monitors what happens at runtime — actual network connections, data exfiltration attempts, C2 beaconing patterns, and DNS tunneling. A malicious MCP server might look clean in code but phone home when it runs.
What's the difference between Pro and Pro+?
Pro gives you Sentinel runtime monitoring with behavioral pattern detection — perfect for individual developers securing their MCP setup. Pro+ unlocks advanced detection patterns (DNS tunneling, C2 beaconing), longer monitoring sessions (30 min), 10 concurrent servers, and support for teams running production systems.
Can I try Sentinel before subscribing?
Running vigile-scan --sentinel on the free tier shows you the upgrade prompt with a preview of Sentinel's detection categories. Subscribe to Pro ($9.99/mo) to unlock runtime monitoring. Note: Sentinel is currently in Beta — detection patterns are continuously improving.
Can I upgrade from Pro to Pro+ later?
Absolutely. You can upgrade anytime from your account page. Your billing will be prorated so you only pay the difference for the remainder of your billing cycle.