pricing
Pay for the audits you run. Nothing else.You only pay for the checks you actually run. Nothing else.Pay per audit. Nothing else.
nittim never bills a flat rate for tokens it doesn't control. Scanning is free forever. AI auditing is prepaid credits, your own Anthropic key, or your own cloud — your choice, never a surprise.nittim never charges a flat fee for AI usage it doesn't control. The free check for known security problems always stays free. Having an AI actually read and reason about your code costs prepaid credits — or you can bring your own Anthropic API key (a password that lets a program use Anthropic's AI on your behalf and bills you directly), or run everything inside your own company's cloud. You choose — never a surprise bill.Scanning is free forever. AI audits use prepaid credits, your own Anthropic key, or your own cloud — you choose, no surprises.
Free — scan forever, audit once
Every repository gets the free deterministic scan first — committed secrets and known CVEs, real findings from your actual code, no card required. That scan also previews what the deeper, Claude-reasoned categories would check. Audit — your first Audit is free. After that, about $5. Once per account. Your covered Audit reads the files that matter most, in a single pass. A paid Audit reads more of your code, across two.Every project gets a free rule-based scan first — it checks for passwords or keys left in your code, and for known security bugs in the ready-made packages your project uses, no card required. That scan also gives you a preview of what the deeper AI-reasoned checks would look at. Audit — your first Audit is free. After that, about $5. Once per account. Your covered Audit looks at the files most likely to hide a real problem, in one pass. Pay for one and it reads more of your project, across two.Free deterministic scan first — secrets, known CVEs, real code findings, no card required. Audit — your first Audit is free. After that, about $5. Once per account. Covered Audit: the files that matter most, one pass. Paid: more of your code, two passes.
deterministic secret + dependency-CVE scan, any public or connected repo, forever · no card, no sign-in, no cap on honest use · your Audit covered per account — GitHub or Google sign-in · works on the web, the API, MCP, and the GitHub Actiona rule-based check for passwords or keys left in your code, and for known security bugs in the ready-made packages your project uses — on any public or connected project, forever · no card, no sign-in, no limit on normal use · your Audit check included per account — sign in with GitHub or Google · works on the website, the API, MCP (the connector your AI assistant uses to reach tools), and the GitHub ActionDeterministic secret + CVE scan, any repo, forever, no card, no sign-in, no cap. Audit covered per account via GitHub or Google. Works on web, API, MCP, GitHub Action.
Credits — prepaid, per audit
Priced in Audits — the number a pack buys, at 5.14 credits each. Credits are the fine print underneath.Priced by how many AI checks a pack buys, at 5.14 credits each. Credits are just the fine-print unit that gets spent underneath.Priced per Audit, at 5.14 credits each.
- Starter
- $29 · 5 Audits · 30 credits
- Standard
- $74 · 17 Audits · 90 credits
- Volume
- $189 · 52 Audits · 270 credits
- Bulk
- $479 · 157 Audits · 810 credits
The $29 Starter pack is 5 audits, with 4.3 credits left over — spendable on a judge or module call, never a dead balance. Each bigger pack costs less per audit, 16–25% less at every step, down to the $479 Bulk pack. Counts assume one Audit pass — a Full Audit of a bigger repo needs more than one, which draws extra credits, and the checkout screen quotes the exact total before anything is charged.The $29 Starter pack buys 5 checks, with 4.3 credits left over — you can still spend it on a judge or module call, nothing is wasted. Each bigger pack costs less per check than the one below it, 16–25% less at every step, down to the $479 Bulk pack. These counts assume one AI pass — a bigger project can need more than one, which spends extra credits, and the checkout screen always tells you the exact total before anything is charged.$29 buys 5 Starter audits, plus 4.3 credits spendable on judge/module calls. Costs drop 16–25% per bigger pack, down to $479 Bulk. Bigger repos may need extra passes and credits — checkout quotes the total first.
credits from $0.59 each, cheaper in bigger packs · Audit = 5.14 credits · single module via API/MCP (run_module) = 5.03 credits · a cross-vendor judge_output check = 0.39 credits · credits never expire · unused credits refundable within 30 days of purchasecredits cost from $0.59 each, cheaper the more you buy · one AI pass over your code = 5.14 credits · running a single check over the API or MCP (run_module) = 5.03 credits · a second opinion from a different AI vendor (judge_output) = 0.39 credits · credits never expire · unused credits can be refunded within 30 days of buying themcredits from $0.59 each · Audit = 5.14 credits · run_module = 5.03 credits · judge_output = 0.39 credits · never expires · refundable within 30 days
Your own key — flat monthly
$49/mo is the pipeline, not the tokens — bring your own Anthropic key and the model cost is yours, not ours. The reasoning runs on your Anthropic account, under your vendor terms.$49/mo pays for using nittim itself, not for the AI usage — bring your own Anthropic API key (a password that lets a program use Anthropic’s AI on your behalf) and the AI cost is billed to you, not to us. The AI reasoning runs on your own Anthropic account, under your agreement with them.$49/mo pays for the pipeline, not tokens. Bring your Anthropic key — cost and reasoning stay on your account, under your vendor terms.
covers the API, MCP, and the GitHub Action · funded by a 100-credit monthly allowance — an Audit draws 2 credits instead of 5.14 credits, about 50 Audits a month · key sent as x-nittim-anthropic-key, forwarded per request, never stored · use more? a credit pack tops it up · web audits always use creditscovers the API, MCP, and the GitHub Action · paid for by a 100-credit monthly allowance — one AI check spends 2 credits instead of 5.14 credits, about 50 checks a month · your key is sent as x-nittim-anthropic-key, forwarded per request, never stored · need more? a credit pack tops it up · checks run from the website always spend credits insteadcovers API, MCP, GitHub Action · funded by a 100-credit monthly allowance — a run draws 2 credits instead of 5.14 credits, about 50 runs a month · key sent as x-nittim-anthropic-key, forwarded per request, never stored · a pack tops it up · web always uses credits
Enterprise — your cloud, your bill
Seat bands, unlimited repos, SSO, SARIF, policy-as-code, an append-only audit log.Pricing by seat count, unlimited projects, SSO (one login for your whole company), SARIF (a standard results format your security tools already read), policy-as-code (your own rules, written down and enforced automatically), and an append-only audit log (a record nobody can quietly edit).Seat bands, unlimited repos, SSO, SARIF, policy-as-code, append-only audit log.
The evaluation kit contains the full source of the component that touches your code, the complete boundary contract, the deployment topology, and the architecture brief — everything your platform and security teams need to judge the design before a single conversation.The evaluation kit includes the full code for the one piece that touches your code, a plain description of exactly what it can and can't reach, how it's set up to run, and a written explanation of the design — everything your technical and security teams need to check it out before you even talk to us.The kit includes the component's full source, the boundary contract, deployment topology, and architecture brief — everything your platform and security teams need to judge the design.
runs on Claude via Bedrock in your AWS, or your own Anthropic org — your choice · contact us — no self-serve checkoutruns on the Claude AI model, hosted through Amazon Bedrock inside your own AWS account, or your own Anthropic account — your choice · contact us to set it up — there is no self-serve checkout for this tierruns on Claude via Bedrock in your AWS, or Anthropic org · contact us — no self-serve checkout
Credit packsCredit packs (prepaid checks)Credit packs
Priced in Audits — the number a pack buys, at 5.14 credits each. Credits are the fine print underneath.Priced by how many AI checks a pack buys, at 5.14 credits each. Credits are just the fine-print unit that gets spent underneath.Priced per Audit, at 5.14 credits each.
The $29 Starter pack is 5 audits, with 4.3 credits left over — spendable on a judge or module call, never a dead balance. Each bigger pack costs less per audit, 16–25% less at every step, down to the $479 Bulk pack. Counts assume one Audit pass — a Full Audit of a bigger repo needs more than one, which draws extra credits, and the checkout screen quotes the exact total before anything is charged.The $29 Starter pack buys 5 checks, with 4.3 credits left over — you can still spend it on a judge or module call, nothing is wasted. Each bigger pack costs less per check than the one below it, 16–25% less at every step, down to the $479 Bulk pack. These counts assume one AI pass — a bigger project can need more than one, which spends extra credits, and the checkout screen always tells you the exact total before anything is charged.$29 buys 5 Starter audits, plus 4.3 credits spendable on judge/module calls. Costs drop 16–25% per bigger pack, down to $479 Bulk. Bigger repos may need extra passes and credits — checkout quotes the total first.
- Starter
- $29
- Standard
- $74
- Volume
- $189
- Bulk
- $479
Ready to buy?
Sign in and the packs appear right here. Audit — your first Audit is free. After that, about $5. Worth running that before you spend anything.Sign in and the credit packs show up right here. Audit — your first Audit is free. After that, about $5. Worth trying that before you spend anything.Sign in to see the packs. Audit — your first Audit is free. After that, about $5. Run it before you spend anything.
Credits never expire.
Unused credits refundable within 30 days of purchase.Unused credits can be refunded within 30 days of buying them.Unused credits refundable within 30 days of purchase.
What each audit costsWhat each check costsWhat each audit costs
- Free scan
- 0 CR
- Audit
- 5.14 CR
- Full Audit
- quoted first
- One module over the API or MCP
- 5.03 CR
- An AI audit on your own Anthropic key
- 200 CR
What an AI audit gives youWhat an AI check gives youWhat an AI audit gives you
Six scores — Executive, Production Readiness, Security, Privacy, Architecture, and IP Protection — and one verdict, backed by evidence: ship it, minor fixes, real work needed, or don't ship. The verdict is held to the hard evidence found in your code — a confident write-up cannot lift it.Six scores — Executive, Production Readiness, Security, Privacy, Architecture, and IP Protection — and one final call, backed by evidence found in your code: ship it, minor fixes first, real work needed, or don't ship it yet. The verdict has to be backed by real evidence in your code — confident-sounding writing alone can't raise it.Six scores plus one verdict — Executive, Production Readiness, Security, Privacy, Architecture, IP Protection — backed by evidence: ship it, minor fixes, real work needed, or don't ship. Evidence decides the verdict, not confident writing.
See what we check →Questions people ask before paying
What’s a credit?
Credits are whole integers, priced from $0.59 to $0.97 each depending on pack size — never a flat $1. An Audit costs 5.14 credits; a single module run over the API or MCP costs 5.03 credits. The free deterministic scan costs nothing, ever.Credits are whole numbers, priced from $0.59 to $0.97 each depending on how big a pack you buy — never a flat $1. One AI check over your code costs 5.14 credits; running a single check over the API or MCP (the connector your AI assistant uses to reach tools) costs 5.03 credits. The free rule-based scan costs nothing, ever.Credits run $0.59–$0.97 each by pack size, never a flat $1. An Audit costs 5.14 credits; a module run over API or MCP costs 5.03 credits. The free scan costs nothing.
Do credits expire?
Credits never expire. Unused credits refundable within 30 days of purchase.Credits never expire. Unused credits can be refunded within 30 days of buying them.Credits never expire. Refundable within 30 days of purchase.
What if I want my money back?
Unused credits refundable within 30 days of purchase. A failed audit auto-refunds its credits (idempotent, capped at 3 auto-refunds a day per account before manual review). Unused credits can be refunded within 30 days of buying them. A run that fails automatically refunds its own credits (safe to retry, capped at 3 automatic refunds a day per account before we review it by hand). Unused credits refundable within 30 days of purchase. Failed audits auto-refund, capped at 3 a day per account before manual review.
A confirmed false positive earns 1 credit back too, up to what that report cost you.A confirmed false positive — an alarm that turns out to be wrong — earns 1 credit back too, up to what that report cost you.A confirmed false positive earns 1 credit back, up to the report's cost.
Tell us and we'll sort it out.
Can I use nittim without sending you my code?
Start with a report from the library. Then your repo on the free scan — no AI in that path at all. Then an AI audit on your own Anthropic key. Only the fourth rung asks you to take our word for anything. Start by reading a report already in the library. Then try the free scan on your own project — no AI reads your code on that path at all. Then run an AI check using your own Anthropic API key. Only the fourth step asks you to trust that we handled your code the way we say we did. Start with a library report. Then your repo on the free scan — no AI there. Then an AI audit on your own key. Only the fourth rung asks you to trust us. See the full ladder →
What happens when I run out of credits?
You're out of credits. Top up and you'll come straight back here with this repo loaded — nothing to re-enter, and no need to scan it again. Over the API a 402 carries checkoutPath.You're out of credits. Buy more and you'll come straight back here with this project already loaded — nothing to re-type, and no need to scan it again. Over the API, a 402 error (the standard “payment needed” response) carries checkoutPath, the link to pay.Out of credits? Top up — you'll return here with this repo loaded, nothing to redo. Over the API, a 402 carries checkoutPath.
Does everyone get their Audit covered?
Audit — your first Audit is free. After that, about $5. One per account, for GitHub or Google sign-ins; a plain email account is ineligible. It is spent before any purchased credit.Audit — your first Audit is free. After that, about $5. One per account, for GitHub or Google sign-ins — signing in with just an email address does not qualify. It gets used up before any credit you've bought.Audit — your first Audit is free. After that, about $5. One per account, GitHub or Google only — not email. Spent before purchased credits.
Start with the free scan.
Paste any public GitHub repo and see real findings in minutes — no signup, no card, no setup.Paste the link to any public project's code on GitHub and see real results in minutes — no signup, no card, no setup.Paste a public GitHub repo. See real findings in minutes — no signup, no card, no setup.