ThreatModeler + IriusRisk

Simple, transparent, fair licensing.

We only charge for what you use. Start free, scale to enterprise with full continuity across every plan.

No hidden fees
SaaS or on-premises
Free community tier
Community
$0

SaaS · Free forever

For individuals exploring automated threat modeling. No credit card required — free for life.

  1. 3 active threat models
  2. Single user (limited collaboration)
  3. Intuitive diagram interface
  4. Out-of-the-box threat model templates
  5. Export diagram as XML
  6. Technical and compliance reports
  7. Monthly product updates
Enterprise
Most Popular
Contact us

SaaS or On-Premise · Custom pricing

For large organizations that need scale, configuration, integrations, and platinum-tier support.

  1. Unlimited threat models — no maximum
  2. Unlimited users
  3. Import from external diagramming tools
  4. Fully configurable components, standards & libraries
  5. Reports in a variety of formats and an agent to help you build
  6. Monthly updates to Secure Design Graph
  7. Integrations with popular issue trackers
  8. OpenAPI access
  9. Dedicated Customer Success Manager
  10. Enterprise onboarding & platinum support
  11. Nexus MCP Server — embed threat modeling into IDEs, CI/CD pipelines & AI coding tools (Claude Code, Cursor, VS Code)
  12. Agentic threat model creation & updates from source code, IaC, and architecture context
  13. Secure Design Graph — single source of truth across applications, cloud, and AI systems
  14. BYOAI with governed, deterministic framework (policy guardrails, audit-ready outputs)
  15. Portfolio-wide risk analysis & executive reporting across business units
  16. OAuth 2.1 MCP security with RBAC — no hard-coded keys

Simple, transparent, fair licensing.

Everything you need to know before choosing a plan.

2,500+

Security requirements mapped

180+

Compliance frameworks supported

13

Granted patents

See it in Action

Compare plans

Everything side by side.

See exactly what's included across every tier.

Features
Community
For individuals exploring automated threat modeling. No credit card required — free for life.
Enterprise
Most Popular
For large organizations that need scale, configuration, integrations, and platinum-tier support.

Threat Modeling

Active threat models

3

Unlimited

Diagram interface

Import from external diagramming tools

Threat model templates library

Custom

Configurable components, standards & libraries

Agentic & MCP Capabilities

Nexus MCP Server

IDE integration (Claude Code, Cursor, VS Code)

CI/CD pipeline integration

Agentic threat model creation from source code & IaC

Secure Design Graph (single source of truth)

BYOAI with deterministic governance framework

Portfolio-wide risk analysis & AI reporting

Users & Access Control

Users

1

Unlimited

Role-based access control (RBAC)

SSO / SAML

OAuth 2.1 MCP security

Audit trails

Reporting & Export

Technical & compliance reports

Multi-format

Export (XML, full model with threats & countermeasures)

XML only

Full model

Executive & leadership reporting

Integrations & API

Issue tracker integrations

OpenAPI access

Support & Deployment

Monthly product & content updates

Dedicated Customer Success Manager

Enterprise onboarding & platinum support

Deployment

SaaS

SaaS or On-Premises

Merger FAQ

Common questions.

Everything you need to know before choosing a plan.

Still have a questions?

Can't find the answer to your question? Contact us and we'll get back to you as soon as possible!

Is support included with every plan?
What is Nexus and when is it available?
What happens to my existing IriusRisk or ThreatModeler subscription?
Can I run ThreatModeler on-premise?
How does ThreatModeler licensing work?

Still have a questions?

Can't find the answer to your question? Contact us and we'll get back to you as soon as possible!