Single-server protection is free. Fleet management: US$10 per server per year, three servers minimum. No other plans, no hidden fees.
Payments are handled by Lemon Squeezy (credit card / PayPal, taxes and invoices included) — your card number never touches our systems. When a subscription lapses, Pro features sleep quietly and core protection keeps running (fail-open).
| Feature | Free | Pro |
|---|---|---|
| 14-rule detection + automatic blocking (nftables / ipset / Windows Firewall) | ✅ | ✅ |
| Local web console, attack map, whitelist, CSV export | ✅ | ✅ |
| Email notifications | ✅ | ✅ |
| Seats (managed servers) | 1 | 3+, add seats anytime |
| Online rule-pack updates | — | ✅ |
| Threat-intel IP feed (fleet-wide shared blocking) | — | ✅ |
| Binary updates | Manual reinstall | ✅ OTA auto-update |
| Fleet central reporting + dashboard | — | ✅ |
| Telegram / webhook / batch & daily digest alerts | — | ✅ |
| System resource monitoring + alerts | — | ✅ |
| Support | Community forum | Priority forum replies |
Free = full factory capability with manual maintenance; Pro = continuously fed and fully automatic. Rules still ship with every release — Free users get them by reinstalling the latest version.
An agent binds to your account with a pairing code at install time and takes one seat. Reinstalling the same machine (same fingerprint) never takes another.
Add a seat mid-year and pay only the remaining fraction (e.g. US$5 with half a year left). All seats renew together on one date, at full price only from renewal.
Unbinding frees the seat immediately, but each seat can be reassigned at most once per 30 days — normal hardware replacement is unaffected; rotating one seat across many servers is not.
No. This is a hard design rule: licensing only gates Pro features (fleet, OTA, threat intel). Detection and blocking never stop over a licensing problem. On expiry the agent simply reverts to Free behavior.
No refund for the current term — the reduced seat count takes effect at the next renewal, and everything works as usual until then.
Usually not. Free-tier detection and blocking are complete. The main reason single-server users upgrade is automatic rule-pack and threat-intel updates.
Yes — see the Refund Policy.