Security coverage for every stage
Start free, scale with your needs. Pay per scan or subscribe.
Pro
- Unlimited quick scans
- 1 advanced scan / month
- Full check details for every category
- PDF export
- AI security assistant
- Scan history
- CI/CDNEW
- 5 CI/CD scans/month
- GitHub Actions integration
- PR comments with findings
- Advanced scans available via token packs
14-day money-back guarantee
Business
- Everything in Pro
- 5 advanced scans / month
- GitHub code analysis
- Source code: secrets detection
- Source code: dependency CVEs
- Source code: insecure patterns
- Priority support
- CI/CDNEW
- 20 CI/CD scans/month
- GitHub Actions integration
- PR comments with findings
- Priority scan queue
14-day money-back guarantee
Need more scans? Buy tokens.
1 token = 1 CI/CD scan or 1 advanced scan. Tokens never expire.
10
tokens
$4.99
$0.50/scan
30
tokens
$9.99
$0.33/scan
75
tokens
$19.99
$0.27/scan
200
tokens
$39.99
$0.20/scan
1 token = 1 CI/CD scan or 1 advanced scan. Quick scans are free. Tokens never expire.
What does a quick scan check?
Every plan includes 80+ checks across 12 categories
What's included in each scan
Two scan modes, two levels of depth.
~30 seconds · 55+ checks across 12 categories
- TLS / HTTPS validation (certificates, cipher suites)
- Security headers (CSP, HSTS, COOP, CORP)
- Cookie security (Secure, HttpOnly, SameSite)
- DNS & network checks (DNSSEC, CAA, IPv6)
- Email security (SPF, DKIM, DMARC)
- Information disclosure detection
- Privacy policy analysis
- Best practices review
2-5 minutes · Everything in Quick + deep audits
- Everything in Quick Scan
- SEO audit (meta, structured data, Open Graph)
- Performance audit (Core Web Vitals, Lighthouse)
- Accessibility audit (WCAG compliance)
- Source code analysis (upload ZIP or connect GitHub)
- Vulnerability detection in dependencies
- Secrets and credentials detection
- API security and auth pattern analysis
Plan comparison
| Feature | ProMost popular | Business |
|---|---|---|
| Quick scans | Unlimited | Unlimited |
| Advanced scans | 1 / month | 5 / month |
| Domains | 5 | 15 |
| Full check details | ||
| PDF export | ||
| AI security assistant | ||
| Scan history | ||
| GitHub code analysis | ||
| Priority support | ||
| CI/CD scans | 5 / month | 20 / month |
| Token pay-per-scan |
How we compare
“ZeriFlow Pro costs $4.99/month for a solo developer. Snyk Team starts at $25/developer/month (min 5 devs = $125/mo). SonarCloud Team starts at $30/month. CodeRabbit Lite starts at $12/developer/month.”
ZeriFlow is 3-25x cheaper for indie developers and small teams.
CI/CD & Tokens FAQ
When you open a pull request, ZeriFlow automatically scans the changed files for security issues. Results appear as a comment on your PR with a pass/fail score. Setup takes 3 minutes with GitHub Actions.
The scan still runs but returns a 402 error asking you to buy tokens or upgrade your plan. Your PR won't be blocked — it just won't get scanned until you have available scans.
Yes! 1 token = 1 CI/CD scan OR 1 advanced scan. They're interchangeable.
No. Tokens never expire. Buy a pack and use them whenever you need.
Plan scans are used first. Once your monthly plan scans are exhausted, tokens are deducted automatically. You're never charged unexpectedly.