Predictable pricing
that scales with you.
One plan, billed per seat — start with yourself or buy seats for the whole team.
Save 20% when billed annually
Starter
$75per seat / month
$75 / seat ·1seat
14 days free · no credit cardFor individuals & small teams getting started.
Start 14-day free trialWhat you get:
- 3 projects
- 10 repos connected
- 100 PRs / month
- 100K LOC deep scanned / month
- 200 fixes AI fixes / month
- AI findings + dual-verify
- Invite teammates with roles
- Per-seat project access
Pro
$150per seat / month
$150 / seat ·1seat
For growing teams shipping with agents.
Get startedWhat you get:
- 15 projects
- 50 repos connected
- 500 PRs / month
- 500K LOC deep scanned / month
- 1K fixes AI fixes / month
- Auto-fix patches + GitHub App
- Invite teammates with roles
- Per-seat project access
Scale
$250per seat / month
$250 / seat ·1seat
For teams that need proof, not noise — at scale.
Get startedWhat you get:
- 30 projects
- 100 repos connected
- 1K PRs / month
- 1M LOC deep scanned / month
- 2K fixes AI fixes / month
- Priority support
- Invite teammates with roles
- Per-seat project access
Enterprise
Custom
For orgs with custom security & compliance needs.
Contact usWhat you get:
- Everything in Scale
- Self-hosted option
- Custom scan policies
- Dedicated success manager
- SLA & audit logs
- On-prem / VPC deploy
Need help with customization?
The same engine on the pull request, in your terminal, inside your coding agent, and in one view your whole team shares. Same findings, same proof, wherever you meet it.
Compare every feature
Limits are shared across every seat on the plan. Rows marked “Coming soon” are never sold before they exist.
| Feature | Starter | Pro | Scale | Enterprise |
|---|---|---|---|---|
| Usage limits | ||||
| Workspaces / ProjectsProjects inside this organization. | 3 projects | 15 projects | 30 projects | Custom |
| RepositoriesRepositories connected to this workspace. | 10 repos | 50 repos | 100 repos | Custom |
| Deep ScanLines of code analysed by Deep Scan this period. | 100K LOC | 500K LOC | 1M LOC | Custom |
| PR ScansPull/merge requests reviewed this period. | 100 PRs | 500 PRs | 1K PRs | Custom |
| SchedulesRepositories on a recurring Deep Scan schedule. | 10 schedules | 50 schedules | 100 schedules | Custom |
| Finding FixAI fixes generated or applied this period. | 200 fixes | 1K fixes | 2K fixes | Custom |
| Docs & InsightsArchitecture docs and insight reports generated this period. | 10 docs | 50 docs | 100 docs | Custom |
| Repo EmbeddingsRepositories indexed for semantic search this period. | 10 repos | 50 repos | 100 repos | Custom |
| SeatsEvery plan is billed per seat — start with one person or buy seats for the whole team, at the same per-seat price either way. | Billed per seat | Billed per seat | Billed per seat | Custom |
| Scanning & coverage | ||||
| Automatic PR & MR reviewEvery pull/merge request is scanned on push, with findings posted inline on the diff. | ||||
| Whole-repository deep scanCross-file analysis of the entire codebase, not just the changed lines. | ||||
| Scheduled deep scansRecurring scans of a branch, on a schedule, without anyone triggering them. | ||||
| Bot & dependency PRs reviewedDependabot/Renovate bumps are among the highest-signal security PRs — they are scanned too. | ||||
| GitHub (App)One-click GitHub App install: webhooks, checks, and PR comments. | ||||
| GitLabMerge-request review and inline notes via the GitLab connection. | ||||
| BitbucketBitbucket sign-in works today; repository scanning is being built. | Coming soon | Coming soon | Coming soon | Coming soon |
| Detection depth | ||||
| Dual-path detectionDeterministic Semgrep rules AND LLM semantic analysis run on every scan — not grep with a chatbot. | ||||
| Dual-verified findingsThe two paths are cross-checked and every finding re-verified before you see it, so you review signal, not noise. | ||||
| Cross-file contextFindings are enriched with related code from across the repository, not judged from one file. | ||||
| Call-graph analysisA call graph of your code is built and used to trace how tainted data actually flows. | ||||
| Dedicated injection & race-condition detectorsDeep scans run purpose-built SQL-injection and race-condition analysers alongside the general scanner. | ||||
| Fixing & automation | ||||
| AI-generated fixesGoosy writes the patch for a finding — you review it before it lands. | ||||
| Auto-push fix commitsOpt-in per repository: eligible fixes are pushed to the PR branch automatically. | ||||
| Inline PR review commentsFindings arrive as review comments on the exact lines, where your team already works. | ||||
| Commit status on every scanA goosy status on each scanned commit — make it a required check to gate merges. | ||||
| Insights, docs & search | ||||
| Architecture docsGenerated documentation of how your codebase actually fits together. | ||||
| API-spec insightsYour HTTP surface, extracted and documented from the code itself. | ||||
| Semantic code searchRepositories indexed as embeddings for meaning-based lookup, not just text match. | ||||
| Developer Insights dashboardTeam-level risk trends, coverage, and fix analytics. Aggregates first — never a leaderboard. | ||||
| Ask GoosyAsk natural-language questions over your own team's scan data and get grounded answers. | ||||
| Team & access control | ||||
| Invite teammates with rolesEmail or GitHub/GitLab handle invites, each with an explicit role. | ||||
| Role-based access controlOwner, Admin, Project Manager, Developer, and Viewer roles with ranked permissions. | ||||
| Projects within one organizationSplit your org into projects, each with its own repos and members. API available now; the management UI is being built. | Coming soon | Coming soon | Coming soon | Coming soon |
| Team-scoped PR automationAutomatic scanning runs for PRs authored by people on your Goosy team; anyone else's PR is skipped visibly, with one click to add them. | Coming soon | Coming soon | Coming soon | Coming soon |
| Pooled limits across membersEvery seat adds to one shared pool instead of siloed per-person caps. | Coming soon | Coming soon | Coming soon | Coming soon |
| Per-member usage reportingSee how each seat uses scans, fixes, and docs. | Coming soon | Coming soon | Coming soon | Coming soon |
| Tooling & API | ||||
| Web dashboard | ||||
| Scoped API tokens (MCP)Mint scoped tokens (scan, findings, patch) for agents and automation, revocable per token. | ||||
| Goosy CLI & MCP client appsFirst-party CLI and MCP server packages for your terminal and IDE agents. | Coming soon | Coming soon | Coming soon | Coming soon |
| Support & deployment | ||||
| Priority support | ||||
| Self-hosted / VPC deploy | ||||
| Custom scan policies | ||||
| Dedicated success manager | ||||
| SLA & audit logs | ||||
What can we answer for you today?
Goosy is AI code review that reads every pull request and your whole codebase, proves which findings are real with dual verification, and writes the fix — for your team and the agents on it.