Skip to content
Simple, transparent pricing

Published Pricing. No Sales Call Required.

Every price published. Every module legible. No surprises in procurement. Compliance pricing should be as clear as the proof it produces.

Plans

Start with What You Need. Add Modules as You Grow.

Every plan includes unlimited reviewers, SSO, SCIM, audit exports, and enterprise controls. Pick the tier that matches your workload, then expand with transparent add-ons.

Core

For teams replacing spreadsheets and shared folders with one proof system

$600/mo
$7,200 billed annually
  • Governed controls, evidence, and assessments
  • Unlimited reviewer access and sharing
  • SSO, SCIM, RBAC, and audit exports included
  • Ask Aurora AI-assisted answers
  • 5 operators, 1 workspace, 1 framework
  • 25 review projects per year
Most popular
Professional

For teams buried in reviews, renewals, and vendor diligence

$1,600/mo
$19,200 billed annually
  • Everything in Core, plus:
  • Automated evidence collection (10 connectors)
  • Risk registers and remediation workflows
  • Vendor risk management (50 vendors)
  • Built for teams handling 50+ reviews per year
  • 50 review projects per year
Enterprise

For broader programs that need the full platform with readiness, risk, and vendor coverage

$2,600/mo
$31,200 billed annually
  • Everything in Professional, plus:
  • Readiness Suite bundle (training, exercises, incidents)
  • Vendor Risk expanded to 250 vendors
  • 10 operators and 3 frameworks included
  • Custom quote, scoped to your program
  • Command add-on available for regulated environments

Plan comparison

Compare Every Plan Side by Side

Standard self-serve tiers and the quoted enterprise bundle in one view. No guessing, no hidden features.

Base platform
Operators

Named seats for team members who manage controls, approvals, evidence, or reviewer workflows. Reviewers are always free.

Learn more
Core
5
Professional
5
Enterprise
10
Workspaces

Scoped boundaries for business units, subsidiaries, or client programs. Each workspace gets its own controls, evidence, and reviewer access.

Learn more
Core
1
Professional
1
Enterprise
1
Frameworks

Compliance frameworks like SOC 2, ISO 27001, or HIPAA. Aurora reuses one proof graph across frameworks instead of rebuilding each one.

Learn more
Core
1
Professional
1
Enterprise
3
Review projects

Audits, buyer reviews, renewals, and vendor assessments. Aurora meters by project, not by question count or approved domain.

Learn more
Core
25
Professional
50
Enterprise
25 base
Reviewer operations
Unlimited reviewer access

External reviewers, auditors, and buyers access proof without counting against your seat limit. No approved-domain caps or viewer-seat charges.

Learn more
Core
Professional
Enterprise
Trust Center & controlled sharing

Publish proof tiers, manage reviewer access, and control what evidence is visible to each audience with full audit trails.

Learn more
Core
Professional
Enterprise
SSO, SCIM, and RBAC

Enterprise identity, access, and role controls ship in every plan. No security-tax upsell to get the basics.

Learn more
Core
Professional
Enterprise
Audit exports and diffs

Structured exports, audit-period diffs, SIEM sinks, and webhooks for downstream compliance and security tooling.

Learn more
Core
Professional
Enterprise
Ask Aurora AI assistant

Retrieve prior answers, citations, and proof context using AI. Reuse existing evidence instead of rebuilding from scratch.

Learn more
Core
Professional
Enterprise
Compliance automation
Continuous Compliance

Read-only integrations, scheduled evidence checks, drift detection, and evidence freshness signals that keep proof current between reviews.

Learn more
Core
Professional
Enterprise
Automated connectors

Connector-backed evidence collection from cloud providers, SaaS tools, and infrastructure. Automate what you used to upload manually.

Learn more
Core
Professional
10
Enterprise
10
Drift detection

Continuous monitoring flags when evidence drifts from expected state, giving teams time to remediate before the next review.

Learn more
Core
Professional
Enterprise
Risk & accountability
Risk register & remediation

Track risks, assign owners, set due dates, and produce closure evidence. Remediation workflows replace scattered follow-up threads.

Learn more
Core
Professional
Enterprise
Vendor risk management

Vendor inventory, due diligence questionnaires, assigned assessments, Vendor Watch, and shareable outputs for third-party reviews.

Learn more
Core
Professional
50 vendors
Enterprise
250 vendors
Request ownership & SLA

Route requests to the right owner with escalation paths and SLA tracking. Every request gets an accountable trail.

Learn more
Core
Professional
Enterprise
Readiness
Workforce Readiness

Training assignments, custom content, acknowledgments, phishing simulations, and readiness dashboards tied to your proof record.

Learn more
Core
Professional
Enterprise
Response Readiness

Tabletop exercises, incident management, playbooks, emergency communications, and after-action records with readiness analytics.

Learn more
Core
Professional
Enterprise
Training & phishing

Build-your-own training content, phishing simulation campaigns, and completion tracking with evidence that survives the next audit.

Learn more
Core
Professional
Enterprise
Command
Command Insight

On-premises evidence plane with scoped collectors, field coverage, encrypted snapshots, and governed exports for regulated environments.

Learn more
Core
Professional
Enterprise
Quoted separately
Command Control

Governed actions with plan, apply, rollback, and approval history for high-assurance environments that need operational control.

Learn more
Core
Professional
Enterprise
Quoted separately

Pricing estimator

Build Your Exact Configuration

Toggle the modules you need and adjust quantities. See the published annual price update instantly.

Base footprint

Core includes 5

Core includes 1

Core includes 1

Core includes 25

Modules
Premium Command
Estimated annual pricing
$7,200
Self-serve
What this number is

Published annual list-price estimate from the same units on this page.

How bundles fit in

Reference bundles help buyers orient. Aurora can package the motion cleanly.

Breakdown
Platform Core
5 operators, 1 workspace, 1 framework, 25 review projects
$7,200
Commercial notes
  • This configuration qualifies for self-serve checkout at published prices.

Full catalog

Every Module and Add-On, Priced Transparently

Every module, add-on, and service with published prices and clear units. Add what you need, skip what you don't.

Preparing the interactive module catalog and saved-quote controls. The published pricing on this page remains the source of truth while the browser finishes loading the interactive view.

Why teams choose Aurora

Pricing That Doesn't Require a Sales Call to Understand

Most compliance platforms hide pricing until you are in a demo. Aurora publishes everything because transparent pricing builds the same trust as transparent proof.

$0
Hidden fees in any plan
24 mo
Price protection on every contract
100%
Of prices published on this page

Unlimited reviewer seats, always

External reviewers never count against your seat limit. Share proof without worrying about per-viewer fees or approved-domain caps.

No surprise enterprise tax

SSO, SCIM, RBAC, audit exports, diffs, and webhooks are in the base plan. You should not have to pay extra for security basics.

Predictable review metering

Aurora meters review projects, not individual questions. Your costs scale with real workload, not arbitrary counts.

Framework Expansion Without Rebuild Costs

Adding SOC 2, ISO 27001, HIPAA, or any framework reuses your existing proof graph. No reimplementation cost.

24-month price lock

Multi-year agreements lock your rate. Renewals are plain-language, not surprise uplift math.

Self-serve checkout for standard plans

Start Platform Core or any standard configuration without waiting for a sales call. Enterprise and Command get a proper scoping conversation.

Premium Command

Command Is Premium Because the Evidence Burden Is Different

An on-premises evidence workflow for regulated or hybrid environments that need stronger evidence integrity, broader coverage, and structured exports that stay inside your perimeter.

Command pricing is intentionally premium. It requires a scoping conversation with a mandatory deployment package and premium support minimum because the evidence requirements and operating model are materially different from a standard software-only module.

Assisted onboarding
$1,500One-time
Continuous launch
$3,500One-time
Readiness design workshop
$4,000One-time
Command deployment
$10,000–25,000One-time
Premium support / Slack / SLA
$6,000 / yrAnnual

Common questions

Pricing Questions, Answered Plainly

No sales jargon. No 'contact us for pricing.' Just clear answers.

Can I start without talking to sales?
Self-serve starts with Platform Core and standard non-Command configurations. Aurora keeps self-serve inside published thresholds: up to 10 operators, 3 workspaces, 25 automated connectors, 250 vendors, 1,000 covered users, 5 frameworks, and no regulated or private deployment requirement.
When do I need a sales conversation?
Enterprise bundles, Command, regulated deployments, high review volume, and service-heavy launches require a conversation because pricing and deployment differ from the self-serve path. Our team scopes the right configuration in one call.
How does enterprise pricing work?
Enterprise bundles combine Continuous Compliance, Risk and Accountability, the full Readiness Suite, and expanded limits into one custom quote. Command is quoted separately when your environment needs in-perimeter evidence. Both paths use the same published unit prices. The quote confirms the structure, not a hidden rate card.
How do you count reviews and questionnaires?
Aurora meters review projects, not individual questions, not approved domains, and not external viewers. One review project covers a full questionnaire or audit cycle regardless of how many questions or reviewers are involved.
What's included in every plan?
Unlimited reviewers, reviewer controls, Aurora Copilot, Ask Aurora, SSO, SCIM, service accounts, IP allowlisting, Auditor Workspace, Reporting Studio, audit-period exports and diffs, verifiable audit exports, SIEM sinks, webhooks, and affordable framework expansion are all visible from the start.
Can I add modules mid-contract?
Add-ons and module expansions are purchased at the same contracted rate during the active term. Aurora expands through visible units like operators, frameworks, connectors, covered users, review projects, vendors, and Command scope instead of forcing a full-plan renegotiation.
What happens when I hit a usage limit?
Aurora warns teams as they approach published usage boundaries, with early warning at roughly 80% and clear action at 100%. That gives teams time to add capacity before a renewal, audit window, or buyer spike turns into a surprise.
How do true-ups and renewals work?
Aurora uses quarterly usage reviews for the add-on units and plain-language annual renewals. Multi-year deals can use 24-month price protection so expansion and renewal planning stay predictable.
What payment methods do you accept?
Annual prepay, annual invoice, AWS Marketplace, and custom procurement paths are all available. The buying process should be as clear as the pricing.
Why is Command priced separately?
Command has real deployment, infrastructure monitoring, environment setup, and premium support costs. It requires a scoping conversation with a mandatory deployment package and premium support minimum because the evidence requirements and operating model are materially different from a standard software-only module.
Are services priced separately from software?
Yes. Assisted onboarding, launch packages, readiness workshops, Command deployment, and premium support stay explicitly priced so software economics and service economics do not blur together.
Live walkthrough
Ready to Get Started?
Start self-serve in minutes, or bring your requirements and we'll scope the right configuration in one call.
Standard plans start self-serve. Enterprise bundles and Command require a scoping conversation.