Tirith is free and open-source. For enterprise needs, contact us for a custom plan.
Everything you need for terminal security. Full detection engine (all 80+ rules), shell hooks for Bash, Zsh, Fish, and PowerShell, MCP server for AI coding tools, local JSONL audit log, YAML policy system, and SARIF output for CI/CD. No account required.
For teams and organizations with advanced compliance and deployment needs. Everything in Community, plus MITRE ATT&CK technique mapping, remote policy distribution, remote audit log collection, custom DLP redaction patterns, custom detection rules, webhooks (Slack, Teams, PagerDuty), SSO/SAML (Okta, Azure AD), organization-wide license management, air-gapped/on-premises deployment, custom rule development, a dedicated account manager, and SLA with guaranteed response times. Contact [email protected].
| Feature | Community | Team / Enterprise |
|---|---|---|
| Detection Rules (80+) | ||
| Shell Hooks (Bash, Zsh, Fish, PS) | ||
| MCP Server | ||
| Local JSONL Audit Log | ||
| YAML Policy System | ||
| SARIF Output (CI/CD) | ||
| MITRE ATT&CK Mapping | ||
| Remote Policy Distribution | ||
| Remote Audit Collection | ||
| Custom DLP Redaction | ||
| Custom Detection Rules | ||
| Webhooks (Slack, Teams, PagerDuty) | ||
| SSO / SAML | ||
| License Management | ||
| Air-Gapped / On-Prem | ||
| Custom Rule Development | ||
| Dedicated Account Manager | ||
| SLA & Response Guarantees |