Priced for the model count,
not the headcount.
Most GRC tools price per employee. AI risk doesn't scale that way. Cognita prices on the surface area that actually matters: managed models and active integrations.
Pilot
- Up to 10 managed models
- 1 framework (ISO 42001 or NIST AI RMF)
- 5 user seats
- Core integrations: HuggingFace, MLflow, GitHub
- Auto-generated Model Cards
- Email support
Scale
- Up to 50 managed models
- 4 frameworks with shared-control auto-mapping
- 25 user seats · SSO via Okta / Azure AD
- Live Bias & Drift telemetry (W&B, Arize)
- EU AI Act Risk Engine + auto-AIIA
- Auditor Lock Mode + watermarked exports
- Dedicated CSM · Slack support
Federation
- Unlimited models & workspaces
- Unlimited frameworks · custom controls
- Unlimited seats · SAML + SCIM
- Custom data residency (EU / US / APAC)
- Cognita Trust + Vendor Risk modules
- Cryptographic audit trail · Merkle anchored
- 99.95% SLA · 24/7 priority support
Air-gapped
- Air-gapped / on-prem deployment
- FedRAMP Moderate / IL5 path
- HSM-backed signing keys
- Custom SLA & named TAM
- Quarterly red-team engagement
Compare every plan
All limits are soft. We'll never block a control evaluation in the middle of an audit.
Tune for your stack
Bolt-ons priced à la carte. Prorated monthly.
Additional models
For when your registry grows. Includes lineage + Model Card generation.
Cognita Trust
Add SOC 2 / ISO 27001 module. Shared evidence reuses into AIMS automatically.
Vendor Risk
Track third-party AI sub-processors. Continuous public model-card monitoring.
Frequently asked
Why don't you charge per employee?
AI risk doesn't scale with headcount — it scales with the number of models you ship. We bill on the surface that actually correlates with audit complexity.
What counts as a "managed model"?
Any deployed inference endpoint or registered training artifact. Sandbox/experimental models don't count until you promote them to a production environment.
Can I bring my existing SOC 2 evidence?
Yes. Connect your existing GRC tool or upload directly. Our shared-control mapper auto-credits ISO 42001 controls — typically 40% on day one.
How does the trial work?
30 days, full Scale tier, no credit card. We import a sample model registry so you can see the AIIA workflow on day one. Convert anytime.
Do you offer non-profit / academic pricing?
Yes. Accredited research labs and registered non-profits get 50% off any tier. Email [email protected].
Is on-prem really air-gapped?
Yes. Sovereign deployments ship as a self-contained Kubernetes bundle with no telemetry calls home. License renewal happens via offline key exchange.
See it on your own model registry.
Connect HuggingFace or MLflow in under 5 minutes. We'll show you your first ISO 42001 readiness score live.