Pricing
Every seat gets the full detection engine — we never meter how well you're protected. Choose whether your organization watches or enforces, then add the secure AI workspace for the people who actually use AI. Priced per user, per month, no seat minimums.
Per seat
See every AI tool in use — and how risky each one is.
The two-week look that needs no committee.
Per seat
Stop the leaks — and prove you govern AI.
Security is uncapped at every tier.
Per user add-on · requires Protect
The sanctioned place to actually use AI.
Like Copilot on Microsoft 365: a base for every seat, AI for the people who need it.
Buying through your IT provider? AILeakShield is available from managed service providers via TD SYNNEX — ask yours, or book a call and we’ll connect you.
Detection quality is identical everywhere. The tiers differ by what your organization can do — watch, enforce, or give people a safe place to work — never by how well it’s protected.
| Feature | Discover | Protect | Protect + Workspace |
|---|---|---|---|
| See what’s happening | |||
| Shadow-AI discovery — risk-ranked inventory of 84 services | ✓ | ✓ | ✓ |
| Firewall & DNS log import (no deployment needed) | ✓ | ✓ | ✓ |
| Vendor risk profiles: training, retention, data residency | ✓ | ✓ | ✓ |
| Coverage tracking across your estate | ✓ | ✓ | ✓ |
| Stop what shouldn’t happen | |||
| Real-time block / warn / redact, before data leaves the browser | — | ✓ | ✓ |
| Verified enforcement — proven working per site, per organization | — | ✓ | ✓ |
| Custom sensitive terms (your clients, projects, codenames) | — | ✓ | ✓ |
| Compliance presets — HIPAA and more | — | ✓ | ✓ |
| Coached overrides with audited business justifications | — | ✓ | ✓ |
| File-attachment and AI-response inspection | — | ✓ | ✓ |
| Agentic-AI (MCP) gateway for AI tools that act on your systems | — | ✓ | ✓ |
| Prove it | |||
| AI usage policies with staff sign-off & attestation | — | ✓ | ✓ |
| Tool approval workflow that writes straight to enforcement | — | ✓ | ✓ |
| AI risk register, drafted from your own activity | — | ✓ | ✓ |
| Email alerts on high-risk events | — | ✓ | ✓ |
| SIEM / webhook export — signed, real time | — | ✓ | ✓ |
| Full audit trail | — | ✓ | ✓ |
| Give people a safe place to work | |||
| Secure AI workspace — fast models, fair use | — | ✓ | ✓ |
| Full model catalog: GPT-5, Claude Opus & Sonnet, GPT-4.1 | — | — | ✓ |
| Web search in the workspace | — | — | ✓ |
| Document upload, drafting and export | — | — | ✓ |
| Organization-wide standing instructions | — | ✓ | ✓ |
| Deploy and run it | |||
| Silent install via Group Policy / Intune, or Chrome Web Store | ✓ | ✓ | ✓ |
| Zero-touch enrollment — no user sign-in required | ✓ | ✓ | ✓ |
| Works with Chrome and Edge | ✓ | ✓ | ✓ |
| Managed by your IT provider (MSP) if you have one | ✓ | ✓ | ✓ |
Workspace is an add-on assigned per person on a Protect plan — only the people who use AI carry its cost, while every seat stays protected. 14-day trials run with full Protect functionality.
A single user running heavy queries on Claude Opus can cost more in a day than an entire team’s monthly subscription. Caps protect predictable pricing — yours and ours. If your users regularly hit a cap, that’s the signal to upgrade.
Also, we don’t sell unlimited at any tier. We’d have to charge several hundred dollars per user per month to underwrite the worst case, and most teams wouldn’t come close to using it. Enterprise with volume pricing is the right answer for very heavy use. We can customize usage tiers for your organization upon request.
Yes. Enterprise customers can connect approved OpenAI, Anthropic, Google, or other provider API keys while still using AILeakShield’s inspection engine, policy controls, audit logging, and custom data protections.
Blocked content never leaves AILeakShield — caught by the inspection engine in memory and never sent to any AI provider. We never store sensitive data and we don’t allow it to get to the AI providers either. Allowed content is forwarded to OpenAI, Anthropic, or Google through your selected model. We retain only a redacted audit record (the decision, the category, a masked preview) — never the raw prompt content. Blocked-tier events store only a category placeholder (e.g., [Blocked: ssn]), not the original text.
Yes. Customers commonly start with secure AI portal access and later expand into browser-wide protection, shadow AI monitoring, advanced models, and enterprise policy controls as adoption grows.
No. Users login to app.aileakshield.com like they would any other AI solution. They select their preferred AI model and use it like any other chat.
There is an optional browser monitoring solution included with our pro and enterprise tier. This allows you to monitor for shadow AI throughout your environment. It also allows you to apply policy to the browser that you have in the secure workspace. Your IT team pushes the extension through Microsoft Intune, Chrome Enterprise, Active Directory Group Policy, or JAMF — exactly the same way they push any other managed extension. Users see the AILeakShield icon appear in their toolbar, sign in once via your existing Microsoft SSO (typically silent), and then forget it exists until it blocks a prompt.
The five built-in presets (HIPAA, PCI, GDPR, GLBA, Defense / CUI) cover most enterprise needs out of the box. The underlying policy engine is fully tunable per category — dial detection up or down to match internal frameworks (ISO 27001, NIST 800-171, FERPA, SOX, etc.). Enterprise customers can also add custom regex patterns for organization-specific data (project codenames, customer identifiers, internal product names). If you require a framework not already covered, just let us know, we add it as a feature request and respond quickly.
Three things you can’t get on any other tier: (1) access to the most advanced AI models (GPT-5, Claude Opus 4.7), (2) the enhanced shadow-AI monitoring suite — live dashboard, DNS log import, API-key audit, (3) custom regex patterns for organization-specific data — plus longer audit retention, higher per-user message caps, signed BAA for HIPAA workloads, volume pricing, and a named customer success manager.
AILeakShield helps your team use the AI tools they already want with prompt protection, Microsoft SSO, usage controls, daily prompt text deletion, and enterprise-ready security controls.