• Agents
  • Pricing
  • Blog
Log in
Get started

Security for apps built with AI. Paste a URL, get a report, fix what matters.

Product

  • How it works
  • What we find
  • Pricing
  • Agents
  • MCP Server
  • CLI
  • GitHub Action

Resources

  • Guides
  • Blog
  • Docs
  • OWASP Top 10
  • Glossary
  • FAQ

Security

  • Supabase Security
  • Next.js Security
  • Lovable Security
  • Cursor Security
  • Bolt Security

Legal

  • Privacy Policy
  • Terms of Service
  • Cookie Policy
  • Imprint
© 2026 Flowpatrol. All rights reserved.
Pricing

Start free.
Go deep when you're ready.

Start with free Surface scans. Upgrade to Builder for $19/mo and we'll log in, check who can see what, and hand you copy-paste fixes for everything we break.

Free

$0forever

See what's exposed. Zero commitment.

3 Surface scans per month
1 scan target
Vulnerability summary
Fix guidance for top issues
Try it free
Most Popular

Builder

$19/mo

Full security scans for builders shipping to real users.

30 credits per month
5 scan targets
Surface & Deep scans
Auth & IDOR testing
Screenshot evidence
Detailed vulnerability reports
3 team members
API access
Get started

Pro

$49/mo

For teams and agentic pipelines that scan often.

120 credits per month
20 scan targets
Everything in Builder
10 team members
Full API access
Priority support
Get started

Enterprise

Custom

For teams and agencies shipping at scale.

Unlimited credits
Unlimited scan targets
Unlimited team members
SSO / SAML
Audit log
Priority scan queue
Dedicated support
Talk to us

Simple, fixed credit costs

You always know what a scan costs before you click. No variable pricing, no surprises.

Surface~1-3 min
1credit

Quick check — exposed secrets, default settings, leaky Supabase tables, screenshots

Deep~15-30 min
5credits

Full audit — logs in, tries other users' data, injects nasty inputs, and chains bugs together

Need more credits?

Running out mid-month? Top up instantly. One-time purchase, available immediately, valid through the end of your billing period.

10 credits

$0.50 per credit

$5

one-time

Buy in multiples of 10, up to 60 at a time

Builder & Pro

Feature Comparison

Scroll for more →

FeatureFreeBuilderProEnterprise
Monthly allowance3 Surface30 credits120 creditsUnlimited
Surface & Deep scans—
Team members1310Unlimited
Login & access control testing—
Screenshot evidence—
Detailed vulnerability reports—
API access—
Priority support——
SSO / SAML———
Audit log———
Priority scan queue———

Frequently Asked Questions

Do I need to know about security?

Not at all. Flowpatrol is built for builders, not security engineers. Every finding comes with a plain-English explanation and a fix you can copy-paste into your AI coding tool.

What are the scan modes?

Surface (1 credit) is the quick check — exposed secrets, default settings, leaky Supabase tables (RLS), and screenshots — about 1-3 minutes. Deep (5 credits) is the full audit — it actually logs in, tries to access other users' data, injects nasty inputs, and chains bugs together (IDOR, SQL injection, and the rest) — about 15-30 minutes.

What can Flowpatrol scan?

Anything you can reach in a browser. SPAs, server-rendered apps, REST APIs — if it's live on the web, we can test it. Works with any stack, any framework.

How do credits work?

Surface scans cost 1 credit, Deep scans cost 5. All paid plans include both modes — the difference is how many credits you get each month. If you run out mid-month, you can buy extra credits as a one-time top-up starting at $5 for 10 credits. You always know the cost before you click.

Can I change plans later?

Anytime. Upgrade, downgrade, or cancel — changes take effect at the start of your next billing cycle. No lock-in.

Is my data safe with you?

Flowpatrol never touches your codebase. No repo access, no GitHub integration, no source code upload — we only interact with your live, deployed URL. All scan data is encrypted at rest and in transit, and we use Row-Level Security to keep every organization's data completely isolated.