Org audit
Grade every repository in your GitHub organisation, see where they disagree, and get a ranked fix plan and a compliance evidence pack you can forward. It runs on your machine: your code never leaves it.
Free summary, right now:
Plans
Free
- Scan, explain, diff, fix and badge any repository
- Fix pull requests, GitHub Action, MCP server
- Org audit summary in your terminal
How paid plans are priced
By agent repositories: repositories with at least one agent instruction or MCP config file. The free audit summary tells you how many you have. Annual plans match the yearly audit cycle; the snapshot is for evidence once.
Not sure which fits? Ask us.
Snapshot audit
- One organisation, up to 100 agent repositories
- Full report: every repo graded, where teams disagree, ranked fix plan
- Compliance evidence pack (SOC 2, ISO 27001, ISO 42001, NIST AI RMF)
- 14 days to fix and re-run
- Credited in full toward an annual plan started within 30 days
Team
$1,188 per year
- One organisation, up to 50 agent repositories
- Unlimited audits and evidence packs all year
- Trends: what improved or regressed since the last audit
- Ongoing-monitoring control (TC-08) evidenced
On the roadmap: Scheduled weekly audits in your own GitHub, with regression issues.
Business
$3,588 per year
- One organisation, up to 500 agent repositories
- Everything in Team
- Priority email support
On the roadmap: Org-wide fix pull requests; Developer-machine MCP inventory; Policy baseline for every repository.
Agency
- Up to 10 client organisations
- Full reports and evidence packs for each
- Trends for every organisation
- More organisations: $249 a year each, by email
Enterprise from $12,000 per year
Unlimited agent repositories and organisations · Invoicing, procurement and security questionnaires · Custom rule packs for your policies · Priority support and rollout help.
Secure checkout by Stripe · Manage or cancel from the licence page · Licences are verified offline · Prices in USD, taxes may apply · Terms
How it works
- Choose a plan. Your licence key appears on the next page.
- Save it to
~/.threadctx/licenseand runnpx threadctx audit --org your-orgwith a GitHub token that can read your repositories (gh auth loginis enough). - Open
report.htmlfor engineering andevidence.htmlfor security and auditors. Run it again later to see what changed.