Org audit

Grade every repository in your GitHub organisation, see where they disagree, and get a ranked fix plan and a compliance evidence pack you can forward. It runs on your machine: your code never leaves it.

Free summary, right now:

npx threadctx audit --org your-org

Plans

Free

$0 forever
  • Scan, explain, diff, fix and badge any repository
  • Fix pull requests, GitHub Action, MCP server
  • Org audit summary in your terminal

How paid plans are priced

By agent repositories: repositories with at least one agent instruction or MCP config file. The free audit summary tells you how many you have. Annual plans match the yearly audit cycle; the snapshot is for evidence once.

Not sure which fits? Ask us.

Snapshot audit

$299 one-off
  • One organisation, up to 100 agent repositories
  • Full report: every repo graded, where teams disagree, ranked fix plan
  • Compliance evidence pack (SOC 2, ISO 27001, ISO 42001, NIST AI RMF)
  • 14 days to fix and re-run
  • Credited in full toward an annual plan started within 30 days

Team

$99 / month, billed yearly

$1,188 per year

  • One organisation, up to 50 agent repositories
  • Unlimited audits and evidence packs all year
  • Trends: what improved or regressed since the last audit
  • Ongoing-monitoring control (TC-08) evidenced

On the roadmap: Scheduled weekly audits in your own GitHub, with regression issues.

Business

$299 / month, billed yearly

$3,588 per year

  • One organisation, up to 500 agent repositories
  • Everything in Team
  • Priority email support

On the roadmap: Org-wide fix pull requests; Developer-machine MCP inventory; Policy baseline for every repository.

Agency

$2,990 per year
  • Up to 10 client organisations
  • Full reports and evidence packs for each
  • Trends for every organisation
  • More organisations: $249 a year each, by email

You list your client organisations at checkout.

Enterprise from $12,000 per year

Unlimited agent repositories and organisations · Invoicing, procurement and security questionnaires · Custom rule packs for your policies · Priority support and rollout help.

Talk to us

Secure checkout by Stripe · Manage or cancel from the licence page · Licences are verified offline · Prices in USD, taxes may apply · Terms

How it works

  1. Choose a plan. Your licence key appears on the next page.
  2. Save it to ~/.threadctx/license and run npx threadctx audit --org your-org with a GitHub token that can read your repositories (gh auth login is enough).
  3. Open report.html for engineering and evidence.html for security and auditors. Run it again later to see what changed.