Platform Threat Intelligence Integrations Pricing Contact Sign In Request Demo
Monthly Annual Save 20%
Bronze
$990/mo

Daily threat feeds and dashboard access for small security teams.


  • Daily IOC feed (IP + Hash)
  • Full dashboard access
  • 1,000 API calls / day
  • 5 analyst seats
  • Daily & weekly email reports
  • CSV/JSON event export
  • Email support
  • Real-time IOC streaming
  • STIX/TAXII access
  • SIEM integration
Gold
$7,990/mo

Full threat intelligence platform for enterprise SOC and IR teams.


  • Everything in Silver
  • TAXII 2.1 server access
  • Unlimited API calls
  • Unlimited analyst seats
  • SIEM/SOAR integration (Splunk, Elastic, Syslog)
  • Firewall EDL feeds (PAN, FortiGate, Check Point, Cisco)
  • Campaign tracking & clustering
  • Raw event & session access
  • Embeddable attack map widget
  • Dedicated account manager
  • Custom integrations support

Enterprise

For organizations requiring custom deployments, dedicated infrastructure, SLA guarantees, or specialized intelligence requirements. Contact our team for a tailored solution.

Dedicated sensor deployment Custom protocol coverage SLA guarantee (99.9%+) On-premise delivery option Professional services & training Volume licensing
Contact Enterprise Sales

Detailed Feature Comparison

A complete breakdown of what's included in each subscription tier.

Feature Bronze Silver Gold
Threat Intelligence
IOC Feed Daily batch Real-time Real-time
IOC Types IP + Hash IP + Hash + URL + Domain All types
Confidence Scoring
GeoIP Enrichment
Tool Fingerprinting Basic Full (60+ tools) Full (60+ tools)
Analytics & MITRE ATT&CK
MITRE ATT&CK Mapping
TTP Heatmap
AI Threat Summaries
Campaign Detection
Behavioral Biometrics
Anomaly Detection
Standards & Export
STIX 2.1 Export
TAXII 2.1 Server
CSV/JSON Export
Custom Reports Daily + Weekly Daily + Weekly + Monthly + Custom All + AI Summary
Integrations
REST API 1,000 calls/day 10,000 calls/day Unlimited
SIEM (Splunk, Elastic, Syslog)
SOAR (TheHive, XSOAR, Webhook)
Firewall EDL (PAN, FortiGate, CP, Cisco)
Attack Map Widget
Dashboard & Access
SOC Dashboard Full Full Full + AI
Session Deep-Dive Limited
Analyst Seats 5 15 Unlimited
Support
Support Level Email Priority Email Dedicated Manager
SLA 48h response 24h response 4h response
Onboarding Self-serve Guided setup White-glove onboarding

Frequently Asked Questions

Yes. You can upgrade instantly and the price difference is prorated. Downgrades take effect at the start of your next billing cycle. No lock-in contracts — cancel anytime.
No. ArmoPot is a fully managed service. We deploy and operate all 2,000+ sensors across our global infrastructure. You simply consume the threat intelligence — via API, STIX/TAXII feeds, dashboard, or direct SIEM integration.
IOCs are available in multiple formats: JSON via REST API, STIX 2.1 bundles, TAXII 2.1 server feeds, CSV/JSON exports, EDL plain text for firewalls, and Syslog (CEF/LEEF/JSON) for SIEMs. The delivery method depends on your subscription tier.
ArmoPot generates original, first-party intelligence from our own sensor network — not aggregated from public sources. Every IOC includes full attack context: the protocol used, credentials attempted, tools detected, MITRE ATT&CK TTPs, and an AI-derived confidence score. This depth of context is not available from community aggregators.
Yes. Annual billing saves 20% (equivalent to 2.4 months free). Contact our sales team for annual pricing and multi-year agreements.
Gold plans include unlimited API calls with fair use. For extremely high-volume automation (10,000+ calls per minute), we recommend our Enterprise tier which includes dedicated API infrastructure and guaranteed throughput.
Absolutely. Request a demo and our team will provide a personalized walkthrough of the SOC dashboard, threat feeds, and integration capabilities. We also offer a 14-day trial of the Silver tier for qualified organizations.

Ready to Get Started?

Choose a plan that fits your team or request a personalized demo to see ArmoPot in action.