Pricing for private cloud, enclave, on-prem, and edge
Secure deployment pricing is based on deployment model, environments, runner footprint, data handling requirements, support model, and implementation scope.
Enterprise deployment packages are priced separately from standard cloud tiers. All figures below are custom, contact sales for a proposal aligned to your architecture review.
Cloud Enterprise
Custom
Dedicated enterprise controls on standard SaaS deployment, the fastest path for regulated teams starting with governed cloud execution.
- Enterprise SSO, RBAC, and audit logging
- Standard Zof Cloud deployment
- Fastest launch for cloud-native programs
- Upgrade path to private cloud or enclave
Private Cloud
Custom
Dedicated environment in a customer-approved region with stronger isolation and residency controls.
- Customer-dedicated infrastructure
- Customer-approved cloud and region
- Stronger isolation than multi-tenant SaaS
- Pairs with customer-controlled runners
Secure Enclave
Custom
Hybrid model for segmented networks: signed capsules, enclave gateway, local runners, and local evidence store.
- Signed test capsules and gateway
- Local edge runner execution
- Local evidence store with optional approved egress
- Architecture and security review included
On-Prem
Custom
Customer-managed control plane for strict residency, air-gapped, or limited-connectivity requirements.
- Control plane in your data center
- Offline and limited-connectivity support
- Enterprise implementation services available
- Dedicated support tiers
Edge Runner Add-on
Custom
Distributed local validation priced by runner, site, and environment footprint.
- Add-on to any enterprise deployment model
- Branch, factory, and edge site execution
- Local reports without central data exposure
- Scaled during architecture review
Deployment pricing depends on operating model
Commercial scope follows how you place intelligence, control, and execution, not feature gates on agents.
- Number of applications and environments
- Agent run volume and scheduling complexity
- Deployment model: cloud, private cloud, enclave, on-prem
- Compliance and evidence handling requirements
- Support tier and SLA expectations
Cloud vs private cloud vs on-prem vs enclave
Each model changes connectivity, isolation, and implementation effort, reflected in custom packaging.
- Cloud Enterprise: fastest start, standard connectivity
- Private Cloud: dedicated tenancy and residency
- Secure Enclave: gateway, runners, local evidence
- On-Prem: customer-managed control plane
- Edge add-on: distributed runner footprint
Edge runner pricing
Priced by runner count, sites, and environments, not by individual test types.
- Per-runner or per-site licensing
- Gateway instances where required
- Bundled with enclave or on-prem programs
- Pilot bundles for single-site proof
- Contact sales for footprint-based quote
Implementation services
On-prem and enclave deployments include deployment planning, security validation, and rollout support.
- Architecture and data-flow workshops
- Runner and gateway installation guidance
- Integration with SSO, PAM, and CI/CD
- Pilot design and success criteria
- Optional managed rollout phases
Support and SLA
Enterprise support tiers align to deployment complexity and operational criticality.
- Dedicated customer success and technical contacts
- Defined response times by severity
- Custom SLA options for production deployments
- Security review support for procurement
- Controlled update and maintenance windows
Security review package
Materials for vendor risk, architecture review, and board-level summaries.
- Secure Deployment Review Checklist
- Reference architecture diagrams
- Data flow and egress documentation
- Runner signing and PAM integration overview
- Request pricing after architecture briefing
Plan your deployment with Zof
Walk through architecture, evidence controls, and a conservative pilot path with our deployment specialists.
