🚀Features and Pricing Plans

Talsec's Multi-Layered App and API Protection Model

Talsec offers enhanced features and benefits with our RASP+ plans, building on top of our freeRASP offering. Here’s what you can expect:

  • No limitations of freeRASP's Fair Usage Policy: Have an unrestricted number of app downloads* (beyond the 100k cap of freeRASP).

  • No Data Collection to Talsec Database: Your app's data is sent to your data collection services. You can even disable data collection.

  • FinTech Grade Security: Experience advanced security features and service-level agreements (SLAs) tailored for the financial technology sector.

  • Bypass Protection: RASP+ offers enhanced security with app-specific SDK customisation, while freeRASP uses a universal binary that is more susceptible to bypass.

  • Enhanced API Protection: Safeguard your APIs and benefit from risk scoring with our proprietary technology, AppiCrypt®.

For further details, please refer to the next page.

AppiCrypt®

One of the most valued commercial features is AppiCrypt® - App Integrity Cryptogram.

It allows easy-to-implement API protection and App Integrity verification on the backend to prevent API abuse:

  • Bruteforce attacks

  • Botnets

  • API abuse by App impersonation

  • Session-hijacking

  • DDoS

It is a unified solution that works across all mobile platforms without dependency on external web services (i.e., without extra latency, an additional point of failure, and maintenance costs).

Learn more about commercial features at talsec.app.

Plans Comparison

freeRASP is freemium software, i.e. there is a Fair Usage Policy (FUP) that imposes some limitations on free usage.

Get your price for premium products.

freeRASP
RASP+ Starter
Full App Safety Suite Starter
RASP+

Best fit for

Low value apps and educational purpose

Try RASP+ and perform Penetration testing

Try advanced resilience and protection of App and APIs

Production usage

App Shielding SDK

freeRASP is a free, easy-to-integrate runtime threat detection solution for small businesses and projects, supporting up to 100,000 device downloads. It helps you quickly grasp the main features, experiment, and try integrating Talsec SDKs. While it is a good threat detection tool, freeRASP’s limited resilience against bypasses and limited telemetry data collection make it unsuitable for commercial use in production, especially in regulated or privacy-sensitive domains.

RASP+ delivers banking-grade security designed for professional, regulated, or high-risk apps needing maximum hardening. RASP+ is built to pass rigorous penetration tests, ensuring real-time detection and mitigation of attacks.

It guarantees compliance and robust defense.

RASP+ delivers banking-grade security designed for professional, regulated, or high-risk apps needing maximum hardening. Its customizable SDKs include advanced threat prevention like AppiCrypt for API and Transaction Integrity protection. RASP+ is built to pass rigorous penetration tests, ensuring real-time detection and mitigation of attacks. It guarantees compliance and robust defense.

RASP+ delivers banking-grade security designed for professional, regulated, or high-risk apps needing maximum hardening. Its customizable SDKs include advanced threat prevention like AppiCrypt for API and Transaction Integrity protection. RASP+ is built to pass rigorous penetration tests, ensuring real-time detection and mitigation of attacks. With strict privacy (no data sent to Talsec), it guarantees compliance and robust defense.

limited

advanced

advanced

advanced

limited (same for all users)

advanced (individual per build)

advanced (individual per build)

advanced (individual per build)

Advanced root/jailbreak protections

basic

advanced

advanced

advanced

Runtime reverse engineering controls

  • Debugger

  • Emulator / Simulator

  • Hooking and reversing frameworks (e.g. Frida, Magisk, XPosed, Cydia Substrate and more)

basic

advanced

advanced

advanced

Runtime integrity controls

  • Tampering protection

  • Repackaging / Cloning protection

  • Device binding protection

  • Unofficial store detection

  • Multi-instance detection

basic

advanced

advanced

advanced

Device OS security status check

  • HW security module control

  • Screen lock control

  • Google Play Services enabled/disabled

  • Last security patch update

  • System VPN control

  • Developer mode control

  • ADB enabled detection

yes

yes

yes

yes

Screen Capture

  • Screen capture protection

  • Screenshot detection

  • Screen recording cetection

yes

yes

yes

yes

UI protection

  • Overlay protection

  • Accessibility services misuse protection

no

yes

yes

yes

Penetration Test Ready

can be bypassed by professional

designed to sustain pentesting

designed to sustain pentesting

designed to sustain pentesting

Security hardening suite

no

no

yes

yes

AppiCrypt® - App Integrity Cryptogram

API protection by mobile client integrity check, online risk scoring, online fraud prevention, client App integrity check. The cryptographic proof of app & device integrity.

no

no

yes

yes

Security events data collection, Auditing and Monitoring tools

Mandatory threat event data collection and sharing with Talsec

yes (collected to Talsec's DB)

yes (collected to Talsec's DB)

yes (collected to Talsec's DB)

no

Fully customizable and customer-controlled data collection

no

no

no

yes

UI portal for Logging, Data analytics, and Auditing

Talsec servers

Talsec servers

Talsec servers

Customer managed

Support and Maintenance

SLA

not committed

yes

yes

yes (advanced variants)

Maintenance updates

not committed

yes

Fair Usage Policy - up to 100k Devices

Total app downloads limit

Up to 100k Devices (premium upgrade required for more)

Up to 10K

Up to 10K

100k+ Devices

Mandatory threat event data collection and sharing with Talsec

yes

yes

yes

no


For additional comparison details and information on planned features, please see the next page.

Last updated