🚀Features and Pricing Plans
Talsec's Multi-Layered App and API Protection Model
L0 - Detect Attacks: Check app security state with freeRASP & Talsec Portal insights
L1 - Protect App: Pass pentests, combat reverse engineering, and comply with regulations with RASP+ and AppHardening (Secret Vault, Dynamic TLS Pinning)
L2 - Protect Transactions: Combat API abuse, bots, web-scraping and MiTM with AppiCrypt
L3 - Protect Users: Combat social engineering, phishing, malware with Device Risk Scoring and Malware Detection
Talsec offers enhanced features and benefits with our RASP+ plans, building on top of our freeRASP offering. Here’s what you can expect:
No limitations of freeRASP's Fair Usage Policy: Have an unrestricted number of app downloads* (beyond the 100k cap of freeRASP).
No Data Collection to Talsec Database: Your app's data is sent to your data collection services. You can even disable data collection.
FinTech Grade Security: Experience advanced security features and service-level agreements (SLAs) tailored for the financial technology sector.
Bypass Protection: RASP+ offers enhanced security with app-specific SDK customisation, while freeRASP uses a universal binary that is more susceptible to bypass.
Enhanced API Protection: Safeguard your APIs and benefit from risk scoring with our proprietary technology, AppiCrypt®.
For further details, please refer to the next page.
AppiCrypt®
One of the most valued commercial features is AppiCrypt® - App Integrity Cryptogram.
It allows easy-to-implement API protection and App Integrity verification on the backend to prevent API abuse:
Bruteforce attacks
Botnets
API abuse by App impersonation
Session-hijacking
DDoS
It is a unified solution that works across all mobile platforms without dependency on external web services (i.e., without extra latency, an additional point of failure, and maintenance costs).
Learn more about commercial features at talsec.app.
You can try freeRASP and then upgrade easily to an enterprise service.
Plans Comparison
freeRASP is freemium software, i.e. there is a Fair Usage Policy (FUP) that imposes some limitations on free usage.
Get your price for premium products.
Best fit for
Low value apps and educational purpose
Try RASP+ and perform Penetration testing
Try advanced resilience and protection of App and APIs
Production usage
App Shielding SDK
freeRASP SDK is a free, easy-to-integrate runtime threat detection solution for small businesses and projects, supporting up to 100,000 device downloads. It helps you quickly grasp the main features, experiment, and try integrating Talsec SDKs. While it is a good threat detection tool, freeRASP’s limited resilience against bypasses and limited telemetry data collection make it unsuitable for commercial use in production, especially in regulated or privacy-sensitive domains.
RASP+ SDK delivers banking-grade security designed for professional, regulated, or high-risk apps needing maximum hardening. RASP+ is built to pass rigorous penetration tests, ensuring real-time detection and mitigation of attacks.
It guarantees compliance and robust defense.
RASP+ SDK delivers banking-grade security designed for professional, regulated, or high-risk apps needing maximum hardening. Its customizable SDKs include advanced threat prevention like AppiCrypt for API and Transaction Integrity protection. ✅ RASP+ is built to pass rigorous penetration tests, ensuring real-time detection and mitigation of attacks. It guarantees compliance and robust defense.
RASP+ SDK delivers banking-grade security designed for professional, regulated, or high-risk apps needing maximum hardening. Its customizable SDKs include advanced threat prevention like AppiCrypt for API and Transaction Integrity protection. RASP+ is built to pass rigorous penetration tests, ensuring real-time detection and mitigation of attacks. With strict privacy (no data sent to Talsec) ✅, it guarantees compliance and robust defense.
Resilience to Reverse Engineering and bypass
limited
advanced ✅
advanced ✅
advanced ✅
SDK obfuscation
limited (same for all users)
advanced (individual per build) ✅
advanced (individual per build) ✅
advanced (individual per build) ✅
Root & jailbreak protections
su, Magisk, Dopamine, KernelSU, HideMyApplist, Shamiko
basic
advanced ✅
advanced ✅
advanced ✅
Runtime reverse engineering controls
Debugger
Emulator / Simulator
Hooking and reversing frameworks (e.g. Frida, Magisk, XPosed, Cydia Substrate and more)
basic
advanced ✅
advanced ✅
advanced ✅
Runtime integrity controls
Tampering protection
Repackaging / Cloning protection
Device binding protection
Unofficial store detection
basic
advanced ✅
advanced ✅
advanced ✅
Device OS security status check
HW security module
Screen lock
Google Play Services availability
Huawei Mobile Services availability
Last security patch update
System VPN
Developer mode, ADB
yes
yes
yes
yes
Anti-Spoofing & Misuse detection
Unsecure WiFi Detection
Location Spoofing
Time Spoofing
Multi-instance detection
yes
yes
yes
yes
Screen Capture protection
Block Screen Capture, Mirroring, Sharing
Detect Screenshot, Screen Recording
yes
yes
yes
yes
UI protection
Overlay protection
Accessibility services misuse protection
no
yes ✅
yes ✅
yes ✅
Penetration Test Ready
can be bypassed by professional
designed to sustain pentesting ✅
designed to sustain pentesting ✅
designed to sustain pentesting ✅
App Hardening Suite
Secret Vault for Strings Protection
Protect secrets in your code, third-party API keys, tokens, encryption keys, config files
On-the-fly key provisioning and rotation
no
no
yes ✅
yes ✅
Dynamic TLS Certificate Pinning
Strong MitM and DNS spoofing protection
Decoupled certificate and app lifecycle
Pins never stored in app
no
no
yes ✅
yes ✅
AppiCrypt® - App Integrity Cryptogram
API protection and anti-API abuse
Transactions authenticity and integrity verification
Device Risk Scoring
RASP advanced anti-bypass
no
no
yes ✅
yes ✅
API protection and anti-API abuse
Transactions authenticity and integrity verification
Browser-based Apps protection using WebAssembly
Anti-bot and sesion hijacking
Anti-web scraping
no
no
no
yes ✅
Malware Detection
Detection of apps installed from untrusted stores or side-loaded
Detection of apps with suspicious permissions granted
Detection of risky apps
Detection of dangerous apps
basic (freeMalwareDetection)
no
advanced Malware Detection ✅
advanced Malware Detection ✅
App Security Monitoring and Logging
Threat events data collection
mandatory collection to Talsec services
mandatory collection to Talsec services
mandatory collection to Talsec services
optional and customizable logs destination ✅
App and threats data monitoring portal and Dashboard
limited functionality, no raw data access
full functionality with access to raw data search ✅
full functionality with access to raw data search ✅
full functionality with access to raw data search ✅
Self-care portal for the SDK configuration
no
yes ✅
yes ✅
yes ✅
Support and Maintenance
SLA and maintenance updates
not committed
yes ✅
yes ✅
yes (advanced variants) 🏆✅
Total apps downloads limit
up to 100K Devices (premium upgrade required for more)
up to 10K
up to 10K
100K+ Devices 🚀
End-users' threats data collection and processing by Talsec
mandatory
mandatory
mandatory
optional and customizable logs destination ✅
For additional comparison details and information on planned features, please see the next page.
Last updated

