🚀Features and Pricing Plans

Talsec's Multi-Layered App and API Protection Model

Talsec offers enhanced features and benefits with our RASP+ plans, building on top of our freeRASP offering. Here’s what you can expect:

  • No limitations of freeRASP's Fair Usage Policy: Have an unrestricted number of app downloads* (beyond the 100k cap of freeRASP).

  • No Data Collection to Talsec Database: Your app's data is sent to your data collection services. You can even disable data collection.

  • FinTech Grade Security: Experience advanced security features and service-level agreements (SLAs) tailored for the financial technology sector.

  • Bypass Protection: RASP+ offers enhanced security with app-specific SDK customisation, while freeRASP uses a universal binary that is more susceptible to bypass.

  • Enhanced API Protection: Safeguard your APIs and benefit from risk scoring with our proprietary technology, AppiCrypt®.

For further details, please refer to the next page.

AppiCrypt®

One of the most valued commercial features is AppiCrypt® - App Integrity Cryptogram.

It allows easy-to-implement API protection and App Integrity verification on the backend to prevent API abuse:

  • Bruteforce attacks

  • Botnets

  • API abuse by App impersonation

  • Session-hijacking

  • DDoS

It is a unified solution that works across all mobile platforms without dependency on external web services (i.e., without extra latency, an additional point of failure, and maintenance costs).

Learn more about commercial features at talsec.app.

Plans Comparison

freeRASP is freemium software, i.e. there is a Fair Usage Policy (FUP) that imposes some limitations on free usage.

Get your price for premium products.

freeRASP
RASP+ Starter
Full App Safety Suite Starter
Full App Safety Suite Business

Best fit for

Low value apps and educational purpose

Try RASP+ and perform Penetration testing

Try advanced resilience and protection of App and APIs

Production usage

App Shielding SDK

freeRASP SDK is a free, easy-to-integrate runtime threat detection solution for small businesses and projects, supporting up to 100,000 device downloads. It helps you quickly grasp the main features, experiment, and try integrating Talsec SDKs. While it is a good threat detection tool, freeRASP’s limited resilience against bypasses and limited telemetry data collection make it unsuitable for commercial use in production, especially in regulated or privacy-sensitive domains.

RASP+ SDK delivers banking-grade security designed for professional, regulated, or high-risk apps needing maximum hardening. RASP+ is built to pass rigorous penetration tests, ensuring real-time detection and mitigation of attacks.

It guarantees compliance and robust defense.

RASP+ SDK delivers banking-grade security designed for professional, regulated, or high-risk apps needing maximum hardening. Its customizable SDKs include advanced threat prevention like AppiCrypt for API and Transaction Integrity protection. ✅ RASP+ is built to pass rigorous penetration tests, ensuring real-time detection and mitigation of attacks. It guarantees compliance and robust defense.

RASP+ SDK delivers banking-grade security designed for professional, regulated, or high-risk apps needing maximum hardening. Its customizable SDKs include advanced threat prevention like AppiCrypt for API and Transaction Integrity protection. RASP+ is built to pass rigorous penetration tests, ensuring real-time detection and mitigation of attacks. With strict privacy (no data sent to Talsec) ✅, it guarantees compliance and robust defense.

Resilience to Reverse Engineering and bypass

limited

advanced ✅

advanced ✅

advanced ✅

SDK obfuscation

limited (same for all users)

advanced (individual per build) ✅

advanced (individual per build) ✅

advanced (individual per build) ✅

Root & jailbreak protections

  • su, Magisk, Dopamine, KernelSU, HideMyApplist, Shamiko

basic

advanced ✅

advanced ✅

advanced ✅

Runtime reverse engineering controls

  • Debugger

  • Emulator / Simulator

  • Hooking and reversing frameworks (e.g. Frida, Magisk, XPosed, Cydia Substrate and more)

basic

advanced ✅

advanced ✅

advanced ✅

Runtime integrity controls

  • Tampering protection

  • Repackaging / Cloning protection

  • Device binding protection

  • Unofficial store detection

basic

advanced ✅

advanced ✅

advanced ✅

Device OS security status check

  • HW security module

  • Screen lock

  • Google Play Services availability

  • Huawei Mobile Services availability

  • Last security patch update

  • System VPN

  • Developer mode, ADB

yes

yes

yes

yes

Anti-Spoofing & Misuse detection

  • Unsecure WiFi Detection

  • Location Spoofing

  • Time Spoofing

  • Multi-instance detection

yes

yes

yes

yes

Screen Capture protection

  • Block Screen Capture, Mirroring, Sharing

  • Detect Screenshot, Screen Recording

yes

yes

yes

yes

UI protection

  • Overlay protection

  • Accessibility services misuse protection

no

yes ✅

yes ✅

yes ✅

Penetration Test Ready

can be bypassed by professional

designed to sustain pentesting ✅

designed to sustain pentesting ✅

designed to sustain pentesting ✅

App Hardening Suite

Secret Vault for Strings Protection

  • Protect secrets in your code, third-party API keys, tokens, encryption keys, config files

  • On-the-fly key provisioning and rotation

no

no

yes ✅

yes ✅

Dynamic TLS Certificate Pinning

  • Strong MitM and DNS spoofing protection

  • Decoupled certificate and app lifecycle

  • Pins never stored in app

no

no

yes ✅

yes ✅

AppiCrypt® - App Integrity Cryptogram

AppiCrypt® for Mobile

  • API protection and anti-API abuse

  • Transactions authenticity and integrity verification

  • Device Risk Scoring

  • RASP advanced anti-bypass

no

no

yes ✅

yes ✅

AppiCrypt® for Web

  • API protection and anti-API abuse

  • Transactions authenticity and integrity verification

  • Browser-based Apps protection using WebAssembly

  • Anti-bot and sesion hijacking

  • Anti-web scraping

no

no

no

yes ✅

Malware Detection

  • Detection of apps installed from untrusted stores or side-loaded

  • Detection of apps with suspicious permissions granted

  • Detection of risky apps

  • Detection of dangerous apps

no

advanced Malware Detection

advanced Malware Detection

App Security Monitoring and Logging

Threat events data collection

mandatory collection to Talsec services

mandatory collection to Talsec services

mandatory collection to Talsec services

optional and customizable logs destination ✅

App and threats data monitoring portal and Dashboard

limited functionality, no raw data access

full functionality with access to raw data search ✅

full functionality with access to raw data search ✅

full functionality with access to raw data search ✅

Self-care portal for the SDK configuration

no

yes ✅

yes ✅

yes ✅

Support and Maintenance

SLA and maintenance updates

not committed

yes ✅

yes ✅

yes (advanced variants) 🏆✅

Fair Usage Policy - up to 100K Devices

Total apps downloads limit

up to 100K Devices (premium upgrade required for more)

up to 10K

up to 10K

100K+ Devices 🚀

End-users' threats data collection and processing by Talsec

mandatory

mandatory

mandatory

optional and customizable logs destination ✅


For additional comparison details and information on planned features, please see the next page.

Last updated