PrivacyPal Max · Governance for the whole company

The governance layer for your whole company

Twenty people or two thousand, the install is the same and it takes an afternoon. Everything in Pro, plus the company layer: IP Protection that learns what's sensitive in Salesforce, Slack, Notion, SQL, Workday and more, Governance Policies that travel with every employee and hold inside Claude Code, Microsoft Copilot, Hermes Agent & Private MCP, Private Memory your organization owns, and shadow-AI discovery across every seat.

$30per seat / mo · billed annually $34per seat / mo · monthly Volume pricing to $17size your rollout Domain accounts · no infrastructure · everything in Pro Paid from day one · Pro is free for individuals
Who runs Max

Same plan at 20 people, 200 and 2,000

Max is not a plan you graduate into. It is the plan the moment a second person on your domain needs covering, and it stays the plan as you grow. What changes is the seat price, not the product. There is no trial mode: Max is the full paid product from the first seat, and the free way to feel the engine first is Pro.

20 people

You are the CEO and the security team

Everyone already uses ChatGPT and nobody wrote a policy. Attach your domain, send one installer, and the whole firm is governed by lunchtime. No infrastructure to stand up, no consultant, no security hire. $25 per seat a month at 10 to 99 seats, billed annually.

200 people

IT owns the laptops. The COO owns the risk.

Provision and de-provision from the domain account, push policy by department, and watch shadow AI surface in a dashboard instead of a breach report. Your biggest customer's security questionnaire gets a straight answer. $21 per seat a month at 100 to 999 seats.

2,000 people

Departments are already running agents

Roll out department by department or all at once. One policy plane holds across Claude Code, Copilot, every chat app and every MCP server, and your auditor gets evidence in one click. $17 per seat a month from 1,000 seats, 43% off the entry rate.

Max Privacy Core

Governance Policies on every device

Policies enforced on-device that reason about privacy, intent and risk in real time: out of the box, custom-built, or from the marketplace.

Intent Detection Prompt Injection Guard Legal Enrichment Financial Enrichment Marketplace Agent Custom Agent
IP Protection · exclusive to Max

IP Protection for the systems your company runs on

IP Protection starts where your most critical data lives. Max connects to those platforms and learns what's sensitive at the source (customer records, employee data, IP, secrets), so the moment it surfaces in any AI, in a prompt, a paste or an agent's tool call, it's intercepted before it leaves the device.

Salesforce

Salesforce

Accounts, contacts, pipeline and deal terms stay out of every prompt, even when your team puts AI to work on the CRM.

Customer data
Slack

Slack

Channels are where secrets leak. Keys, credentials and internal chatter are recognized and protected everywhere AI reads or writes.

Secrets & comms
Workday

Workday

Compensation, reviews and personal employee records: governed wherever HR and managers put AI to work.

Employee data
Oracle

Oracle

ERP and financials (vendor terms, margins, forecasts): shielded from exfiltration across every AI surface your org touches.

Financials
Notion

Notion

Roadmaps, specs and internal wikis: your IP and know-how stay yours while your team drafts with AI on top of them.

IP & know-how
Google Drive

Google Drive

Contracts, board decks and shared files: classified at the source and protected the moment they meet a model.

Files & contracts
Protected across every AI Customer data Employee data IP & trade secrets Credentials & keys Financials & deals + SQL, Google Docs, Word & more
Everything in Pro, plus IP Protection: Salesforce, Slack, Notion, SQL & Workday Governance Policies Private Memory Shadow-AI discovery Claude Code, Copilot & Hermes Agent governance Private MCP
What's in Max · the framework

Four governance pillars for the whole company

Max keeps everything you love about Pro (Privacy Twins, real-time on-device interception, SSO) and adds the four things a company needs: IP Protection, Governance Policies, Private Memory and shadow-AI discovery. Together they turn whoever owns risk in your company, the CISO, the COO or the founder, from blocker into enabler.

01 · IP Protection

Your secrets and IP, protected at the source

Max connects to Salesforce, Slack, Notion, SQL, Workday and more, and learns what is sensitive where it actually lives: customer records, employee data, deal terms, credentials, know-how. The moment any of it surfaces in a prompt, a paste or an agent's tool call, it is intercepted before it leaves the device.

02 · Governance Policies

One policy plane. Every prompt. Every agent.

Define what your company can do with AI and enforce it on-device. Block models, gate access behind training paths, intercept and steer prompts, redact at the wire. The same policies hold inside Claude Code, Microsoft Copilot, ChatGPT, Gemini, Grok and Hermes Agent, governing what agents can read, write and send.

03 · Private Memory

One governed memory across every AI

What one teammate establishes in their AI, the whole team's AIs can know: in twin-space, under policy, with a full audit trail. Team and org scopes, fleet Memory Guard, and a Private MCP memory server so internal agents reach tools, data and org memory without anything leaking to a public host. Explore Private Memory.

04 · Shadow-AI discovery

Every AI your company touches, in a dashboard, not a breach report

Max turns every laptop into its own sensor: the first DSPM that lives on the endpoint discovers, classifies and continuously monitors sensitive IP, PII, PHI and PCI where it actually lives, and surfaces every unsanctioned AI tool before it becomes an incident. Prove it to your auditors with one click.

The main event · Governance Policies

The first AI-native policies protecting your interests

On-device. Autonomous. Purpose-built to reason about privacy, intent and risk in real time, across every AI your team touches. The policies ship out of the box, you build your own, or you pull from the marketplace. This is what policy management looks like when it's built for the AI OS instead of bolted onto a legacy stack.

Detection & authorization

Agent & prompt intent detection

Understand what an agent is actually trying to do before it does it. Authorize, alert or quietly redact based on intent, not just keywords.

Adversarial defense

Prompt injection prevention

Catch jailbreaks, tool-call hijacks and exfiltration patterns at the endpoint. The policy reasons about adversarial intent so your humans don't have to.

Vertical enrichment

Legal, Financial & domain agents

Drop in a Legal Agent that knows privilege, or a Financial Agent that knows MNPI. Agents bring vertical intelligence to every interaction, without retraining a model.

Build & marketplace

Bring your own, or pick from the shelf

Customize and ship your own policies, or enable privacy, security and governance policies from the marketplace. Enrich any AI conversation across Claude, ChatGPT, Gemini, Copilot, Grok, Perplexity, Hermes Agent and more.

Same governance. Every model. Every endpoint.

Governance Policies are enforced on-device, so the same rules apply whether your team is in Claude Code, ChatGPT, Gemini, Microsoft Copilot, Grok, Perplexity, Hermes Agent, or a custom MCP stack you built yesterday. Visibility and control of AI, regardless of which AI.

Claude Code Copilot ChatGPT Claude Gemini Grok Perplexity Hermes Agent MCP + any LLM
Day in the life

Governance, lived from the device out

01

A developer kicks off a Claude Code session on customer code

Agent governance recognizes the repo, the on-device DSPM knows the secrets and PII inside it, and Privacy Twins substitute customer identifiers before any prompt or tool call leaves the laptop. Claude Code keeps moving. Your IP stays put.

02

A sales engineer pastes a customer architecture into ChatGPT

Intent Detection recognizes the workflow, the Legal Agent flags an NDA clause, and Privacy Twins scrub vendor names, all before the request leaves the device. The CISO sees the event in the audit log. Nobody loses time.

03

Microsoft Copilot tries to summarize a finance folder

On-device DSPM has already classified the data as MNPI. Org-wide controls require Copilot users to be in the "client-facing" training cohort. Not enrolled? Blocked at the endpoint. Enrolled? Privacy Twins keep the names out. Either way: no exfiltration.

04

Finance wires up a Private MCP for the GL

Engineers, analysts and a custom Financial Agent all share the same internal context, without that context ever leaving the org. Same fluency. Zero exfiltration. Full audit.

Coverage · systems & agents

Ten surfaces. One governance plane.

Everything Pro protects, plus the agent surfaces where real work now happens. Max governs what every one of them can read, write and send off the device.

AI system / agent What Max governs Status
ChatGPTPrompts & uploads twinned in real time, web & desktopGoverned
ClaudePrompts & attachments twinned, web & desktopGoverned
GeminiPrompts & uploads twinned, web & desktopGoverned
Microsoft CopilotChat twinned; agent actions controlled at the device levelGoverned
GrokPrompts & uploads twinned on grok.com & Grok BotGoverned
PerplexityNewQuestions & attachments protected on perplexity.ai, on by defaultGoverned
Claude CodeRepo-aware agent governance: prompts & tool calls scrubbed before they leave the laptopGoverned · Max
Copilot agentsWhat agent actions can read, write & exfiltrate, enforced on-deviceGoverned · Max
Hermes AgentCovered via the Nous Portal & default Fireworks endpointsGoverned · Max
Private MCPInternal tools over MCP, without leaking connections to a public hostGoverned · Max
Volume pricing

Max gets cheaper per seat as the rollout grows

Four tiers, applied automatically at checkout and at renewal. Drag to your headcount and the numbers move with you.

Seat calculator

Move the slider. Watch the seat price fall.

Every Max seat carries the full governance plane: IP Protection, Governance Policies, Private Memory and shadow-AI discovery.

50 seats
Per seat $25/seat/mo PrivacyPal Max
Billed annually $15,000/yr Whole rollout, all seats
Your volume tier 10-99 seats 17% off the 1-9 seat rate
Annual plan saves $2,400/yr vs paying monthly
A company domain runs on Max, across every user on it. See every plan Past 5,000 seats? Talk to us
Max volume tier Annual · per seat / mo Monthly · per seat / mo Off the 1-9 rate
1-9 seatsSmall teams and pilots$30$34List price
10-99 seatsDepartments and growing firms$25$2917% annual15% monthly
100-999 seatsCompany-wide rollout$21$2630% annual24% monthly
1000+ seatsEvery employee, company-wide$17$2243% annual35% monthly
Pro vs Max

Pick the governance footprint that matches your scale

Max is a strict superset of Pro. Use Pro, free for individuals, when it is one person protecting themselves. Use Max, paid from day one, the moment it is the business that needs protecting: IP Protection at the source, Governance Policies across every device and agent, Private Memory your organization owns, and shadow-AI discovery on every seat on your domain. For a self-hosted, sovereign deployment in your own VPC, that is Cloud, our enterprise tier.

Capability Pro Max
Privacy Twins on-deviceReal-time interception across every AI app, web & desktopIncludedIncluded
PII, HIPAA, PCI & GDPR coverageIncludedIncluded
SSO supportIncludedIncluded
IP ProtectionSalesforce, Slack, Notion, SQL, Workday & more: your secrets & IP protected at the source–Max only
Shadow-AI discoveryFirst-of-its-kind on-device DSPM. Every staff device becomes a sensor–Max only
Agent governance · Claude Code, Copilot & Hermes AgentNative control across real on-device agents, not just chat–Max only
Private MCP–Max only
Governance PoliciesIntent detection, injection guard, vertical & custom policies; block models, require training, intercept–Max only
Private MemoryOne governed memory across every AI, held in twin-space–Max only
Agent marketplace–Max only
Account scopeWho the account belongs toOne individualThe whole company, 2 seats to 2,000
Company domain accounts & volume pricingMore than one user on a domain? The domain runs on Max–Max only
PricingAnnual billing on Max saves up to 23%FreeOne person · no credit card, ever$34 to $22/mo · $360 to $204/yrBy volume, see the tiers above · paid from day one
Our loan officers were pasting spreadsheets into ChatGPT every day to draft narratives. PrivacyPal made that safe overnight. We didn't have to change a single habit.
Managing Partner, 280-person wealth advisory
For the whole company

Cover every employee. Change nobody's workflow.

Attach your domain, push one installer, and the whole company is governed the same afternoon. Agents, copilots, edge models and on-device language models, all under one policy plane. From $30 per seat a month at 1 to 9 seats, falling to $17 at 1,000. The shift is here. Don't get lapped.