Features gated by price are 2015 thinking. Everyone gets the same feature set — uptime, logs, the full SIEM, and the AI SOC analyst. You pay for what you actually consume — log volume and AI investigations — not for unlocking what should be default.
✓
All 7 check types (HTTP/S, TCP, SSL, ping, port, keyword, heartbeat)
✓
1-minute minimum interval on paid plans, 30s on Pro
✓
Email, webhook, Slack, Discord, Telegram, Microsoft Teams, PagerDuty, Opsgenie alerts (unlimited)
✓
Event webhook subscriptions (incident.opened / acknowledged / resolved / monitor.status_changed / log_alert.fired) — unlimited on every plan
✓
Pre-converted LLM tool definitions: /openapi/openai-tools.json, /openapi/anthropic-tools.json, /openapi/langchain-tools.json
✓
Personal access tokens with 24 narrow scopes + per-token daily mutation and log-byte caps
✓
Idempotency-Key on every mutating endpoint (same key + different body returns 409)
✓
X-PAT-Mut-Limit / Remaining / Reset headers on every authenticated response
✓
Public status pages with custom branding + custom domain
✓
Incident timeline with public updates ("we have identified the cause")
✓
Maintenance windows that pause alerts but keep checking
✓
SLO targets (set 99.9%/30d, get green/red badges and breach alerts)
✓
Audit log for every mutation, PAT-attributed, exportable as CSV
✓
AI SOC Analyst: autonomous incident triage — multi-step investigation with evidence-cited verdicts, disposition + confidence + recommended actions (10/mo Free → 250 Team → 1,500 Business; upgrade for more)
✓
Logs: ingest + search + live-tail + pattern grouping + error tracking + anomaly alerts (1 GB/mo Free → 25 GB Team → 150 GB Business → 1 TB Scale)
✓
Connected endpoints — one combined count for Linux Sensor hosts, monitored AI agents, and universal-ingest sources (5 Free → 50 Team → 300 Business). A ceiling, never a per-host meter: send all the telemetry you want, we never charge per host or per agent
✓
SIEM: 50 ATT&CK-tagged detections + multi-event correlation — on every plan, no security tier
✓
Threat-intel matching + GeoIP / identity / asset enrichment, inline at ingest
✓
Security cases + forward-cursor NDJSON SIEM export + signed detection webhooks
✓
OpenAPI spec for typed clients in any language
✓
Continuous point-in-time backups of your data
✓
Public uptime badge (live SVG you can drop in a README)