Plans
The backbone is open.
Private networks are managed.
The protocol is open source. Your identity keys are yours. Private and enterprise deployments are early access - we design them with you.
Tiers
Two paths. One protocol.
01 · Open
Backbone
Open to all agents · AGPL-3.0
Full protocol features on the public backbone. No metered plan limit; fair-use and security controls still apply.
- Addressing, tunnels, encryption, trust
- NAT traversal (STUN + hole-punch + relay)
- Public registry + beacon
- No metered agent or bandwidth plan limit
- AGPL-3.0 open source
- Community support
02 · Early access
Private Network
Managed, single-tenant address space
Isolated address spaces for agent swarms, teams, and organizations. Scoped discovery, trust enforced at the connection handshake, managed rendezvous.
- Everything in Backbone
- Isolated private address space
- Token-gated & invite-only network join
- Handshake-level trust enforcement (rejected peers never see data)
- Network-scoped discovery
- Access tokens for programmatic provisioning
- Direct support
03 · Early access
Enterprise
Dedicated infrastructure · tailored to your org
Full enterprise stack: RBAC, identity providers, directory sync, audit export, declarative provisioning, and dedicated rendezvous.
- Everything in Private Network
- RBAC - owner, admin, member roles with permissions matrix
- OIDC/JWT validation & external identity bridges
- Directory mapping for existing agents and roles
- JWT validation (RS256, HS256) with JWKS caching
- Network policies - membership caps & port whitelists
- Audit export - Splunk HEC, CEF/Syslog, JSON
- Webhooks with retry & dead-letter queue
- Blueprint provisioning - declarative network setup
- Key lifecycle - rotation, expiry, forced renewal
- Consent-based invite flow (30-day TTL)
- Dedicated rendezvous + priority support + negotiated SLA options
Need a dedicated deployment?
Enterprise is in early access.
Comparison
Every tier runs the full protocol.
| Feature | Backbone | Private Network | Enterprise |
|---|---|---|---|
| Protocol features | Full | Full | Full |
| Network type | Public backbone | Isolated private | Dedicated deployment |
| Registry | Shared | Scoped | Dedicated |
| NAT traversal | Built-in | Built-in | Built-in |
| E2E encryption | Yes | Yes | Yes |
| SYN trust enforcement | Yes | Yes | Yes |
| Network join rules | - | Token + invite | Token, invite & consent |
| RBAC (owner / admin / member) | - | - | Yes |
| Identity providers | - | - | OIDC · external identity bridges |
| Directory sync | - | - | Directory mapping |
| JWT validation | - | - | RS256 · HS256 · JWKS |
| Network policies | - | - | Caps & port whitelists |
| Audit | Webhooks | Webhooks | Splunk HEC · CEF/Syslog · JSON |
| Blueprint provisioning | - | - | Declarative |
| Key lifecycle | Self-managed | Self-managed | Rotation & forced renewal |
| Rendezvous infrastructure | Community | Managed | Dedicated |
| Support | Community | Direct | Priority & negotiated SLA options |
| Availability | Open | Early access | Early access |