Cost & commitment
Pricing model
$497 one-time, perpetual license
Subscription · typically per-user / per-capacity · sales-led · no public pricing
Renewals
None — the binary is yours
Annual renewal · subject to repricing
Cost as you grow
Flat · unlimited users & scans
Scales with users / data volume monitored
Procurement
Credit card · Stripe checkout
RFP, MSA, security review, services SOW
Deployment & data flow
Architecture
Single signed binary · no agent · no daemon
Collectors feeding a central server (self-hosted or SaaS)
Anything to run permanently
No · run it, delete it, done
Yes · collectors and server ingest activity continuously
Where data is processed
On the machine running the scan
Collectors pull metadata, permissions, and event logs to the server
Air-gapped capable
Yes · 0 B outbound during scan
Self-hosted option exists; built to centralize data continuously
Time to first answer
Under a minute
Deployment + baselining before insights are meaningful
Remote machine workflow
scp binary · ssh · TUI
Deploy collector · connect data source to server
Discovery coverage
File scanning
PDFs (with OCR), Office, CSV, archives
Broad file & document coverage
Network shares (SMB / NFS)
Yes
Yes · a core monitored surface
SQL databases
Postgres / MySQL / SQL Server · sampled in memory
Database coverage via connectors
SharePoint / M365 / Exchange / AD
Not yet · use database / export workflows
Yes · deep coverage, a core strength
Detection approach
Regex + NER (en_core_web_lg) · 30+ PII types
Classification engine + policy rules
Access governance & monitoring
Who can access the data (permissions mapping)
No · finds where data is, not who can reach it
Yes · core product
Who is accessing the data (activity auditing)
No
Yes · continuous access-event auditing
Threat detection / UEBA (ransomware, insider)
No
Yes · behavioral alerting & investigations
Automated least-privilege remediation
No · reports findings, you act on them
Yes · revoke excess / stale access
Continuous monitoring
Re-run on demand or via your own scheduler
Yes · always-on, with dashboards
Operations & integration
CI/CD integration
CLI emits JSON / CSV · --exit-code-on flag fails builds
Possible via API; not the primary motion
Compliance reports (GDPR, HIPAA, PCI)
CSV / JSON exports out of the box
Prebuilt dashboards & access reporting
Support
Email · fast · founder-led
Account manager · services org · enterprise SLAs
Trust
Source of compliance evidence
Verifiable on your own host (tcpdump the binary)
Vendor attestations · SOC2 reports · trust portal
If the vendor goes away
Binary keeps working forever
Monitoring and platform access end at contract termination
Comparisons reflect publicly available information about Varonis as of September 2026, plus our own product. Varonis is a registered trademark of Varonis Systems, Inc. PII Crawler is not affiliated with Varonis Systems, Inc.