Pricing
Transparent pricing for enterprise-grade Keycloak security.
Free
€0
per year per organization
For evaluation & development
- Mini deployment mode
- Up to 10 requests/second
- Basic OIDC validation
- Request & Response validation
- File logging
- Community support
Starter
€2,500
per year per organization
For small teams
- Mini + Small deployment
- Up to 100 requests/second
- SAML validation
- Standard network isolation
- Audit logging & SIEM
- Email support
Business
€14,500
per year per organization
For companies with compliance requirements
- All deployment modes (incl. Full)
- Up to 5,000 requests/second
- Strong network isolation
- Prometheus metrics
- Compliance reporting (BSI, GDPR)
- Priority support (4h response)
Enterprise
Custom
For large organizations
- Everything in Business, plus:
- Unlimited requests/second
- HA clustering & failover
- Custom integrations (SIEM, etc.)
- On-premise deployment
- Dedicated support & SLA
Detailed Feature Comparison
| Feature | Free | Starter | Business |
|---|---|---|---|
| Deployment Modes | |||
| Mini (single binary) | ✓ | ✓ | ✓ |
| Small (2 processes) | - | ✓ | ✓ |
| Full (4 processes) | - | - | ✓ |
| Limits | |||
| ALG_CAPACITY (concurrent connections) | 5 | 50 | 500 |
| Requests per second | 10 | 100 | 5,000 |
| OIDC / OAuth2 | |||
| Grant type enforcement | ✓ | ✓ | ✓ |
| Scope validation | ✓ | ✓ | ✓ |
| Redirect URI validation | ✓ | ✓ | ✓ |
| PKCE enforcement | ✓ | ✓ | ✓ |
| State/nonce validation | ✓ | ✓ | ✓ |
| SAML Security | |||
| XXE prevention | - | ✓ | ✓ |
| Signature wrapping detection | - | ✓ | ✓ |
| Algorithm enforcement | - | ✓ | ✓ |
| Admin API Protection | |||
| Endpoint whitelist | ✓ | ✓ | ✓ |
| Master realm blocking | ✓ | ✓ | ✓ |
| Export prevention | ✓ | ✓ | ✓ |
| Bulk operation detection | - | ✓ | ✓ |
| Read-only mode | - | ✓ | ✓ |
| Token Response Validation | |||
| Algorithm enforcement | ✓ | ✓ | ✓ |
| Lifetime validation | ✓ | ✓ | ✓ |
| Claim leakage detection | - | ✓ | ✓ |
| Token size limits | - | ✓ | ✓ |
| Monitoring & Compliance | |||
| File logging | ✓ | ✓ | ✓ |
| Audit logging | - | ✓ | ✓ |
| SIEM integration | - | ✓ | ✓ |
| Prometheus metrics | - | - | ✓ |
| BSI/GDPR compliance reporting | - | - | ✓ |
| Support | |||
| Support level | Community | Priority (4h) | |