diff --git a/handbook/company/pricing-features-table.yml b/handbook/company/pricing-features-table.yml index 0cfe2036d2..ac66acd8f0 100644 --- a/handbook/company/pricing-features-table.yml +++ b/handbook/company/pricing-features-table.yml @@ -336,6 +336,169 @@ description: Install osquery extensions over the air. # (GitOptional) moreInfoUrl: https://github.com/trailofbits/osquery-extensions/blob/3df2b72ad78549e25344c79dbc9bce6808c4d92a/README.md#extensions tier: Premium +- categoryName: Device management + features: + - industryName: Interactive MDM migration # « end-user initiated MDM migration, with interactive UI + tier: Premium + usualDepartment: IT + productCategories: [Device management] + - industryName: Remotely enforce OS settings + tier: Free + usualDepartment: IT + waysToUse: + - description: Deploy configuration profiles on macOS and verify that they're installed. Windows coming soon (2023-12-31). + moreInfoUrl: https://github.com/fleetdm/fleet/issues/13281 + - description: Deploy custom declaration (DDM) profiles on macOS. Coming soon (2024-03-31). + moreInfoUrl: https://github.com/fleetdm/fleet/issues/14550 + - description: Target profiles to specific hosts using SQL. Coming soon (2023-12-31) + moreInfoUrl: https://github.com/fleetdm/fleet/issues/14715 + - description: Automatically re-deploy configuration profiles on macOS they're not installed. + productCategories: [Device management] + - industryName: Self service + description: Provide resolution instructions for end users through Fleet Desktop that suggest how an end user can fix a posture issue themselves. + tier: Premium + usualDepartment: IT + productCategories: [Device management] + - industryName: User-initiated enrollment of macOS computers + tier: Free + usualDepartment: IT + productCategories: [Device management] + - industryName: Low-level MDM commands for macOS and Windows (e.g. remote restart) + tier: Free + usualDepartment: IT + productCategories: [Device management] + - industryName: Native macOS update reminders + tier: Free + usualDepartment: IT + productCategories: [Device management] + - industryName: Zero-touch setup for macOS computers + tier: Premium + usualDepartment: IT + productCategories: [Device management] + waysToUse: + - description: Ship a macOS workstation to the end users home and have them automatically enroll to Fleet during out-of-the-box setup. + - description: Ship a Windows workstation to the end users home and have them automatically enroll to Fleet during out-of-the-box setup. Coming soon (2023-12-31) #Customer-preston + - description: Customize the out-of-the-box setup experience for your end users. + - description: Require end users to authenticate with your identity provider (IdP) and agree to an end user license agreement (EULA) before they can use their new workstation + - industryName: Enforce OS updates + tier: Premium + usualDepartment: IT + productCategories: [Device management,Vulnerability management] + waysToUse: + - description: Enforce macOS updates via Nudge. + - description: Automatically update Windows after the end user reaches a deadline. Coming soon (2023-12-31) #Customer-preston + - industryName: Encrypt macOS hard disks with FileVault + tier: Premium + usualDepartment: IT + productCategories: [Device management] + - industryName: Remotely lock and wipe macOS computers + tier: Premium + usualDepartment: IT + productCategories: [Device management] + - industryName: Install apps and packages on macOS and Windows computers. + description: + moreInfoUrl: https://github.com/fleetdm/fleet/issues/14921 + tier: Premium + comingSoonOn: 2023-12-31 #Customer-reedtimmer and customer-preston + usualDepartment: IT + productCategories: [Device management] + - industryName: Puppet module + friendlyName: Map macOS settings to computers with Puppet module + tier: Premium + usualDepartment: IT + productCategories: [Device management] +- categoryName: Vulnerability management + features: + - industryName: Detect vulnerable software #TODO: find a better industryName and make this the friendly name. Maybe separate out export. + tier: Free + usualDepartment: Security + productCategories: [Vulnerability management] + demos: + - description: A top gaming company wanted to replace Qualys for infrastructure vulnerability detection. + quote: So we have some stuff today through Qualys, but it's just not very good. A lot of it is...it's just really noisy. I'm trying to find out specifically, actually what packages are installed where, and then the ability to live query them. + moreInfoUrl: https://docs.google.com/document/d/1JWtRsW1FUTCkZEESJj9-CvXjLXK4219by-C6vvVVyBY/edit + waysToUse: + - description: Email relevant, actually-installed vulnerabilities to responsible teams so they can fix them. + moreInfoUrl: https://docs.google.com/document/d/1oeCmT077o_5nxzLhnxs7kcg_4Qn1Pn1F5zx10nQOAp8/edit + - description: Automate your response to new vulnerabilities + - industryName: Query performance monitoring + tier: Free + demos: + - description: A top software company needed to understand the performance impact of osquery queries before running them on all of their production Linux servers. + moreInfoUrl: https://docs.google.com/document/d/1WzMc8GJCRU6tTBb6gLsSTzFysqtXO8CtP2sXMPKgYSk/edit?disco=AAAA6xuVxGg + - description: A top software company wanted to detect regressions when adding/changing queries and fail builds if queries were too expensive. + moreInfoUrl: https://docs.google.com/document/d/1WzMc8GJCRU6tTBb6gLsSTzFysqtXO8CtP2sXMPKgYSk/edit?disco=AAAA6xuVxGg + waysToUse: + - description: Monitor performance for automated queries. + - description: Monitor performance for live queries. Coming soon (2024-01-26) #Customer-blanco + moreInfoUrl: https://github.com/fleetdm/fleet/issues/467 + - industryName: Detect and surface issues with devices (policies) + tier: Free + - industryName: Vulnerability dashboard + tier: Premium + comingSoonOn: 2024-03-31 + waysToUse: + - description: Only show vulnerabilities that you care about. Coming soon (2024-03-31) #Customer-faltona and customer-rialto + - industryName: Policy scoring + friendlyName: Mark policies as critical + tier: Premium + - industryName: Vulnerability scores (EPSS and CVSS) #TODO: Incorporate this perspective: https://github.com/fleetdm/confidential/issues/4120#issuecomment-1802350614 + tier: Premium + usualDepartment: Security + productCategories: [Vulnerability management] + - industryName: CISA KEVs (known exploited vulnerabilities) #TODO: Incorporate this perspective: https://github.com/fleetdm/confidential/issues/4120#issuecomment-1802350614 + tier: Premium + usualDepartment: Security + productCategories: [Vulnerability management] + - industryName: Patched version #Can be determined using description from National Vulnerability Database (NVD). Description tells you which versions are affected. + tier: Premium + usualDepartment: Security + productCategories: [Vulnerability management] +- categoryName: Support + features: + - industryName: Public issue tracker (GitHub) + tier: Free + - industryName: Community Slack channel + tier: Free + - industryName: Unlimited email support (confidential) + tier: Premium + - industryName: Phone and video call support + tier: Premium +- categoryName: Security and compliance + features: + - industryName: Single sign on (SSO, SAML) + tier: Free + - industryName: Disk encryption + friendlyName: Ensure hard disks are encrypted + description: Encrypt hard disks of macOS and Windows computers, manage escrowed encryption keys, and report on disk encryption status (FileVault, BitLocker). + tier: Free + waysToUse: + - description: Report on disk encryption status + - description: Encrypt hard disks on macOS with FileVault + - description: Escrow FileVault keys on macOS + - description: Encrypt hard disks on Windows with BitLocker. Coming soon (2023-12-31) #Customer-preston + - industryName: Audit queries and user activities + tier: Free + usualDepartment: Security + - industryName: Grant API-only access + tier: Free + - industryName: Programmable audit log + tier: Premium + usualDepartment: Security + waysToUse: + - description: Export activity of Fleet admins to your SIEM or data lake + - industryName: Just-in-time (JIT) provisioning + tier: Premium + - industryName: Automated user role sync via Okta, AD, or any IDP + tier: Premium + waysToUse: + - description: Automatically set admin access to Fleet based on your IDP + - industryName: Vanta integration + tier: Premium + - industryName: Trigger a workflow based on a failing policy + tier: Premium + - industryName: Role-based access control + tier: Premium - categoryName: Integrations features: # @@ -430,16 +593,6 @@ - description: (Torq) Build custom workflows that trigger in various situations. - description: (Zendesk) Automatically create Zendesk tickets in various situations. - description: (Custom IdP) Manage access to Fleet single sign-on (SSO) through any IdP (using SAML). -- categoryName: Support - features: - - industryName: Public issue tracker (GitHub) - tier: Free - - industryName: Community Slack channel - tier: Free - - industryName: Unlimited email support (confidential) - tier: Premium - - industryName: Phone and video call support - tier: Premium - categoryName: Deployment features: - industryName: Self-managed @@ -451,77 +604,6 @@ productCategories: [Endpoint operations] - industryName: Managed Cloud tier: Premium -- categoryName: Device management - features: - - industryName: Interactive MDM migration # « end-user initiated MDM migration, with interactive UI - tier: Premium - usualDepartment: IT - productCategories: [Device management] - - industryName: Remotely enforce OS settings - tier: Free - usualDepartment: IT - waysToUse: - - description: Deploy configuration profiles on macOS and verify that they're installed. Windows coming soon (2023-12-31). - moreInfoUrl: https://github.com/fleetdm/fleet/issues/13281 - - description: Deploy custom declaration (DDM) profiles on macOS. Coming soon (2024-03-31). - moreInfoUrl: https://github.com/fleetdm/fleet/issues/14550 - - description: Target profiles to specific hosts using SQL. Coming soon (2023-12-31) - moreInfoUrl: https://github.com/fleetdm/fleet/issues/14715 - - description: Automatically re-deploy configuration profiles on macOS they're not installed. - productCategories: [Device management] - - industryName: Self service - description: Provide resolution instructions for end users through Fleet Desktop that suggest how an end user can fix a posture issue themselves. - tier: Premium - usualDepartment: IT - productCategories: [Device management] - - industryName: User-initiated enrollment of macOS computers - tier: Free - usualDepartment: IT - productCategories: [Device management] - - industryName: Low-level MDM commands for macOS and Windows (e.g. remote restart) - tier: Free - usualDepartment: IT - productCategories: [Device management] - - industryName: Native macOS update reminders - tier: Free - usualDepartment: IT - productCategories: [Device management] - - industryName: Zero-touch setup for macOS computers - tier: Premium - usualDepartment: IT - productCategories: [Device management] - waysToUse: - - description: Ship a macOS workstation to the end users home and have them automatically enroll to Fleet during out-of-the-box setup. - - description: Ship a Windows workstation to the end users home and have them automatically enroll to Fleet during out-of-the-box setup. Coming soon (2023-12-31) #Customer-preston - - description: Customize the out-of-the-box setup experience for your end users. - - description: Require end users to authenticate with your identity provider (IdP) and agree to an end user license agreement (EULA) before they can use their new workstation - - industryName: Enforce OS updates - tier: Premium - usualDepartment: IT - productCategories: [Device management,Vulnerability management] - waysToUse: - - description: Enforce macOS updates via Nudge. - - description: Automatically update Windows after the end user reaches a deadline. Coming soon (2023-12-31) #Customer-preston - - industryName: Encrypt macOS hard disks with FileVault - tier: Premium - usualDepartment: IT - productCategories: [Device management] - - industryName: Remotely lock and wipe macOS computers - tier: Premium - usualDepartment: IT - productCategories: [Device management] - - industryName: Install apps and packages on macOS and Windows computers. - description: - moreInfoUrl: https://github.com/fleetdm/fleet/issues/14921 - tier: Premium - comingSoonOn: 2023-12-31 #Customer-reedtimmer and customer-preston - usualDepartment: IT - productCategories: [Device management] - - industryName: Puppet module - friendlyName: Map macOS settings to computers with Puppet module - tier: Premium - usualDepartment: IT - productCategories: [Device management] - categoryName: Inventory management features: - industryName: Software inventory @@ -572,88 +654,6 @@ - industryName: Scope transparency tier: Free documentationUrl: https://fleetdm.com/transparency -- categoryName: Security and compliance - features: - - industryName: Single sign on (SSO, SAML) - tier: Free - - industryName: Disk encryption - friendlyName: Ensure hard disks are encrypted - description: Encrypt hard disks of macOS and Windows computers, manage escrowed encryption keys, and report on disk encryption status (FileVault, BitLocker). - tier: Free - waysToUse: - - description: Report on disk encryption status - - description: Encrypt hard disks on macOS with FileVault - - description: Escrow FileVault keys on macOS - - description: Encrypt hard disks on Windows with BitLocker. Coming soon (2023-12-31) #Customer-preston - - industryName: Audit queries and user activities - tier: Free - usualDepartment: Security - - industryName: Grant API-only access - tier: Free - - industryName: Programmable audit log - tier: Premium - usualDepartment: Security - waysToUse: - - description: Export activity of Fleet admins to your SIEM or data lake - - industryName: Just-in-time (JIT) provisioning - tier: Premium - - industryName: Automated user role sync via Okta, AD, or any IDP - tier: Premium - waysToUse: - - description: Automatically set admin access to Fleet based on your IDP - - industryName: Vanta integration - tier: Premium - - industryName: Trigger a workflow based on a failing policy - tier: Premium - - industryName: Role-based access control - tier: Premium -- categoryName: Vulnerability management - features: - - industryName: Detect vulnerable software #TODO: find a better industryName and make this the friendly name. Maybe separate out export. - tier: Free - usualDepartment: Security - productCategories: [Vulnerability management] - demos: - - description: A top gaming company wanted to replace Qualys for infrastructure vulnerability detection. - quote: So we have some stuff today through Qualys, but it's just not very good. A lot of it is...it's just really noisy. I'm trying to find out specifically, actually what packages are installed where, and then the ability to live query them. - moreInfoUrl: https://docs.google.com/document/d/1JWtRsW1FUTCkZEESJj9-CvXjLXK4219by-C6vvVVyBY/edit - waysToUse: - - description: Email relevant, actually-installed vulnerabilities to responsible teams so they can fix them. - moreInfoUrl: https://docs.google.com/document/d/1oeCmT077o_5nxzLhnxs7kcg_4Qn1Pn1F5zx10nQOAp8/edit - - description: Automate your response to new vulnerabilities - - industryName: Query performance monitoring - tier: Free - demos: - - description: A top software company needed to understand the performance impact of osquery queries before running them on all of their production Linux servers. - moreInfoUrl: https://docs.google.com/document/d/1WzMc8GJCRU6tTBb6gLsSTzFysqtXO8CtP2sXMPKgYSk/edit?disco=AAAA6xuVxGg - - description: A top software company wanted to detect regressions when adding/changing queries and fail builds if queries were too expensive. - moreInfoUrl: https://docs.google.com/document/d/1WzMc8GJCRU6tTBb6gLsSTzFysqtXO8CtP2sXMPKgYSk/edit?disco=AAAA6xuVxGg - waysToUse: - - description: Monitor performance for automated queries. - - description: Monitor performance for live queries. Coming soon (2024-01-26) #Customer-blanco - moreInfoUrl: https://github.com/fleetdm/fleet/issues/467 - - industryName: Detect and surface issues with devices (policies) - tier: Free - - industryName: Vulnerability dashboard - tier: Premium - comingSoonOn: 2024-03-31 - waysToUse: - - description: Only show vulnerabilities that you care about. Coming soon (2024-03-31) #Customer-faltona and customer-rialto - - industryName: Policy scoring - friendlyName: Mark policies as critical - tier: Premium - - industryName: Vulnerability scores (EPSS and CVSS) #TODO: Incorporate this perspective: https://github.com/fleetdm/confidential/issues/4120#issuecomment-1802350614 - tier: Premium - usualDepartment: Security - productCategories: [Vulnerability management] - - industryName: CISA KEVs (known exploited vulnerabilities) #TODO: Incorporate this perspective: https://github.com/fleetdm/confidential/issues/4120#issuecomment-1802350614 - tier: Premium - usualDepartment: Security - productCategories: [Vulnerability management] - - industryName: Patched version #Can be determined using description from National Vulnerability Database (NVD). Description tells you which versions are affected. - tier: Premium - usualDepartment: Security - productCategories: [Vulnerability management] - categoryName: Data outputs features: - industryName: Flexible log destinations (AWS Kinesis, Lambda, GCP, Kafka)