Most managed-security contracts hide their limits in a PDF you see after you've signed. We'd rather publish ours. This page states what each Org Guard tier includes — accounts, onboarding, reports, reviews, simulations, and what happens in an incident — and names the work that is scoped separately, so the price on the pricing page is the price you actually pay.
Reviewed by the founder · last updated 22 August 2026. If we ever do less than this page says, that's a bug: security@familysentinel.org reaches a person.
These match the plan cards on the pricing page — this is the same promise with the edges drawn in.
| Guardian $249/mo | Guardian Plus $549/mo | Guardian Complete $999/mo | |
|---|---|---|---|
| Staff accounts covered | up to 15 | up to 50 | 25 accounts & devices included, then $20/seat |
| Google Workspace / Microsoft 365 tenants | 1 | 1 | 1 (a second tenant quoted individually) |
| Sending domains (DMARC protection) | every domain your organization actually sends from — we don't cap this, because partial DMARC is false comfort | ||
| Onboarding & first-month hardening | one guided admin call (~1 hr) + up to 2 hrs hands-on hardening | guided call + up to 4 hrs | guided call + up to 8 hrs incl. device rollout planning |
| Reporting | weekly digest + monthly report | weekly digest + monthly report | weekly digest + monthly report |
| Standing review calls | none standing — call us when you need us | quarterly review call | monthly review call |
| Access reviews (who can touch what) | — | quarterly | quarterly |
| Cyber-insurance concierge | — | questionnaire, gap-closing & evidence packet at renewal | same, plus underwriter follow-ups |
| Phishing simulation | — | 1 per year | 1 per year (a second on request) |
| Threat-awareness talk | 1 per year | 1 per year | 1 per year |
| Incident practice with leadership | — | — | twice yearly |
| Managed EDR / password manager / backup & restore test | — | — | included, on covered devices |
Churches and nonprofits keep their 20% discount on Guardian and Guardian Plus. Founding-client rates: the rate you join at is the rate you keep.
When we verify something serious, you get a phone call, a plain-English explanation, and step-by-step containment walked through together with you or your IT provider — revoking the session, resetting the credential, closing the forwarding rule, preserving the evidence. That's included, always. Guardian Complete adds priority: front of the queue, and severity-one findings paged after hours.
What's scoped separately: hands-on recovery work we perform ourselves beyond guided containment — rebuilding compromised environments, organization-wide credential resets executed by us, deep forensic investigation, work for insurers or attorneys. Before any of that starts, you get a written, fixed quote and you say yes or no. Nothing outside your subscription ever begins without your written approval, and declining never affects your monitoring.
And one promise about the boundaries themselves: if your organization consistently needs more than your tier includes, we will tell you plainly and propose the right scope — you will never discover a limit for the first time on an invoice.