MCP Preflight Local-first MCP trust review Run free scan
Lite vs Pro

Buy Pro when reports, hooks, and CI save real time.

The core static scan stays the same. Pro is a workflow upgrade for people who need exportable findings, repeatable enforcement, and reusable policy presets.

What Pro changes

The buying decision should stay simple.

What Pro adds

  • Markdown, HTML, and SARIF reports
  • Git hooks
  • CI mode
  • policy presets
  • 12 months of update entitlement from purchase

What does not change

  • the same core static scan
  • the same local-first posture
  • no required MCP Preflight account
  • an honest boundary around what phase 1 is not

Activation
npm install -g mcp-preflight
mcp-preflight license install --from-file /path/to/license.token
mcp-preflight license status

If you use the standalone CLI bundle from GitHub Releases, run the same commands against mcp-preflight.js. The VS Code extension exposes matching install and status commands from the Command Palette.

CapabilityLitePro
Core static scanIncludedIncluded
Text and JSON outputIncludedIncluded
Local suppressionsIncludedIncluded
Markdown / HTML / SARIF exportNoYes
Git hooks and CI modeNoYes
Policy presetsNoYes
Commercial modelFreeOne-time purchase

Buy Pro if you need

  • exportable findings for review or handoff
  • scanner execution in hooks or CI
  • policy presets for repeat workflows

Stay on Lite if you are

  • still judging whether the core scan catches useful issues
  • only doing occasional exploratory review
  • expecting a hosted runtime policy gateway