Drata Foundation
Everything you need to start your program and get audit-ready
Foundation includes:
Up to 50 FTE
1 Pre-mapped framework (limited to SOC 2, ISO 27001, Cyber Essentials, HIPAA, GDPR)
Pre-built integrations
SafeBase by Drata Trust Center Standard
SafeBase by Drata AI Questionnaire Assistance Standard
Risk Management Standard
Custom Controls
Vendor Risk Management Standard
Compliance as Code Standard
Open API
Add-ons:
Additional frameworks
User Access Review
Drata Advanced
Build a scalable, customized GRC program
Everything in Foundation, plus:
1 Framework (Pre-mapped or Custom)
Custom Connections & Tests
Custom fields & formulas
Add-ons:
Additional frameworks
User Access Review
Risk Management Pro
Workspaces
Additional Adaptive Automation tests
Drata Enterprise
Proactively optimize and maintain a mature GRC program
Everything in Advanced, plus:
Risk Management Pro
Compliance as Code Pro
Vendor Risk Management Pro
User Access Review
Add-ons:
Additional frameworks
Workspaces
Additional Adaptive Automation tests
SafeBase Trust Center + AIQA
AI-powered Trust Center to share information and answer questionnaires
SafeBase Foundation
Start your world-class Trust program with minimal lift
Foundation includes:
Trust Center Standard package with 25 approved domains
AIQA Standard package with 10 questionnaires
Add-ons:
Additional approved domains
Additional questionnaires
SafeBase Advanced
Proactively inspire confidence in your security program
Everything in Foundation, plus:
Trust Center Pro package
AIQA Standard package
Add-ons:
Additional approved domains
Additional questionnaires
Published product portals
Custom permission profiles
SafeBase Enterprise
Enterprise-grade features allow you to confidently operate at scale
Everything in Advanced, plus:
Trust Center Premier package
AIQA Pro package
Add-ons:
Additional approved domains
Additional questionnaires
Published product portals
Want to See Compliance Automation in Action?

Excellent Based on 1000+ Reviews
Everything You Love in Every Plan
Achieving your GRC goals requires more than just features. With Drata, you get a user-friendly platform that continuously innovates, backed by exceptional support.

Intuitive Design
Not a GRC expert? No worries. Make your GRC feel like ABC with Drata’s intuitive platform that ranks highest for ease of use on G2.
Unmatched Innovation
As the first to launch Trust Center, Audit Hub, and Compliance as Code, it's no wonder Drata is the top compliance platform on both the Okta and AWS marketplaces.
Compare Plans
Compliance That Scales With You
The following features are not a comprehensive list of all solutions available. For an exact breakdown, contact a Drata sales representative today.
Foundation | Advanced | Enterprise | ||
---|---|---|---|---|
Compliance Automation | ||||
Included in Drata GRC Platform | ||||
Pre-mapped frameworks | ||||
Automated evidence collection | ||||
Multiple control owners | ||||
Export raw JSON evidence | ||||
Audit Hub | ||||
Policy Templates | ||||
Compliance as Code | Compliance as Code Pro | |||
Open API | ||||
Governance | ||||
Risk Management | ||||
Vendor Risk Management | ||||
Configurability | ||||
Trust Center | ||||
AI Questionnaire Assistance |
Frequently Asked Questions
How will my contract price be determined?
Our standard packages are designed to scale with your evolving GRC needs. Each offers a fixed number of frameworks and features, with flexible add-ons available anytime. With Drata, expanding your employee base won’t impact your budget, ensuring hassle-free financial planning.
What are your payment options?
Payments options for Drata are either annually direct to Drata, or through AWS Marketplace on a monthly, quarterly, or semi-annual basis. All options allow you to pay via credit card.