Features gated by price are 2015 thinking. Everyone gets the same feature set — uptime, logs, and the full SIEM — you pay for monitor count, not for unlocking what should be default.
✓
All 7 check types (HTTP/S, TCP, SSL, ping, port, keyword, heartbeat)
✓
1-minute minimum interval on paid plans, 30s on Pro
✓
Email, webhook, Slack, Discord, Telegram, Microsoft Teams, PagerDuty, Opsgenie alerts (unlimited)
✓
Event webhook subscriptions (incident.opened / acknowledged / resolved / monitor.status_changed / log_alert.fired) — unlimited on every plan
✓
Pre-converted LLM tool definitions: /openapi/openai-tools.json, /openapi/anthropic-tools.json, /openapi/langchain-tools.json
✓
Personal access tokens with 21 narrow scopes + per-token daily mutation and log-byte caps
✓
Idempotency-Key on every mutating endpoint (same key + different body returns 409)
✓
X-PAT-Mut-Limit / Remaining / Reset headers on every authenticated response
✓
Public status pages with custom branding + custom domain
✓
Incident timeline with public updates ("we have identified the cause")
✓
Maintenance windows that pause alerts but keep checking
✓
SLO targets (set 99.9%/30d, get green/red badges and breach alerts)
✓
Audit log for every mutation, PAT-attributed, exportable as CSV
✓
Logs: ingest + search + live-tail + pattern grouping + error tracking + anomaly alerts (1 GB/mo free → 100 GB Pro → unlimited self-host)
✓
SIEM: 22 ATT&CK-tagged detections + multi-event correlation — on every plan
✓
Threat-intel matching + GeoIP / identity / asset enrichment, inline at ingest
✓
Security cases + forward-cursor NDJSON SIEM export + signed detection webhooks
✓
OpenAPI spec for typed clients in any language
✓
Continuous point-in-time backups of your data
✓
Public uptime badge (live SVG you can drop in a README)