Everything you need to know about INSπRE. Can't find what you're looking for? Drop us a line.
General
INSπRE (Integrated Security & Privacy Risk Engine) is an AI-powered GRC platform for governance, risk and compliance management. It covers 24+ global and Indian regulatory frameworks from a single unified interface, powered by Anthropic Claude AI for real-time compliance guidance.
INSπRE is proprietary software. The GRC templates library (compliance frameworks, policies, controls, questionnaires) is published under Creative Commons CC-BY 4.0 and free for the community to use.
INSπRE is the only GRC platform with built-in coverage of Indian regulatory frameworks (RBI CSCRF, SEBI CSCRF, CERT-In, IRDAI, DPDP Act) alongside 19 global standards. It's also the only platform with an unlimited Claude AI assistant built in — no token cap, no add-on cost. See the full comparison at /compare.
No. The AI assistant guides non-experts through compliance concepts in plain language. The built-in templates, control library, and policy library mean you can start implementing without external consultants. For formal certification, a qualified lead implementer or auditor should review the outputs.
Pricing & Editions
Yes. You can register and use INSπRE immediately with no credit card required. The trial includes full access to all modules, the AI assistant, and all 24+ frameworks.
No. INSπRE is priced per deployment, not per user. You can add unlimited users — compliance officers, risk managers, auditors, IT security, executives — without per-seat costs. Contact us for current pricing.
Enterprise adds: SLA-backed support with guaranteed response times, dedicated customer success management, advanced SAML/SSO integration, custom onboarding and training, priority feature requests, and white-label options. See Enterprise for details.
Technical
INSπRE is a Python/Flask application deployable on PythonAnywhere, Render, or any Python-capable server in under 30 minutes. It supports SQLite (development) and PostgreSQL (production). No proprietary infrastructure or vendor lock-in.
Yes. INSπRE is fully self-hostable. Your GRC data stays on your own infrastructure. Only the AI assistant sends conversation messages to the Anthropic Claude API — everything else is local.
Yes — your chat messages and conversation history are sent to the Anthropic Claude API for processing. Do not include highly sensitive personal data (PII, credentials) directly in chat messages. Review Anthropic's data processing agreement at anthropic.com/legal. For maximum data residency, the AI assistant can be disabled.
Yes. A superadmin can create and manage multiple organisations from a single deployment. Each organisation's data is completely isolated. Switching between orgs is one click from the Organisations panel.
PostgreSQL is strongly recommended for production. SQLite is suitable for development and testing only — it doesn't support concurrent writes and lacks the robustness needed for live environments.
Compliance & Frameworks
INSπRE significantly accelerates your readiness for ISO 27001:2022 certification — the full 93-control Annex A library, Statement of Applicability, risk assessment, policy management, and internal audit management are all built in. Formal certification requires an accredited external certification body (CB) to conduct Stage 1 and Stage 2 audits.
Go to Compliance Management → Load built-in packages to get the 4 default frameworks (ISO 27001, GDPR, DPDP, PCI DSS). To add a custom framework, use Import Custom Package and upload a CSV in the standard format (chapter + requirement rows). Any standard can be added this way.
Default: Risk Score = Likelihood × Impact (both 1–5). The matrix is fully configurable — you can change the axis labels, switch to an additive calculation, and customise the colour thresholds for each cell. High: 15–25 · Medium: 8–14 · Low: 1–7.
💬
Still have questions?
Drop us a line and we'll get back to you within one business day.