# Binalyze AIR vs Plaso

| Attribute | Binalyze AIR | Plaso |
|---|---|---|
| **Vioscale score** | 14.9 (30% (low)) | 43.3 (14% (low)) |
| activity.commits_last_30d | - | 6 |
| adoption.github_stars | - | 2,140 |
| deployment.options | `{"cloud":true}` | - |
| description.long | A cyber investigation and response platform that helps security teams rapidly collect, analyze, and report incident evidence across endpoints, cloud systems, and applications. It provides forensic-level clarity and defensible timelines to support rapid incident response, threat hunting, compliance audits, and regulatory reporting. | A Python-based framework that automatically generates timelines from computer logs and files to help forensic investigators correlate digital evidence and reconstruct events. |
| integrations.count | 8 | - |
| integrations.list | `[{"name":"Microsoft Azure"},{"name":"Slack"},{"name":"Carbon Black Cloud"},{"name":"Rapid7 InsightIDR"},{"name":"Okta"},{"name":"ADFS"},{"name":"FortiAuthenticator"}]` | - |
| language.primary | - | Python |
| license.spdx | - | Apache-2.0 |
| market.availability | `{"hqCountry":"EE","primaryMarkets":["GB","US","SG"],"availabilityScope":"global","availableCountries":[],"notAvailableCountries":[]}` | - |
| platform.support | `{"web":true}` | - |
| pricing | `{"type":"quote","plans":[{"free":false,"name":"Essentials Plan","commitment":"annual","contactSales":true},{"free":false,"name":"Signature Plan","commitment":"annual","contactSales":true}],"summary":"Custom pricing via quote. Annual subscription billing.","currency":"USD","freeTier":false,"sourceUrl":"https://binalyze.com","retrievedAt":"2026-08-18T22:36:39.509Z","billingPeriods":["year"]}` | `{"type":"open_source","sourceUrl":"https://plaso.readthedocs.io","retrievedAt":"2026-08-20T16:33:48.139Z"}` |
| pricing.free_tier | no | - |
| pricing.model | quote | open_source |
| pricing.price_level | unknown | free |
| pricing.transparent | no | - |
| release.cadence_days | - | 87 |
| release.history | - | `[{"url":"https://github.com/log2timeline/plaso/releases/tag/20260720","date":"2026-07-20T07:57:02Z","type":"stable","version":"20260720"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20260512","date":"2026-05-12T19:03:44Z","type":"stable","version":"20260512"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20260119","date":"2026-01-24T08:52:16Z","type":"stable","version":"20260119"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20250918","date":"2025-09-18T05:33:15Z","type":"stable","version":"20250918"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20240826","date":"2024-08-27T05:06:47Z","type":"stable","version":"20240826"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20240308","date":"2024-03-09T06:44:00Z","type":"stable","version":"20240308"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20231224","date":"2023-12-24T06:49:42Z","type":"stable","version":"20231224"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20230717","date":"2023-07-18T18:59:02Z","type":"stable","version":"20230717"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20230311","date":"2023-03-12T10:44:11Z","type":"stable","version":"20230311"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20230226","date":"2023-02-26T14:16:25Z","type":"stable","version":"20230226"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20221229","date":"2022-12-29T05:15:06Z","type":"stable","version":"20221229"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20220930","date":"2022-09-30T16:55:17Z","type":"stable","version":"20220930"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20220724","date":"2022-07-24T18:41:31Z","type":"stable","version":"20220724"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20220428","date":"2022-04-28T06:12:28Z","type":"stable","version":"20220428"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20211229","date":"2021-12-29T16:55:15Z","type":"stable","version":"20211229"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20211024","date":"2021-10-24T11:18:13Z","type":"stable","version":"20211024"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20210606","date":"2021-06-06T18:51:47Z","type":"stable","version":"20210606"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20210412","date":"2021-04-12T05:29:06Z","type":"stable","version":"20210412"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20210213","date":"2021-02-13T17:42:39Z","type":"stable","version":"20210213"},{"url":"https://github.com/log2timeline/plaso/releases/tag/20201228","date":"2020-12-28T09:28:29Z","type":"stable","version":"20201228"}]` |
| reliability.sla_pct | 99.5 | - |
| security.gdpr | yes | - |
| security.scorecard | - | 5.8 |

## Capabilities (Digital Forensics)

| Capability | Binalyze AIR | Plaso |
|---|:--:|:--:|
| **Capabilities** |  |  |
| Deployment model | - | - |
| Disk imaging file carving | - | - |
| Volatile memory RAM analysis | - | - |
| Mobile ios android extraction | - | - |
| Remote endpoint acquisition | - | - |
| Mac os apfs support | - | - |
| Cloud saas m365 extraction | - | - |
| Court admissible hashing reporting | - | - |
| Automated artifact timelining | - | - |
| Malware triage yara scanning | - | - |
| Fips 140 2 certification | - | - |
| SOC2 type ii | - | - |
| Pricing model | - | - |

*Source: Vioscale. Generated 2026-09-01T15:14:21.116Z. "-" = undocumented, not absent.*
