Concepts
How Red Cricket Cloud is organized: organizations, roles and permissions, which modules come with each plan, and the limits of each.
Last reviewed:
Four ideas explain almost everything you will see in the platform. They are worth reading once before you configure anything.
Organization
The organization is the container for all of your work: your vendors, your domains, your compliance frameworks, your findings, and the people with access. It is created when you sign up and carries your company's name.
Each organization is isolated from the rest. One organization's data is not visible from another, and the people you invite only see the organization they belong to.
Roles and permissions
There are two roles within an organization. They are assigned when you invite someone and determine what they can administer, not which modules they can consult.
| Administrator | User | |
|---|---|---|
| Use the modules in the plan | Yes | Yes |
| See and invite the team | Yes | No |
| Remove another person's two-factor authentication | Yes | No |
| Manage the plan, payment method, and invoices | Yes | No |
Modules and plans
Red Cricket Cloud is eight modules under a single subscription. Your plan defines which ones are available:
| Module | Available from |
|---|---|
| Vendor Risk | Starter |
| Email Authentication | Starter |
| Compliance Posture | Starter |
| Alert Center | Growth |
| Attack Surface | Growth |
| Financial Risk | Enterprise |
| Breach Exposure | Growth |
| Passwords & Backups | Growth · add-on |
Limits per plan
Plans differ not only in which modules they include, but in how much you can load into each one.
| Starter | Growth | Enterprise | |
|---|---|---|---|
| Vendors | 15 | 60 | No cap |
| Email domains | 1 | 3 | No cap |
| Compliance frameworks | 1 | No cap | No cap |
| Attack Surface assets | — | 15 | No cap |
| Manual scans per month | — | 4 | 20 |
You change plans under Settings → Billing, and the charge is prorated. Current prices are on the Red Cricket Cloud page.
How the scores work
There is no single score for your organization. Each module measures something different on its own scale — adding them up would produce a number that is easier to show and less useful for deciding. The two that really are scores read as follows:
| Score | Scale | How it is calculated |
|---|---|---|
| Vendor Risk | 0 – 100 per vendor | From the questionnaire answers. 80 or above is low risk; 50 to 79, medium; below 50, high. |
| Compliance Posture | 0 – 100 % per framework | Implemented controls over the total minus those marked "not applicable". "In progress" counts as zero. |
The other modules do not score: they classify each finding by severity (Low, Medium, High, Critical), and what you watch is how many of the top two are open. The exception is Financial Risk, which is not a score but an estimated amount of money.
Advisor
Advisor is fractional CTO/CISO time included in your subscription: 1 hour per month on Growth and 2 hours per month on Enterprise. Hours do not roll over — this month's hour is not added to next month's if you do not use it.
They are for what a dashboard does not solve: prioritizing findings, preparing for a conversation with a client demanding evidence, or deciding what to address first with the budget you actually have.