roughly half of this category sells invisibility and says so in plain language. teramind advertises software that 'operates hidden from task manager, runs silently'. interguard describes a client that 'cannot be found through standard system checks' with 'no indication the software had ever been installed'. controlio's homepage says the agent is 'completely invisible for the user—no icons on the bar or processes in Task Manager'. veriato is the one where stealth is not an option you enable: its own documentation says the agent 'is set to run in Stealth Mode and to use fixed filenames to facilitate preventing anti-spyware/anti-virus detection' by default.
the other half refuses. activtrak lists what it will not do — 'no keystroke logging', 'no email monitoring', 'no camera access', 'no personal device monitoring'. hubstaff says the same in nearly the same words. desktime markets its own absence of a hidden mode as a reason to buy it. prodoscore doesn't install an agent on most integrations at all.
two vendors contradict themselves on their own websites, and both contradictions are worth more than any feature comparison. interguard's page selling covert investigative deployment links to terms of use requiring 'that you inform all users of those devices that they are being monitored' — the marketing sells concealment and the contract requires disclosure. monitask lists 'stealth mode' as a plan feature while its faq on the same site states 'you cannot run monitask or auto-start screenshot monitoring without the users permission'. monitask also prints two different sets of prices on one page: $6.49/$8.99/$12.99 in the pricing table and $7.99/$10.99/$15.99/$19.99 in the faq below it.
nobody in this category enforces anything. every vendor that discusses the law does it as advice to the buyer — teramind's faq tells customers to 'be transparent with employees about the monitoring activities, even if the monitoring system itself is hidden', hubstaff points to a guide on monitoring laws and tells you to stay abreast of them. not one product requires an attestation that employees have been notified, blocks deployment in jurisdictions requiring consent, or shows the monitored person anything. the compliance burden sits entirely with the employer, in a category where getting it wrong is a criminal matter in several us states and a works-council question across the eu.
one thing genuinely limits covert deployment, and it isn't a vendor policy. macos requires the user to grant screen recording and accessibility permissions by hand, so a silent install is not possible there — time doctor documents this itself. stealth in this category is largely a windows capability.
advertisement
1
ActivTrak
publishes a list of what it refuses to do — no keystrokes, no camera, no email, no personal devices.
84/100
verdictthe clearest published limits in the category, at a price you can read without asking anyone.
best for
companies that want workforce analytics and want to be able to show employees exactly where the line is.
price
$10/worker/month
pricing note
annual billing only: work activity tracking $10, workforce management $15, productivity optimization $17; free plan for up to 3 workers
free tier
yes
stealth mode
none — explicitly not offered
keystroke logging
explicitly not offered
price per user/month
$10 / $15 / $17, annual
on-premise
no — cloud only
minimum seats
none; free plan capped at 3
activtrak's features page is unusual in that it enumerates absences: 'no keystroke logging', 'no email monitoring', 'no camera access', 'no personal device monitoring', 'no video recording'. no stealth or hidden-agent option appears anywhere on the site. in a category where the adjacent vendors sell concealment as a headline feature, publishing the ceiling is a meaningful commitment — it is the document you hand to a works council or an employee who asks.
what it does capture is application and website usage, work-activity and productivity metrics, schedule and location adherence, and ai-tool usage. that is enough for the actual question most buyers have, which is how time is distributed across a team, and it stops short of the content capture that creates legal exposure. pricing is published and legible: $10, $15 or $17 per worker per month, annual only, with a free plan for up to three workers and a 30% saving for bundling the two upper tiers.
the gaps are documentation rather than product. several of the deeper feature and compliance pages returned 404 repeatedly during this research, so we could not verify how screenshots are handled — activtrak is understood to offer them as an add-on, and we could not confirm the default frequency or whether they can be disabled. nothing on consent handling or data residency was retrievable either. and if you specifically need covert investigative capability, this is the wrong product and says so.
pros
+publishes an explicit list of capabilities it declines
+no stealth or hidden-agent option at all
+published per-seat pricing at $10/$15/$17
+free plan for up to 3 workers
cons
−screenshot defaults and controls could not be verified — pages 404'd
−no consent or notification workflow documented
−annual billing only, no monthly option
−free accounts deleted after 30 days of inactivity
no keystroke logging, no email monitoring, no camera access — and screenshots you can blur or turn off.
79/100
verdictthe same restraint as activtrak with better screenshot controls, on a pricing page we could not read.
best for
distributed teams that want time tracking with visible, adjustable monitoring rather than surveillance.
price
not verifiable
pricing note
hubstaff.com/pricing renders its figures through javascript and returned no numbers to repeated fetches; we have not substituted third-party estimates
free tier
no
stealth mode
none — explicitly not offered
keystroke logging
explicitly not offered
price per user/month
unverified — js-rendered page
on-premise
no — cloud only
minimum seats
unverified
hubstaff states plainly that it 'does not rely on keystroke logging, email monitoring, or camera access', and no stealth or hidden-agent option exists anywhere on the site. the positioning is consistent rather than decorative: monitoring features are described as optional and fully customisable, and the product is built to be visibly installed and configured per user.
the screenshot handling is the best in the category. you can enable, disable, blur or customise the frequency to match your policy, and configure it per role rather than globally — so a contractor and a salaried engineer can be on different settings without running two products. hubstaff also states screenshots never pass through its server, which implies direct-to-storage handling rather than a vendor-side copy. it claims soc 2 type ii, hipaa and gdpr standards.
two things hold it back. we could not verify a single price: the pricing page renders through javascript and two direct fetches returned no dollar figures at all, which is a verification failure rather than deliberate opacity, but it leaves a buyer unable to compare cost from the vendor's own page. and like everyone else here, compliance is handed back to you — hubstaff points customers at a guide to monitoring laws and tells them to stay abreast of the rules in their jurisdiction. there is no attestation step, no notification to the monitored person, nothing enforced in the product.
pros
+explicitly no keystroke logging, email monitoring or camera access
+screenshots can be blurred, disabled or re-timed per role
+screenshots stated not to pass through hubstaff's servers
+soc 2 type ii, hipaa and gdpr claimed
cons
−no price verifiable from the vendor's own page
−compliance responsibility handed entirely to the employer
markets its own lack of a hidden mode as the reason to buy it, and lets employees pause tracking themselves.
76/100
verdictthe only vendor here that gives the monitored person a control of their own, at the cheapest verified price on the page.
best for
teams that want tracking both sides can see, with an employee-controlled off switch.
price
$6.42/user/month
pricing note
pro $6.42, premium $9.17 per user/month, same rate monthly or annual; annual includes one free month (~7.7% effective). prices exclude vat
free tier
yes
stealth mode
none — marketed as such
keystroke logging
not mentioned; likely none
price per user/month
$6.42 pro / $9.17 premium
on-premise
no — cloud only
minimum seats
none; enterprise 200+
desktime's own comparative content states that it 'offers no stealth monitoring capability', and positions that against competitors who do. the data is described as transparent and visible to both managers and employees — the person being tracked can see what was recorded about them, which is a different relationship from the tools where the employee has no account at all.
the private time feature is the part worth noting. employees can pause tracking themselves. none of the stealth-oriented vendors offer anything comparable, and several are architecturally incapable of it — you cannot give a pause button to someone who is not supposed to know the software exists. combined with url, app and document-title tracking plus ip-based location, it covers the ordinary management use case without covert capability.
pricing is published and among the cheapest verified here: $6.42 for pro and $9.17 for premium per user per month, the same whether billed monthly or annually, with annual adding a free month. enterprise starts at 200 users. the documentation thins out badly beyond pricing, though — keystroke logging is not mentioned anywhere, which probably means it is not offered but is not an explicit refusal the way activtrak's and hubstaff's are. nothing on webcam, message content, consent process, data residency or legal framework was retrievable. screenshots exist as a proof-of-work feature with no default frequency documented.
pros
+markets the absence of stealth mode as a differentiator
+employees can pause tracking with private time
+data visible to employees as well as managers
+$6.42/user/month published, same rate monthly or annual
cons
−keystroke logging neither offered nor explicitly refused
−screenshot default frequency undocumented
−nothing published on consent, residency or legal framework
insightful's knowledge base describes stealth mode precisely: 'when stealth mode is enabled on a user's machine, the insightful icon will not appear in the system tray or on the desktop. tracking will continue running silently in the background', invisible except in task manager, with staff unable to access their own productivity data. that is a covert capability and it is documented as one.
what makes it different is the sentence next to it. insightful's own guidance recommends visible mode 'no matter the employee status'. visible mode shows a desktop icon, lets employees start and stop shifts manually, and gives them access to their own dashboards. a vendor documenting a hidden mode while advising customers against it is doing something none of the other stealth-capable products here do — teramind, controlio, interguard and veriato all market concealment as an advantage.
the on-premise option is genuine: insightful states all aspects of the platform can be deployed on your own infrastructure, plus a private cloud option. the catch is a 250-licence minimum and an extra service fee, which puts self-hosting out of reach for anyone below enterprise scale. pricing is published at $8, $12 and $16 per seat annually with add-ons from $0.50 to $4. certifications listed are soc 2, iso 27001, hipaa, gdpr and ccpa. the marketing stealth page 404'd on direct fetch — we found the behaviour through the knowledge base — and we could not verify screenshot defaults, keystroke logging, webcam or message capture at all from the pages available.
pros
+vendor guidance recommends visible mode regardless of employee status
+granular documented toggle between hidden and visible
+genuine on-premise deployment of the full platform
+published pricing at $8/$12/$16 per seat
cons
−on-premise gated behind a 250-licence minimum
−stealth marketing page unreachable — behaviour found via knowledge base
−screenshot, keystroke and webcam behaviour unverified
controlio does not hedge about what it is. the homepage states that 'the client agent program is completely invisible for the user—no icons on the bar or processes in Task Manager'. no visible-mode alternative is documented. alongside continuous screen recording as an alternative to periodic screenshots, it alerts on 'apps & websites access, keystrokes, USBs, active & idle periods' — keystroke logging is in the product.
what earns it a mid-table placing rather than a low one is the combination of candour, price and deployment flexibility. at $6.67 a seat annually it is the cheapest verified figure in the category, on-premise is available from just 10 users rather than the 250 insightful demands, and private cloud is offered on request. the vendor also ships what it calls a gdpr mode 'to comply with eu regulations', which is at least an acknowledgement that european deployment needs different behaviour — most stealth-capable vendors here offer nothing of the kind.
the gdpr mode is also as far as it goes. there is no attestation requirement, no notification to the monitored person, nothing documented about how or whether employees are told. a product that is invisible in task manager, logs keystrokes, and hands the entire consent question to the buyer is a legally loaded thing to deploy in the eu regardless of what mode is switched on. retention runs 6 to 36 months, extendable to three years. nothing on webcam or message content was documented either way.
pros
+states the agent is invisible in plain language — no ambiguity
+$6.67/user/month annually, the cheapest verified rate here
+on-premise available from 10 users; private cloud on request
+explicit gdpr mode for eu deployments
cons
−fully hidden agent with no visible-mode alternative documented
−keystroke logging included
−no consent or notification workflow despite the gdpr-mode claim
a silent app with no interface that the employee cannot pause — not marketed as covert, functionally invisible.
69/100
verdictsits in the category's grey zone — silent by design, never described as hidden, and priced where we cannot see it.
best for
dedicated work devices where a persistent tracking ui would be a nuisance rather than a disclosure.
price
not verifiable
pricing note
pricing page renders figures through javascript; only tier names visible on fetch. annual billing confirmed to give two months free (16.6%)
free tier
no
stealth mode
silent app — no ui, cannot be paused
keystroke logging
not addressed
price per user/month
unverified — js-rendered page
on-premise
private cloud on enterprise
minimum seats
none stated
time doctor's support documentation describes two deployment options. the interactive desktop app shows a ui and lets users pause tracking. the automatic app runs 'silently... with no user interface, ensuring it operates in the background with no direct interaction', cannot be paused, and shows no pop-ups. that is not marketed as covert surveillance and it is not hidden from task manager — but the practical experience for a windows user is software they cannot see or stop.
the honest framing is that this is a legitimate deployment choice being made available without a legitimacy check. on a company-owned device with a signed policy, a silent agent is reasonable. nothing in the product establishes that either condition holds. the vendor's marketing leans on a privacy-first approach, transparency and employee trust without documenting any notice or consent mechanism, which is the same gap every product here has.
one genuine limit is worth recording because it applies across the category: on macos, silent deployment is not possible, because the operating system requires the user to manually grant screen recording and accessibility permissions. time doctor documents this itself. stealth in this category is essentially a windows capability. as for cost, the pricing page renders through javascript and returned only tier names — basic, standard, premium, all per user per month — with no figures. private cloud deployment is included on the enterprise plan. screenshots are described as optional and configurable with privacy guardrails, with no default frequency stated.
pros
+documents both silent and interactive deployment options clearly
+documents the macos permission limit on silent installs
+private cloud deployment on the enterprise plan
+14-day trial with full premium access and no card
cons
−no price figures obtainable from the vendor's own page
−silent app cannot be paused by the user
−no notice or consent mechanism despite privacy-first marketing
−screenshot, keystroke and webcam defaults all undocumented
no agent on most integrations, no screenshots, no keylogging — it scores activity from business apps instead.
66/100
verdicta structurally different product that avoids the category's whole legal problem, at the highest per-seat price here.
best for
leadership teams wanting productivity signal from tools people already use, with no endpoint agent.
price
$19.99/user/month
pricing note
basic $19.99/user/month with a 15-seat minimum, so a $300/month floor; premium and enterprise quoted
free tier
no
stealth mode
n/a — no agent on most integrations
keystroke logging
explicitly not offered
price per user/month
$19.99
on-premise
no — google cloud only
minimum seats
15
prodoscore does not capture a screen. it reads activity signals from business-app integrations — microsoft 365, google workspace, salesforce, zoom, slack and 70-plus others — and scores them, stating 'no agents to install on most integrations' and 'privacy by design — activity from business apps only, no screenshots or keylogging'. there is a desktop connect component for legacy applications, but no stealth or hidden-mode language attaches to it.
that architecture sidesteps most of what makes this category legally fraught. metadata about how many emails were sent and when calendar time was booked is a different category of data from a recording of someone's screen, and it is data the employer's platforms already hold. for an organisation that wants a productivity signal without deploying surveillance software to endpoints, this is the shape of product to look at.
it is also the most expensive per seat on the page, at $19.99 with a 15-seat minimum that puts a $300 monthly floor under any deployment — no small-team option exists. there is no on-premise deployment; data is warehoused on google cloud with no regional options disclosed. and one thing is genuinely ambiguous: it integrates with chat and email platforms, and while the privacy-by-design framing implies metadata rather than content, we could not confirm from the pages available that message content is never read. the deeper feature page 404'd during this research.
pros
+no endpoint agent on most integrations
+explicitly no screenshots and no keylogging
+signal drawn from platforms the employer already controls
+published price at $19.99 per user
cons
−highest per-seat price here with a $300/month floor
−15-seat minimum rules out small teams
−whether message content is read is not confirmable
−no on-premise option and no disclosed data residency
advertises software that operates hidden from task manager and resists removal, then tells you to be transparent about it.
63/100
verdictthe most complete covert capability in the category, documented in detail and priced nowhere.
best for
insider-risk and dlp programmes with legal counsel already engaged on the monitoring question.
price
quoted
pricing note
starter, uam, dlp and enterprise tiers all route to contact sales; no dollar figures published anywhere
free tier
no
stealth mode
yes — hidden from task manager, tamper-proof
keystroke logging
yes — default-on, admin can disable
price per user/month
quoted — not published
on-premise
historically yes — unverified this pass
minimum seats
unverified
teramind is the most explicit vendor here and runs a page titled hidden employee monitoring software to prove it. the software 'operates with stealth deployment options that run invisibly in the background', 'features tamper-proof installation that prevents detection or removal by standard users', and 'operates hidden from task manager, runs silently, customizable'. the knowledge base names the two modes — stealth (hidden) agent and revealed/visible agent — and documents switching between them.
it is also more capable than most: screen and video monitoring, dlp covering usb, cloud, email attachments and web uploads, and ocr of screen content for sensitive strings. keystroke logging appears to be on by default, since the documentation says administrators 'can easily turn off invasive features like keystroke logging' — an off switch implies a default-on state.
the vendor's own faq undercuts the marketing in a way worth quoting: 'be transparent with employees about the monitoring activities, even if the monitoring system itself is hidden', and 'in some jurisdictions, obtaining employee consent for monitoring is required'. that is guidance, not enforcement — nothing in the product checks it. teramind is telling you the covert capability it sells creates a legal obligation it will not help you meet. and no tier has a public price: every one routes to sales, the pricing page 404'd on direct fetch, and the third-party estimates circulating are unverifiable. we have not published them.
pros
+the most thoroughly documented stealth capability in the category
+admin-toggleable between hidden and revealed agents
+dlp across usb, cloud, email attachments and web uploads
+faq acknowledges the consent obligation explicitly
cons
−no public pricing on any tier
−keystroke logging appears to be on by default
−tamper-proof install explicitly resists removal by users
−transparency guidance is advisory only — nothing is enforced
stealth is not a setting you enable — it is how the agent ships, with filenames chosen to avoid antivirus detection.
60/100
verdictthe only product here where an unconfigured install is already invisible, and it evades security software by design.
best for
insider-threat investigations where covert operation is the explicit, counselled objective.
price
$18/user/month
pricing note
veriato uam from $18 per user/month billed annually, decreasing with user count, 5-user minimum; irm quoted separately, 20-user minimum
free tier
no
stealth mode
yes — on by default, anti-av filenames
keystroke logging
historically yes — unverified this pass
price per user/month
$18, annual
on-premise
yes
minimum seats
5 uam / 20 irm
veriato's own documentation states it without qualification: 'by default, the cerebral agent is set to run in stealth mode and to use fixed filenames to facilitate preventing anti-spyware/anti-virus detection', and 'the veriato agent is invisible to the user and operates silently (by default), recording activity as it occurs and uploading data every 4 minutes'. no configuration required. an administrator who installs it and changes nothing has deployed covert monitoring.
the antivirus clause deserves separate attention. designing filenames specifically to avoid detection by security software is a different proposition from simply hiding a tray icon — it means the endpoint protection your security team runs is being deliberately worked around by software your hr team bought. those two functions rarely talk to each other, and this is exactly the sort of thing that surfaces badly during an incident review.
credit where due: veriato publishes a price, which four vendors here do not — $18 per user per month billed annually, declining with volume, with a five-user minimum for uam and twenty for irm — and offers both cloud and on-premise deployment. beyond the pricing page, though, most of the site was unreachable during this research, so screenshot behaviour, keystroke logging specifics, webcam, message capture, consent handling and data residency are all unverified from primary sources. it is historically known for keystroke capture; we could not re-confirm it today.
pros
+publishes a per-seat price at $18, unlike most stealth vendors
+cloud or on-premise deployment both offered
+volume discounts below $18 at higher user counts
+documents its own default behaviour candidly
cons
−stealth is the default state, not an opt-in
−fixed filenames chosen to evade antivirus detection
hides the agent from the process list and times its uploads so nothing looks suspicious — renamed from Kickidler in 2025.
57/100
verdictone of the few genuinely air-gapped options here, mid-rebrand, with no price you can see.
best for
sites needing a fully offline, no-internet deployment with covert capability.
price
quoted
pricing note
no figures published; licence-count based from 1 to 2,000 with term discounts of 10% (3mo) to 40% (3yr); perpetual licences available
free tier
yes
stealth mode
yes — hidden from process list
keystroke logging
yes
price per user/month
quoted — not published
on-premise
yes — including offline local version
minimum seats
none — from 1 licence
the vendor documents the hidden mode carefully: 'the grabber component can be turned into completely invisible mode for a user', and selecting hidden mode means 'grabber will be hidden from the launched processes'. it goes a step further than most — data transmits continuously rather than in bursts, the vendor explains, 'so the employees won't notice any suspicious data usage or background processes'. that is concealment designed against a technically capable employee, not just an inattentive one. a vendor article is titled covert employee monitoring.
the deployment options are the genuine differentiator. keepactive on-premise exists, and so does a local version with no internet access at all — a fully air-gapped install. among fourteen candidates, that combination is rare, and for a classified or otherwise isolated environment it may be the only workable answer on this page.
two things to know before shortlisting it. the company renamed kickidler to keepactive in november 2025 and trades under both names on its own site as of august 2026, with marketing language shifting toward workforce analytics while the underlying architecture — per-computer licensing, screenshots, video recording, keystroke logging — is unchanged from the legacy product. and there is no published price at all: licensing runs from 1 to 2,000 seats with term discounts from 10% at three months to 40% at three years, plus perpetual licences, all configured through a quote. after the 14-day trial the software drops to a limited free mode for one computer rather than stopping.
pros
+documented hidden mode, absent from the process list
+upload pattern designed to avoid looking anomalous
+on-premise plus a fully offline no-internet version
+no seat minimum — licences from 1
cons
−no published pricing at any tier
−mid-rebrand, trading under two names simultaneously
−keystroke logging and video recording both retained
−nothing published on consent, legal framework or residency
sells stealth mode on one part of its site and says screenshots need the user's permission on another.
54/100
verdictcheap, and the only vendor here contradicting itself on both price and consent on a single page.
best for
small teams on a budget who are prepared to get both the price and the consent behaviour confirmed in writing first.
price
$6.49/user/month
pricing note
pricing table shows pro $6.49, business $8.99, business premium $12.99 monthly; the faq on the same page shows $7.99/$10.99/$15.99/$19.99 — the vendor contradicts itself
free tier
no
stealth mode
listed as a feature — contradicted by own faq
keystroke logging
not mentioned
price per user/month
$6.49 / $8.99 / $12.99 — disputed
on-premise
no — cloud only
minimum seats
none; enterprise 100+
monitask lists stealth mode as a plan feature in plain terms: 'run monitask in visible or stealth mode'. its faq, on the same site, states 'you cannot run monitask or auto-start screenshot monitoring without the users permission'. those two statements cannot both be fully true. either the stealth mode is constrained by a consent gate the feature list does not mention, or the faq describes a policy the product does not enforce. we could not determine which from the available documentation.
the same page contradicts itself on money too. the pricing table gives pro at $6.49, business at $8.99 and business premium at $12.99 a month, with 18% off annually. the faq section below it lists $7.99, $10.99, $15.99 and $19.99. we have published the table figures because that is the primary pricing surface, but a buyer should assume neither is reliable until confirmed in writing.
if the faq's permission requirement is real, it would be the only built-in consent gate among the stealth-capable vendors on this page and would deserve credit rather than a low ranking. we are not able to verify that it is. what we can say is that a vendor whose own site disagrees with itself about both what you pay and whether employees must agree to be recorded is one to get everything from in a signed document. enterprise is described as 100+ employees only, there is no on-premise option, and nothing on keystroke logging, webcam or message capture appears on the pricing page.
pros
+cheapest published entry price among stealth-capable vendors
+faq states screenshot auto-start requires user permission
+256-bit aes encryption on stored screenshot and time data
+10-day free trial with no card required
cons
−two different price sets published on the same page
−stealth mode feature contradicts the faq's permission claim
−no on-premise option
−keystroke, webcam and message capture all undocumented
a stealth agent with no visible controls, and almost nothing else we could confirm from the vendor.
50/100
verdictthe thinnest public documentation of any product here — a stealth agent sold almost entirely through conversation.
best for
enterprise insider-risk teams already running a proof of concept with the vendor.
price
quoted
pricing note
purchase page shows perpetual, 12-month and 24-month plan structures with a get-quote call to action and no dollar figures
free tier
no
stealth mode
yes — no visible controls
keystroke logging
yes — marketed capability
price per user/month
quoted — not published
on-premise
historically yes — unverified
minimum seats
5 endpoints
what is confirmable is the deployment model. staffcop's own documentation states it 'can launch the desktop agent in stealth mode with no visible controls to the end-users being monitored', positioned against a revealed-agent alternative. keystroke monitoring is marketed as a named product capability on the vendor's site. plans start at five endpoints across perpetual, 12-month and 24-month structures.
that is close to the whole of it. no pricing figures appear anywhere on the site — every plan routes to a quote request, and even the plan-structure page returned minimal detail to a direct fetch. default capture behaviour, screenshot handling, webcam, message content, consent process, legal framework and data residency were all unconfirmable from the vendor's own pages during this research. staffcop is historically a self-hosted product, and we could not re-verify even that today.
the ranking reflects verification rather than a judgement about capability. a covert-capable monitoring agent aimed at enterprise insider-risk teams may well be a competent product; we simply cannot tell a reader what it does by default, what it costs, or where the data goes, and in a category where those three questions carry legal consequences, that gap is disqualifying for anyone who needs to make a decision from published information. if you are evaluating it, everything on this entry needs to come from the vendor in writing.
pros
+documented stealth-versus-revealed agent choice
+keystroke monitoring marketed as a named capability
+plans start at five endpoints
+perpetual licensing available alongside subscriptions
cons
−no pricing published anywhere on the site
−default capture behaviour entirely unverified
−on-premise status could not be re-confirmed
−nothing published on consent, legal framework or residency
sells software that leaves 'no indication it had ever been installed' — and requires you to tell employees it is there.
46/100
verdictthe vendor's marketing and its own contract give opposite instructions about whether employees must be told.
best for
hard to recommend — read its terms of use against its marketing before shortlisting it.
price
quoted
pricing note
no dollar figures on the vendor's pricing page; third-party estimates range from ~$9 to ~$25 per user/month and disagree with each other, so none are published here
free tier
no
stealth mode
yes — undetectable by standard checks
keystroke logging
historically yes — unverified
price per user/month
quoted — not published
on-premise
reported, not vendor-confirmed
minimum seats
not stated
interguard's covert positioning is the most explicit here. it describes investigative or stealth monitoring as 'deployed to endpoints and completely hidden... cannot be found through standard system checks and there is no indication the software had ever been installed', software that can be 'silently and remotely installed to conduct covert investigations without alarming the suspected wrongdoer'. and it states the purpose directly: 'with stealth monitoring, your employees won't necessarily know when they're being monitored, so they won't be tempted to change their behavior because of it'.
on the same page, interguard's own terms of use 'require that you only install its software on devices that you own or have permission to monitor and that you inform all users of those devices that they are being monitored', adding that failure to do so 'may result in breaking of federal and state laws'. the marketing sells the value of employees not knowing. the contract requires that they be told. a buyer who follows the marketing violates the licence; a buyer who follows the licence loses the feature they bought.
we are not aware of another vendor in this category whose sales copy and legal terms cancel each other out this directly on a single page, and it is why this sits last. there is no published pricing either — the third-party figures circulating range from about $9 to about $25 per user per month and contradict one another, so we have published none of them. capture defaults, screenshot handling, keystroke logging, minimum seats and data residency are all unverified. the only compliance language on the site is the notice requirement its marketing argues against.
pros
+the most explicit covert-deployment documentation in the category
+always-on dlp client blocks protected file movement even offline
+terms of use do state a notification requirement
+cloud and on-premise reported, though not vendor-confirmed
cons
−marketing and terms of use directly contradict each other on disclosure
−no published pricing; third-party estimates disagree by nearly 3x
−capture defaults, keystroke logging and residency all unverified
−no minimum seat count or plan structure published
the ranking axis is what the monitored person can know. we quote each vendor's own wording on stealth or hidden deployment — from marketing pages where they advertise it, from knowledge bases where they document it without advertising it — and we record whether a visible indicator exists and whether an administrator can remove it.
we separate stealth-by-default from stealth-as-an-option, because it decides what an unconfigured install does. veriato ships stealth on. teramind, insightful, staffcop and keepactive make it a toggle. insightful is the only vendor whose own documentation recommends against it, telling customers to use visible mode 'no matter the employee status'.
capture is reported by type rather than as a feature count: screenshots, continuous screen recording, keystroke logging, webcam, message content. where a vendor explicitly declines a capability we quote the refusal, because in this category a documented 'we do not do this' is the more useful fact.
prices are the vendor's own published per-seat rate. seven of thirteen publish one. six do not: teramind, staffcop, interguard and keepactive route every tier to a sales conversation, and hubstaff's and time doctor's pricing pages render their figures through javascript and returned no numbers to repeated fetches — a verification failure rather than deliberate opacity, but the effect on a buyer comparing costs is the same. we have not published third-party estimates in place of any of them.
toggl track is not ranked. it was on our candidate list and it does not belong: the company states it has 'no surveillance features of any kind' and its desktop activity data never leaves the user's device. it appears in employee-monitoring roundups regularly, which is misleading in both directions — buyers wanting monitoring find it can't, and teams told they're being tracked with it are being told something inaccurate.
several vendors' feature and compliance pages returned 404 during this research — activtrak's, prodoscore's, insightful's stealth page, veriato's product pages. those entries are ranked on what could be verified and marked down for what could not.