Pricing Details
Vendor | Description | Guidewire | Duck Creek |
---|---|---|---|
Freemium | Offers free tiers | ||
Per License | Charges per user, org, or access point | ||
Consumption-Based | Pay per taken, API call, inference, etc. | ||
Outcome-Based | Pay only when certain results or performance goals are achieved |
Some Quick facts about each vendor
Guidewire | Duck Creek |
---|---|
Guidewire is a leading provider of cloud-based software for property and casualty (P&C) insurers, powering core operations like policy, billing, and claims management. | Duck Creek delivers cloud-based core systems (policy, billing, claims) and a broad suite of automation, analytics, and management tools for insurance carriers. |
Guidewire is actively integrating large language models (LLMs) and generative AI into its core products — enabling automation in claims triage, underwriting, fraud detection, document analysis, and developer workflows via partnerships with vendors like OpenAI and Earnix. | Duck Creek rapidly integrates LLM and agentic AI — using Microsoft, expert.ai, and Charlee.ai partnerships to automate claims, underwriting, document processing, and customer communications. |
All AI and LLM-powered features are bundled within enterprise (org-level) platform contracts. There is no per-user, metered, or outcome-based pricing — AI is accessible to all insured users within the licensed entity. | All AI (including LLM features) is available to customers as part of all-user, organization-level contracts. There is no freemium or granular pay-as-you-go AI; unlimited users gain access within contracted scope. |
Even well-secured apps can leak data
If your app pulls in third-party content — like URLs, comments, or files — LLM features can be tricked into leaking private data through indirect prompt injection. Most teams don’t even realize it’s happening.
According to a 2025 Gartner survey,
73%
of enterprises have suffered an AI-related security breach in the last year
$4.8M
average cost per incident — with indirect prompt injection and data leakage via LLMs now among the top attack vectors for financial services and healthcare organizations
In recent incidents, platforms like ChatGPT and Microsoft 365 Copilot were exploited by attackers using hidden prompts and indirect content injection, leading to unintended data exposure