Platform

Features

Three modules — cost, operations, and topology — in one self-hosted platform. Across Azure, AWS, and GCP, with no data leaving your network.

Cost Optimizer#

FinOps for multi-cloud spend — visibility, optimization, and forecasting.

🔍

Cost Explorer

Multi-dimensional analysis by service, resource, provider, subscription, or any tag — with daily-to-yearly time breakdowns and saved queries.
📈

Analytics & dashboards

Cross-subscription drill-down, historical trends, year-over-year comparison, and month-end forecasts at a glance.
💡

Recommendations

Idle resources, right-sizing, reserved/committed capacity, and Kubernetes optimization — per cloud, refreshed automatically.
💵

Budgets & forecasting

Monthly, quarterly, and yearly budgets with daily-rate forecasting, threshold alerts, and projected breach dates — plus a read-only mirror of the budgets you already defined in the cloud consoles.
✅

Savings tracking

Resolve a recommendation to bank a permanent savings record — realized vs. potential, with monthly trend and capture rate.
🧾

Commitments

Reserved instances, savings plans, and committed-use discounts in one view — coverage and utilization, with alerts on expiring or under-used commitments before money is wasted.
🏷️

Cost allocation & chargeback

Assign spend to cost centers with tag- and subscription-based rules, track allocation coverage, and produce chargeback or showback statements for every team.
☸️

Kubernetes cost allocation

Split a cluster's real bill across namespaces, node pools, and workloads by CPU/memory requests — answer "what does this namespace cost?" without a separate tool.
🔎

Cost reconciliation

Re-check archived months against the cloud provider and flag any that drifted — late charges, credits, or true-ups — so chargeback and trend reports stay accurate. Review and apply the correction.
📄

Reports

PDF and Excel across twelve report types — cost, client, optimization, security, and inventory — single or aggregate, on demand or on a schedule via email.

Cloud Pulse#

Operational monitoring that sits alongside your cost data — logs, security, and health in one place.

📜

Logs & network logs

Activity, diagnostic, and audit logs plus NSG/VPC flow, firewall, and WAF logs — unified across all three clouds with multi-source filtering.
🛡️

Security findings

Defender for Cloud, Security Hub, GuardDuty, and Security Command Center findings, normalized and severity-ranked in one feed.
🎯

Ops insights & alerts

Advisor, Trusted Advisor, and Recommender guidance alongside Monitor, CloudWatch, and Cloud Monitoring alarms.
☸️

Kubernetes observability

Live pod logs and cluster events via the K8s Log Explorer, plus CPU/memory utilization metrics feeding right-sizing recommendations.

Cloud Map#

Interactive topology and inventory — see how everything connects, then act on it.

🗺️

Infrastructure topology

An interactive graph of resources and their relationships, with a detail panel unifying cost, network, security, recommendations, and alerts per resource.
☸️

Kubernetes topology

Drill from cluster to namespace to workload, with static security analysis of container configuration (privilege, limits, probes, secrets).

Alerts & Notifications#

One hub for "tell me when X happens" across cost, security, and resources — delivered where your team already works.

🔔

Alerts

Cost anomalies (rolling baselines) and budget breaches, plus security, recommendation, and resource signals — filterable in one feed.
⚙️

Notification rules

Self-service rules on any event or schedule, scoped to what each user can see. Recurring cost, inventory, and security digests.
🔗

Delivery channels

Route specific alerts to specific teams via Slack, Microsoft Teams, or generic webhook — in addition to email.

AI Assistant#

🤖

Ask your cost data in plain English

Powered by your own OpenAI or Anthropic key. The assistant queries your live data directly through read-only tools — no RAG, no embeddings, no data proxied through us. Ask "which VMs should we right-size?" or "are any budgets at risk?" and get answers grounded in real numbers.

Your key, your calls
Requests go straight from your container to the AI provider. CCO never sees your prompts or your data.

Enterprise & administration#

🏠

Self-hosted

Runs entirely in your Docker environment. Your credentials and cost data never leave your network.
🔐

SSO & RBAC

Azure AD, Google, and OIDC with IdP group sync. Four roles plus per-user data scoping down to the subscription.
🎨

White-label

Your logo, favicon, company name, and accent color across the app, login, emails, and reports.
🌐

Proxy support

Corporate proxy with CA certificate upload, authentication, and per-target connectivity testing.
🩺

Diagnostics

Service health, app and container logs, and email-to-support with log attachments — built in.
📋

Audit trail

Every configuration change, auth event, and CRUD action recorded, filterable, and exportable.
📦

Scales to large estates

Ingest the billing exports each cloud writes to storage (Azure blob, AWS CUR, GCP BigQuery) instead of the rate-limited query APIs — plus a paced deep-history backfill for years of data across many subscriptions.