User Guide

Cloud Map

Interactive topology and inventory — see how your infrastructure and Kubernetes workloads connect, then act on each resource in place.

Two topologies#

🗺️

Infrastructure topology

An interactive graph of resources and their relationships across Azure, AWS, and GCP — compute, storage, networking, and data — with peering, gateways, route tables, and firewalls.
☸️

Kubernetes topology

Drill from cluster to namespace to workload, following ownership and selector relationships, with 15 kind-specific node types.

Every resource, in context#

Click any resource to open a detail panel that unifies what the other modules know about it — no jumping between pages:

  • ✓Overview — key details normalized across clouds (created time, size/SKU, private/public IP, engine, storage)
  • ✓Costs — what this resource spends
  • ✓Network — connectivity and exposure
  • ✓Security — findings that touch it
  • ✓Recommendations — optimization opportunities
  • ✓Alerts — anything currently firing
Cost + operations + topology in one panel
Because Cloud Map shares data with Cost Optimizer and Cloud Pulse, a single resource panel answers “what is this, what does it cost, is it exposed, and should I change it?” at once.

Kubernetes security analysis#

As Cloud Map discovers workloads, it runs a static analysis of their container configuration and files findings into Cloud Pulse:

  • ✓Privileged / root containers and privilege escalation
  • ✓Missing resource limits
  • ✓Use of the default namespace
  • ✓Mutable image tags (e.g. :latest)
  • ✓Missing liveness/readiness probes
  • ✓Secrets exposed through environment variables

Share it#

Export a topology as a PNG, email it, or refresh it on demand. The Resource Inventory report captures the same inventory as a PDF or Excel deliverable — filterable to public-facing resources only.

Tip
Cloud Map is where topology meets action: the same discovery that draws the graph feeds Kubernetes cost allocation, right-sizing recommendations, and the security feed.