Our service is secure and non-intrusive. We require no access to the data within your accounts.
Registration of your Cloud Provider Accounts with us is in accordance with the terms, conditions and provisions given by AWS to any reseller. We use an AWS best practice RBAC, IAM and SCP approach to grant access on a non-intrusive, least-privilege basis.
As your reseller we will have access to cost and usage metadata about your accounts. We use this to provide our recommendations, apply discounts and produce your insights and usage dashboard for reporting.
Read data about your payer account:
List accounts and their tags, describe cost and usage report definitions and read the S3 bucket that holds those reports.
Validate data with Cost Explorer:
Used to verify our optimization actions have been correctly applied by AWS, view usage, billing and savings plan information.
Commitment-holding account access control:
We buy, change and sell reserved instance and savings plan commitments in dedicated holding accounts. We have admin access to these accounts.
Reserved Instance Marketplace
We grant our commitment holding accounts the ability to sell unused Reserved Instance commitments when required on the AWS Reserved Instance Marketplace.
Any reserved instances or savings plans we purchase to access discounts are registered to “Commitment Holding Accounts” used exclusively by us. We may ask your team to create some AWS accounts, under our payer account that will always remain owned by you. We may also create additional accounts that will always be owned by us. For your convenience and transparency, as our customer, your Portal homepage summarizes the commitments in holding accounts you own.