Skip to main content

Billing

Administration → Billing covers your subscription, what you are using against it, and how it is paid.

Access is deliberately separable: billing_admin exists so that whoever holds the budget does not need administrative access to your security data. See Roles and permissions.

Plan​

Your plan determines which parts of the platform you can use, expressed as entitlements. Changing plan changes what is available immediately rather than at the next billing period.

Add-ons extend a plan - unlocking a capability, raising a limit, or adding metered capacity.

Usage​

Where a plan includes a quantity, usage is metered against it and shown here.

Look at this before you need to. Consumption accrues quietly and the moment you notice is usually the moment something has already happened - work being refused, or an invoice larger than expected.

Two things drive consumption more than anything else:

  • Log ingestion volume, controlled by which sources you send and at what tier. See Detection engineering.
  • Assessment work, where your arrangement includes it.

Payment methods and contact details​

The payment method on file and the billing contact and address are managed here.

The contact and address are editable by a slightly wider group than the rest of billing - billing_admin, plus your service provider's staff - because they are the record used to address an invoice, not a control over spending.

Invoices and history​

Billing history lists past invoices and what they covered.

If an invoice is larger than expected, usage over the period is the place to start: metered consumption against tiered pricing is the usual explanation, and the usage view shows what accumulated rather than only the total.

Service credits​

Where your arrangement includes prepaid service credits, balances and their ledger are shown here - what remains, and what drew it down.

The ledger is worth checking before commissioning work rather than after, since the question "do we have credit for this?" is much easier to answer in advance.

Quotes​

Where a plan is not self-serve, quotes are issued and accepted here rather than by email. An accepted quote is what changes your subscription.

API​

The endpoints behind this section are in the API reference.

Next​