# Introduction

> ZopNight recovers the cloud waste your provider's native advisor misses, running 490 rules across AWS, GCP, and Azure with every finding reconciled to your actual bill.

Source: https://zop.dev/docs/zopnight/introduction

---

## What is ZopNight

ZopNight is the cost-recovery layer for cloud accounts that have outgrown their provider's native advisor. In our experience, your cloud advisor surfaces only a small share of the opportunity (roughly 14%). **The rest typically accumulates silently every month.** ZopNight surfaces it line-by-line, reconciled against your actual bill before it reaches your dashboard.

![ZopNight dashboard: total resources, current spend, realized savings, and savings-rate KPIs above the cost-over-time trend chart](https://storage.googleapis.com/zopdev-blog-resources/1/files/originals/20260707/bb5fae8c-cd26-43ec-8bdc-d7e192ddb91e-dashboard.png)

*ZopNight workspace. Dashboard with cost trend, recommendations, and connected providers.*

It runs in **read-only** mode by default. You can stay read-only forever, or opt into one-click remediation when you're ready. Your databases (RDS, Aurora, Cloud SQL, ElastiCache, Azure SQL) are never touched.

## Three engines, one workspace

ZopNight is three coordinated engines that share one resource inventory and one audit trail:

![Cost Flow Sankey view showing every dollar cascading through providers, accounts, resource types, and teams; with a hover tooltip surfacing $201.50 reclaimable on the highlighted flow](https://storage.googleapis.com/zopdev-blog-resources/1/files/originals/20260602/e6d6c06c-982c-43ce-a32f-586b9c1b4218-zopnightcostflow.png)

*Three engines, one workspace; the Cost Flow Sankey traces every dollar from provider down to team, with savings reclaimable surfaced inline.*

- **Lens**: finds the waste. 490 rules across AWS, GCP, and Azure. Eight categories: idle, right-sizing, schedule, orphan, compliance, discount, security, reliability. Every finding ships with the metric, the threshold, the action, and the dollar. No black-box ML.
- **Smart Scheduling**: captures non-prod cycles. Cron-based, dependency-aware, per-timezone. 30+ resource types, including VMs, Kubernetes, SQL, Databricks. Storage wakes before compute. Production-safe overrides.
- **Smart Autoscaling by Tide**: sizes for the moment, not the peak. ASGs, scale sets, AKS pools. 30–40% compute reduction on eligible workloads. Three modes; monitor → recommend → autopilot.

## What you get on day one

- **Read-only connect in 5 minutes**: IAM role, service principal, workload identity, or Databricks OAuth. No agents to install.
- **Reconciled findings**: every dollar verified against Cost Explorer / Cost Management / BigQuery billing exports.
- **Inventory of every resource**: 380+ resource types, three levels deep (cluster → nodepool → VM).
- **Boardroom-ready reports**: Organisation, Teams, Tags. Cost Flow Sankey, four columns deep. Five-dimensional anomaly detection.
- **Audit trail**: every API call captured. Forwardable to Splunk, Datadog, or any SIEM on the Enterprise tier.

## Security posture

- ISO 27001:2022 and SOC 2 Type II; independently audited, attestation letter on request.
- AES-256-GCM credential encryption with per-account envelope keys.
- SaaS, single-tenant, or on-prem deployment options.
- India-resident option, MeitY-empaneled (Mumbai region) for IRDAI / DPDP workloads.

## Where to next

- **[Quickstart](https://zop.dev/docs/zopnight/quickstart)**: connect your first cloud and see findings in under five minutes.
- **[Authentication](https://zop.dev/docs/zopnight/authentication)**: IAM roles, service principals, and workload identity setup per cloud.
- **[Cost graph](https://zop.dev/docs/zopnight/concepts/cost-graph)**: how findings are reconciled to your bill.
- **[Scheduling](https://zop.dev/docs/zopnight/concepts/scheduling)**: how non-prod cycles get captured.
