Skip to main content
schedule · aws

Dev and test SageMaker real-time endpoints with measured idle hours that could be torn down off-hours

resource types
1
rule IDs covered
1
severity
medium

What does ZopNight detect here?

ZopNight flags in-service, single-variant SageMaker real-time endpoints named as dev or test, and not tagged or named as production, when their weekly pattern shows idle hours. SageMaker endpoints have no stop action, so ZopNight recommends deleting the endpoint off-hours and recreating it from its saved `EndpointConfigName`; you run that schedule. The saving is the endpoint cost times the idle share.

Signal and threshold

How ZopNight evaluates Dev and test SageMaker real-time endpoints with measured idle hours that could be torn down off-hours.
Field Value
Rule IDsRC-1611
Categoryschedule
Severitymedium
Metricnone — pure configuration read
Thresholddev/test endpoint with measured idle share > 0
SourceZopNight
Permissions usedsagemaker:ListEndpoints · sagemaker:DescribeEndpoint · sagemaker:ListTags

Endpoints cannot be stopped, only deleted

A real-time endpoint bills for its instances for as long as it exists. There is no stop button: AWS’s guidance is to delete endpoints to stop incurring charges, and the same page notes that deleting an endpoint does not delete its endpoint configuration or its model. That makes an off-hours pause possible. Delete the endpoint in the evening and create it again in the morning from the configuration you kept.

Checking an endpoint before scheduling it

Terminal window
aws sagemaker list-endpoints --status-equals InService \
--query 'Endpoints[].EndpointName' --output text
aws sagemaker describe-endpoint --endpoint-name dev-recs-endpoint \
--query '[EndpointStatus,EndpointConfigName,length(ProductionVariants)]'
aws sagemaker list-tags \
--resource-arn arn:aws:sagemaker:us-east-1:123456789012:endpoint/dev-recs-endpoint

Which endpoints are considered

  • It is a real-time endpoint in InService status. Asynchronous and serverless endpoints are out of scope: they already scale down when idle or bill per use.
  • It has exactly one production variant.
  • Its name contains a dev or test marker such as dev, test, qa or staging, and neither its name nor its environment tag marks it as production. A dev tag on a neutral name is not enough.
  • It carries no schedule tag from another tool.
  • It is billed on demand, not covered by a Savings Plan or reservation.
  • ZopNight has a measured weekly pattern for it with an idle share above zero.

Why multi-variant endpoints are skipped

ZopNight’s usage pattern for an endpoint is built from its first production variant. On an A/B, blue/green or shadow endpoint, that variant can look idle while another serves live traffic, and deleting the whole endpoint would take that traffic down. Until usage is measured per variant, these endpoints never get a schedule recommendation. Endpoints with no measured idle share are skipped as well; the rule no longer assumes a fixed working week.

Idle share of the endpoint bill

Terminal window
saving = monthly endpoint cost x measured off-hours idle share

Running the teardown on a schedule

  1. Take the start and stop times from the recommendation.
  2. Automate both ends, for example with an EventBridge schedule that calls a small Lambda function: in the evening aws sagemaker delete-endpoint --endpoint-name dev-recs-endpoint, and in the morning aws sagemaker create-endpoint --endpoint-name dev-recs-endpoint --endpoint-config-name dev-recs-config.
  3. Keep the endpoint configuration and model; they are what the morning job recreates from.
  4. If traffic is sparse all day, not just at night, a serverless endpoint removes the need for any schedule.

See it fire on your bill.

Connect an account read-only. The first findings land in minutes.

472 rule families across 353 resource types on 22 platforms. Every threshold, metric, and IAM action is documented on these pages before you grant anything.

472 rule families documented
353 resource types covered
read-only default access level
Multi-cloud automation· Production-ready in 30 min· SOC 2 · ISO 27001· 20–60% off the bill, first month· 4 platforms · 1 console· Multi-cloud automation· Production-ready in 30 min· SOC 2 · ISO 27001· 20–60% off the bill, first month· 4 platforms · 1 console·