Documentation / Getting Started

Getting Started

Connect your Azure subscription and have full cost visibility in about 10 minutes.

How Cirrova connects to Azure

Cirrova connects to your Azure environment via a service principal with read-only access to Azure APIs. Once connected, Cirrova pulls your cost and usage data and surfaces it as near real-time dashboards, anomaly alerts, and optimisation insights.

No agents or software need to be installed in your Azure environment. Cirrova uses standard Azure APIs and holds no standing write access to your subscriptions.

Cirrova is read-only by default. We never create, modify, or delete resources in your Azure subscriptions.

What you'll do in this guide

The next four steps walk you through granting Cirrova read-only access to your Azure environment. Each step is short and focused:

  1. Register an app in Azure Entra ID to create a service principal for Cirrova.
  2. Create a client secret so Cirrova can authenticate as that service principal.
  3. Assign three read-only roles at the management group level so Cirrova can see all your subscriptions.
  4. Enter the credentials in Cirrova to complete the connection.

The whole process takes about 10 minutes.

Before you begin

Make sure you have:

  • An active Microsoft Azure subscription
  • Permission to register an application in Azure Entra ID (or an admin who can do this on your behalf)
  • Permission to assign roles on the Tenant Root Management Group (or an admin who can)

We recommend assigning roles at the Tenant Root Management Group level so that all current and future subscriptions are automatically in scope.