Product · Find. Fix. Save. Repeat.

AWS Cost Optimization Software – Automated Fixes

CloudFix makes it easy to implement the latest AWS best practices for nonstop cost savings and a cloud that’s always running at its peak. It finds the savings AWS itself recommends and makes the change in your account, once you approve it.

110+ finders53 automated fixers30+ AWS services

Every tile is a finder.

Each one opens its own page.

  • Automated fixer
  • Guided fix
  • Reported by the finder

How it works

From finding to fixed, with you in the middle.

  1. Step 1 · Finder

    It spots the waste.

    The finder reads your account with a read-only role and flags every gp2 volume that can move to gp3.

    vol-0a3f…c19 gp2 · 500 GiB
    us-east-1 · attached to i-07…e2
  2. Step 2 · You

    You approve it.

    It appears in your Recommendations view with what it would save. Nothing runs until you switch it on.

    EBS Retype Gp2 to Gp3 Volumes
    12 volumes
  3. Step 3 · Fixer

    It makes the change.

    The fixer runs as an AWS Systems Manager Automation runbook in your account. It takes a snapshot, retypes the volume and logs the execution.

    snapshot snap-0e1…
    retyped gp2 → gp3
    execution logged

Example resource IDs. The mechanic is the EBS Retype Gp2 to Gp3 Volumes fixer's own: “Retype EBS volumes from GP2 to GP3 after taking a snapshot.”

What CloudFix is

AWS publishes the advice. CloudFix does the work.

AWS publishes a steady stream of advisories on how to run your cloud for less, from retyping storage to deleting idle resources. The CloudFix team turns the ones that can be applied safely by machine into fixers: specific, repeatable changes. Most customers spend just minutes a week reviewing and running them.

  1. 01Set up

    Connect with read-only roles.

    An AWS CloudFormation template creates the IAM roles CloudFix uses, on a least-privilege model: no long-term credentials, passwords or access keys.

    • Read-only IAM roles, no elevated permissions
    • Deployed with one CloudFormation stack
    • Connect many AWS accounts, see every recommendation in one place
  2. 02Find

    Finders read, and never change.

    Finders analyze your Cost and Usage Report and CloudWatch metrics for savings and performance improvements. They never access customer data in any data store.

    • Cost and Usage Report plus CloudWatch metrics
    • Scans continuously as your account changes
    • New finders as AWS publishes new advisories
  3. 03Fix

    You approve, then it runs.

    Approved fixes run as AWS Systems Manager Automation runbooks in your own account, under a dedicated CloudFix role, and every execution is logged.

    • Approve one by one, or set fixes to run automatically
    • Run now or schedule a day and time
    • You control who on your team can approve

The product

One table. Every saving, and what it is worth.

Every fixer CloudFix found in the account, what it would save, and what has already been realized. You approve what runs.

Recommendations
Easy (16)Safe, fully automatable savings.
$15.2K
Potential savings
$1.1M
Completed savings
$544.9K
Realized savings
34
Recommendations available
RecommendationPotentialCompletedRealizedAvailable
QuickSight Remove Idle Users$8.2K$134.1K$131.3K33
Long Stopped EBS Volume$4.6K$65.5K$114.2K0
EFS Intelligent Tiering$1.1K$5.6K$00
Unused Elastic IP Addresses$944$30.2K$30.1K0
Elasticsearch to Graviton$166$3.8K$2410
Transcribed from a CloudFix Recommendations screen. Figures are one account's, not a promise.

Security model

Built so a security review can say yes.

CloudFix uses AWS’s own tooling in your environment, on the AWS best practice of a least-privilege model. Nothing is installed on your servers, and nothing changes until you approve it.

  • Read-only finders

    Finders read your Cost and Usage Report and CloudWatch metrics. They never touch customer data in any data store, and they make no changes.

  • You approve every change

    Nothing runs until someone you allow approves it. Run a fix now, schedule it, or skip it.

  • AWS Systems Manager, in your account

    Each fix runs as an AWS Systems Manager Automation runbook under a dedicated CloudFix role, inside your own AWS account.

  • Snapshots and a full audit trail

    Where the fix supports it, CloudFix takes a snapshot first. Every execution has its own ID and log in your account.

  • SOC 2 Type 2 audited

    The audit report, policies and questionnaire answers are published in the CloudFix Trust Center.

    trust.cloudfix.com

Audited, certified and listed

  • AWS Partner, ISV Accelerate Program
  • AWS Qualified Software
  • SOC 2 Type 2 audited
  • AWS Partner with the Cloud Operations Competency
  • FinOps Foundation Member
  • Available in AWS Marketplace

How CloudFix accesses your accounts

Proof

What it has done for AWS teams.

$2B+
AWS spend analyzed
500+
companies
23%
average off the total AWS bill
12,000+
fixes completed
1.2M+
savings recommendations found

Integrations

100% committed to AWS.

CloudFix runs on AWS’s own services, in your account, under your control. It is an official AWS partner and Qualified Software vendor, with the AWS Cloud Operations Competency.

Runs on

  • AWS CloudFormation
  • AWS IAM roles
  • Cost and Usage Report
  • Amazon CloudWatch
  • AWS Systems Manager Automation

AWS programs

  • Official AWS partner
  • AWS Qualified Software
  • AWS Cloud Operations Competency
  • ISV Accelerate
  • GTM Accelerate

CloudFix and AWS

Two products, one bill

  • Usage · what you run

    CloudFix Fix the waste.

    Finds idle, oversized and mis-typed resources and fixes the ones you approve, in your account. Typically 15–60% on each AWS service optimized, 20–35% off the total bill.

    You are here

  • Rate · what you keep

    RightSpend Cut the price of what stays.

    Commitment-Free Discounts on the EC2 you keep: 20–55% off on-demand, no 1- or 3-year lock-in.

    How RightSpend works

See which fixers apply to your account.

About 5 minutes to connect with read-only roles. Results typically within 24 hours.