Main content
Oracle Cloud Infrastructure cost optimization

OCI cost optimization with Oracle Cloud in the same ledger as every other cloud

Varcio is an Oracle Cloud (OCI) cost optimization tool that connects with an API signing key encrypted at rest, reads OCI’s own cost, inventory, monitoring, Cloud Advisor, Cloud Guard and Budgets data, and runs 38 OCI detectors. Ten remediation types, from stopping idle instances to deleting unattached volumes, run behind the same guardrails as every other cloud, and OCI cost sits in one ledger with the rest of your estate.

38OCI detectors, plus 23 cross-cloud detectors on the shared ledger
API signing keyPrivate key, fingerprint and optional passphrase, encrypted at rest
Read-onlyThe complete analytical product runs on read-only credentials
10OCI remediation types, each behind approval, protected tags and audit logging
Detection

What Varcio finds on OCI

38 OCI detectors look across your tenancy for storage, compute and databases that bill without delivering value, and put a monthly cost on each one.

Oracle Cloud often arrives through a specific route — a database workload, an Oracle licensing decision, or a migration programme — and then runs beside a larger AWS, Azure or Google Cloud estate. The risk is that OCI becomes the cloud nobody reviews, with its own console, its own reports and no place in the organisation’s cost process.

Varcio brings OCI into the same process. Spend, inventory, monitoring and Oracle’s own recommendations feed 38 OCI detectors, and every finding is costed and ranked by savings, confidence and effort alongside findings from your other clouds.

Unattached and orphaned storage

Storage that keeps billing after the instance or volume that needed it has gone, or that never moves to a cheaper tier.

  • Unattached block and boot volumes
  • Orphaned volume backups
  • Buckets without lifecycle policies

Idle compute and databases

Capacity that is provisioned but not doing meaningful work, including instances that are stopped but still hold capacity.

  • Idle compute instances
  • Idle DB systems and Autonomous Databases
  • Stopped instances holding capacity

Legacy and oversized

Resources running on older shapes, or provisioned well above what they need.

  • Legacy compute shapes
  • Oversized load balancer bandwidth

Oracle recommendations and backlog

Oracle’s own signals, read into the same ranked queue as Varcio’s detectors.

  • Cloud Advisor recommendations
  • Cloud Guard finding backlog
  • Budget alert gaps

Anomalies, allocation and governance

Unexpected changes in OCI spend are caught by anomaly detection, and tag governance, allocation, showback and policies apply to OCI as they do everywhere else.

  • Anomaly detection on OCI spend
  • Tag governance and showback
  • Advisory and blocking policies

Cross-cloud duplication

23 cross-cloud detectors run on the normalised ledger, which matters when OCI is the destination or source of a migration.

  • Duplicated environments spanning clouds
  • Redundant workloads running in more than one cloud

The signals behind OCI findings

Each OCI detector uses the OCI signals that answer its question. These are the sources Varcio reads from your tenancy.

  1. Spend data

    The Usage API and Cost and Usage Reports from Object Storage, in FOCUS and native formats, show cost that is moving without a matching change in demand.

  2. Inventory

    Resource Search shows what exists in the tenancy and what it is attached to, which is how unattached volumes and orphaned backups are found.

  3. Utilisation metrics

    OCI Monitoring shows whether compute instances and databases are doing meaningful work.

  4. Oracle recommendations

    Cloud Advisor recommendations are read alongside Varcio’s own detectors, and can be applied back through Cloud Advisor.

  5. Security and budgets

    Cloud Guard problems, IAM configuration and Budgets are evaluated alongside cost, so findings carry their governance context.

Connection

How Varcio connects to OCI

OCI’s standard API signing model, encrypted key storage, OCI’s own cost and inventory services, and the same read-only-first boundary as every other cloud.

API signing key

You create an API signing key for an OCI user and give Varcio the private key (PEM), its fingerprint and, if you set one, the passphrase. Varcio stores them encrypted at rest. You manage the user, its public key and the IAM policies that govern it in your tenancy, so access can be rotated or revoked on your side.

OCI data sources

  • Usage API for spend
  • Cost and Usage Reports from Object Storage, in FOCUS and native formats
  • Monitoring for utilisation
  • Resource Search for inventory
  • Cloud Advisor recommendations
  • Cloud Guard problems
  • Budgets

Read-only, indefinitely

Findings, forecasts, anomaly detection, allocation, tag governance and Apex questions all run on read-only credentials with no time limit.

Write access on the same key

If you want Varcio to act, you grant write policies to the same OCI user. Varcio probes those permissions separately from the read connection, and every change still passes the guardrails below.

Governed OCI write actions cover Budgets sync, Resource Scheduler schedules, instance actions and Cloud Advisor bulk apply. Instance actions and Cloud Advisor bulk apply always require approval.

Rate optimization

Universal Credits modelling

Once waste is removed, a Universal Credits commitment lowers the rate you pay for steady OCI usage.

Varcio models OCI Universal Credits scenarios from your usage, covering a monthly commit, an annual commit and a 3-year commit, each with an estimated discount range, so you can see how coverage and savings change before you talk to Oracle.

These scenarios are modelled only. Varcio does not purchase OCI commitments; the commercial agreement stays between you and Oracle.

What Varcio covers on OCI

  • Monthly Universal Credits commit, modelled
  • Annual Universal Credits commit, modelled
  • 3-Year Universal Credits commit, modelled
  • Estimated discount range for each scenario
  • Modelling only, with no purchase
Remediation

Remediation with guardrails

OCI findings can be carried through to the change itself, with the same approval and audit trail as the rest of the estate.

Varcio has ten OCI remediation types, ordered the way a careful operator works: stop before delete, and reversible changes before anything that is not. Deleting an unattached volume takes a backup first and keeps it as the undo path. Deleting an orphaned volume backup cannot be undone, and Varcio says so before it runs.

Parking schedules can stop instances and scale instance pools outside working hours. Approvals can be handled in Slack or Teams, and Varcio verifies realised savings against subsequent spend rather than counting a closed ticket as a result.

Example actions on OCI

  • Stop idle compute instances
  • Deactivate unused API signing keys
  • Apply governance tags
  • Make public buckets private
  • Enable bucket versioning
  • Add bucket lifecycle policies
  • Delete unattached block and boot volumes
  • Delete orphaned volume backups
  • Delete orphaned network gateways and security lists
  • Apply Cloud Advisor recommendations
  • Parking: instances and instance pools

Guardrails every remediation inherits

These controls apply to all remediation Varcio executes, on every cloud, alongside the write permissions you grant and Varcio verifies before anything changes.

Protected-tag exemption

Resources carrying a protected tag are excluded from every remediation run, so a production database or a regulated workload cannot be changed by a rule that happens to match it.

Execution windows

Approved changes run only inside the windows you define, which keeps stops, deletions and resizes away from peak traffic, release trains and change freezes.

Rollout-safety gates

Before a live run, Varcio checks for step-up approval on high blast-radius changes, a rollback success floor, and a maintenance window for larger blast radius. If a gate is not met, the run drops to a dry run instead.

Dry run, action caps and budgets

Any action can be previewed without making live API calls, and individual rules can be held to dry run. Per-rule action caps, a maximum number of actions per run and a monthly action budget bound how much changes at once.

Approval, and Autopilot limits

Write actions requested through Apex come back as a plan that runs only after an authorised person types APPROVE, backed by a single-use token, or approves from Slack or Microsoft Teams. Autopilot runs in observe, suggest or autopilot mode. In autopilot mode it can act without a person above a confidence threshold, including deleting unattached volumes and orphaned snapshots, but resources that look production, public, critical or deletion-protected go to approval instead.

Full audit logging

Every action records who requested it, who approved it, what changed and when, so finance, security and auditors can reconstruct any change after the fact.

Native tools

OCI Cost Analysis, Budgets, Cloud Advisor and Varcio

Oracle provides solid native cost tooling in every OCI tenancy. Here is what each tool offers, according to Oracle documentation.

OCI Cost Analysis

Charts and downloadable reports of cost data, filtered and grouped by compartment, tag, service, region, SKU and resource OCID, with forecasting based on past usage and up to ten saved reports.

Cost and Usage Reports

CSV files generated daily and stored in Object Storage, useful for detailed breakdowns by SKU and resource.

OCI Budgets

Budgets scoped to compartments or tags, with alert rules on actual or forecasted spend, evaluated every 24 hours and delivered by email, with Events service integration.

OCI Cloud Advisor

Daily analysis with cost recommendations for underutilised Compute instances, unattached block and boot volumes, Object Storage buckets without lifecycle policies and overprovisioned Autonomous AI Lakehouse instances.

OCI native tools and Varcio, capability by capability. Native-tool details are summarised from the provider documentation listed under Sources.
CapabilityOCI native toolsVarcio
Cost visibilityCost Analysis grouped by compartment, tag, service and more; daily Cost and Usage ReportsOCI in one normalised ledger with AWS, Azure, Google Cloud and Kubernetes
Waste detectionCloud Advisor cost recommendations with estimated savings38 OCI detectors on spend and inventory, plus 23 cross-cloud detectors
PrioritisationRecommendations with cost savings estimatesFindings costed and ranked by savings, confidence and effort across every cloud
Budgets and alertsBudgets on compartments or tags with actual and forecast alert rulesAnomaly detection, forecasting, budget and policy guardrails, alerts in Slack or Teams
AllocationCompartment and tag grouping in Cost AnalysisTag governance, cost allocation and showback applied consistently across clouds
CommitmentsUniversal Credits agreed with OracleMonthly, annual and 3-year Universal Credits scenarios modelled with estimated discount ranges; no purchase
Acting on findingsChanges made in the OCI Console, CLI or infrastructure code; Cloud Advisor can apply its own recommendations10 remediation types plus parking, with approval, protected tags, execution windows, rollout-safety gates and audit log
Pre-merge cost reviewNot covered by the tools listed herePR cost review prices Terraform changes before they merge

Scroll sideways to see the full table.

What Varcio adds

If OCI is your only cloud, Cost Analysis, Budgets and Cloud Advisor give you visibility, alerting and a useful set of recommendations at no extra cost. Varcio matters when OCI is one part of a wider estate and you need a single cost process rather than one per provider.

Varcio brings OCI into the same ledger, ranking, allocation and governance as AWS, Azure, Google Cloud and Kubernetes, runs cross-cloud detectors across all of them, and gives FinOps, engineering and leadership one place to see and act on cost. Apex, the natural-language assistant, answers questions that span clouds.

Teams

Who uses Varcio for OCI

Cost is shared work. Each team sees the same findings and ledger, framed for the decisions it owns.

Platform engineering

Sees OCI findings in the same queue as findings from other clouds, with evidence and a recommended action, instead of checking a separate console.

FinOps and finance

Allocates OCI spend with the same tag governance and showback model as the rest of the estate, and reports on every cloud in one place.

SRE and operations

Receives OCI anomalies and policy alerts in Slack or Teams alongside alerts from other clouds.

Engineering leadership

Gets a complete multi-cloud picture that includes Oracle Cloud, with forecasts and a ranked savings backlog.

FAQ

OCI cost questions, answered

How do I reduce my Oracle Cloud (OCI) costs?

Use Cost Analysis grouped by compartment and tag to see where spend is concentrated. Act on Cloud Advisor cost recommendations such as underutilised Compute instances, unattached block and boot volumes, and Object Storage buckets without lifecycle policies. Set budgets on compartments or tags, enforce consistent tagging, and if you run other clouds, bring OCI into the same cost process so it is reviewed with everything else.

Does Varcio support Oracle Cloud Infrastructure?

Yes. Varcio connects to OCI with an API signing key encrypted at rest, reads the Usage API, Cost and Usage Reports, Monitoring, Resource Search, Cloud Advisor, Cloud Guard and Budgets, and runs 38 OCI detectors. OCI cost sits in the same normalised ledger as AWS, Azure, Google Cloud and Kubernetes.

Is it safe to connect a cost tool to my OCI tenancy?

Varcio stores the OCI API signing key, fingerprint and optional passphrase encrypted at rest, and the whole analytical product runs on read-only access indefinitely. You manage the associated user and policies in your tenancy. If you want Varcio to act, you grant write policies to the same user and Varcio probes those permissions separately. Instance actions and Cloud Advisor bulk apply always require approval.

How is Varcio different from OCI Cloud Advisor?

Cloud Advisor analyses your tenancy daily and recommends cost, performance and availability improvements for OCI. Varcio reads those recommendations, runs its own 38 OCI detectors, adds cross-cloud detection, ranks OCI findings alongside findings from other clouds, and applies the same allocation, governance and approval workflow across your estate.

Can Varcio fix OCI waste?

Yes. Varcio has ten OCI remediation types: stopping idle instances, deactivating unused API keys, applying governance tags, making public buckets private, enabling bucket versioning, adding bucket lifecycle policies, deleting unattached volumes, deleting orphaned volume backups, deleting orphaned network gateways and security lists, and applying Cloud Advisor recommendations. Parking schedules cover instances and instance pools. Every action runs behind the same guardrails as other clouds.

Can Varcio buy OCI commitments?

No. Varcio models Universal Credits scenarios, covering a monthly commit, an annual commit and a 3-year commit, with estimated discount ranges. The purchase itself stays between you and Oracle.

Why manage OCI costs in a multi-cloud tool?

When OCI runs beside other clouds, a separate process tends to leave it unreviewed. A shared ledger lets cross-cloud detectors catch duplicated environments and redundant workloads, and lets finance allocate every cloud with one model.

When will I see OCI findings?

Findings appear from the first scan after you connect. The free trial runs entirely on read-only access.

Bring Oracle Cloud into your cost process

Connect OCI with a read-only signing key and see it in the same ledger as the rest of your clouds.