Cloud accounts
One connection per cloud per organization — AWS credentials feed Cloud Monitoring, Orchestration, and the Lambda job stream; GCP and Azure store the account for the gateway readers
AWS
Regions, credentials (default chain, access keys, or an assumed role), the member-account role, and the thresholds that raise an anomaly.
The credential is only half of it:Finish setup & testshows the ARN your role must trust, the metric-stream endpoint and key, and probes what the credential can actually do.
Google Cloud
Project, service-account key or workload identity, and the regions to read. Apigee is also readable as an API gateway.
Microsoft Azure
Subscription, directory tenant, app registration credentials, and the resource groups to read. Azure API Management is also readable as an API gateway.
Linked accounts
Every AWS account the saved credential reaches, plus any managed cloud gateway in use
No matching results
Streamed resources
Everything the CloudWatch metric stream has described — one row per resource, across every service you selected
No matching results


