Create a free Vantage account then follow the steps below to integrate Azure costs.
Connecting Your Azure Account
Vantage integrates with your Azure account through the use of a Active Directory Service Principal. This principal is then assigned access to either management groups or individual subscriptions. Any subscriptions that are part of a resource group will be automatically imported.
Read-Only by Default
The service principal is granted Reader permissions. It does not have permissions nor will it ever attempt to make any changes to your infrastructure.
Creating an Azure Service Principal
az ad sp create-for-rbac -n "vantage"
This will output the following:
Record the appId, tenant and password as you will enter these into the Vantage console.
Granting the Service Principal Permissions
Grant Permissions to the 'appId' from the service principal created above. The scope can be a subscription or management group.
az role assignment create --assignee <SERVICE_PRINCIPAL_APP_ID> \
--role Reader \
Save the Credentials in Vantage
Visit the integrations page and add an Azure Integration.