DigitalOcean Permissions
Vantage connects to DigitalOcean using a personal access token scoped to Billing (billing:read) and validates access by reading the daily invoice preview. Vantage cannot create, modify, or destroy Droplets, or perform any actions that incur costs in your DigitalOcean account.
It’s best practice to create a dedicated token for Vantage and rotate it according to your organization’s security policy.
Connect Your DigitalOcean Account
Prerequisites
- You must have a Vantage Organization Owner or Integration Owner role to add or remove this integration. See the Role-Based Access Control documentation for details.
- You need access to a DigitalOcean team that can create personal access tokens.
- Create a free Vantage account, then follow the steps below to integrate DigitalOcean costs.
If your organization restricts access to the provider by IP address, add the following Vantage IP addresses to your provider’s allowlist:
Create the Connection
1
Open the DigitalOcean Generate New Token page.
2
Give the token a descriptive name and set Expiration to No expiration.
3
Under Scopes, select Custom Scopes.
4
Under Custom Scopes, select Billing (
billing:read).5
Generate the token and copy it.
6
From the top navigation in Vantage, click Settings.
7
On the left navigation, select Integrations > DigitalOcean.
8
The DigitalOcean integrations page is displayed. Ensure you are on the Connect tab.
9
Click Add API Token and complete the integration form:
- API Token: Paste the DigitalOcean personal access token.
- Description: Enter a label to identify the DigitalOcean team or account this token belongs to.
10
Click Connect Account.
As soon as costs are processed, they will be available on your All Resources Cost Report. If you decide to remove your DigitalOcean integration from Vantage, all costs associated with that DigitalOcean token will be removed from the Vantage console.
Next Steps - Manage Workspace Access
Once the import is complete and the integration status changes to Stable, you can select which workspaces this integration is associated with. See the Workspaces documentation for information.Data Refresh
See the provider data refresh documentation for information on when data for each provider refreshes in Vantage. DigitalOcean data refreshes once daily. Because Vantage reads daily billing insights, in-month costs update daily and may differ from the finalized month-end invoice.DigitalOcean Reporting Dimensions
On DigitalOcean Cost Reports, you can filter and group across several dimensions:- Account (the DigitalOcean team URN, such as do:team:…)
- Service (i.e., the DigitalOcean product derived from the SKU, such as Droplets, Droplet Backups, Droplet Snapshots, Droplet Custom Images, Volume Snapshots)
- Category (i.e., the Droplet size parsed from the line-item description, such as s-2vcpu-4gb; blank for line items without a size, such as snapshots, backups, custom images, and taxes)
- Region (i.e., the DigitalOcean region, such as nyc3)
- Charge Type (Usage or Tax)