Release Notes 6.4 (2605)
September 2026
Summary
CoreStack v6.4 deepens FinOps cost attribution for complex reseller networks, extends AI-native visibility into the platform's inventory and cost workflows, and modernizes Graphion's governance experience. AI-Native Service Discovery brings AWS Bedrock and Anthropic's Claude API into CoreStack's inventory, cost attribution, and governance workflows, using accounts and API keys customers have already onboarded.
On the FinOps side, AI-Native Service Discovery gives teams automatic visibility into AWS Bedrock and Claude API usage across accounts they've already onboarded, mapping cost down to the specific agent and API key that generated it. A new Distributor / Indirect Partner report gives every tier of a multi-tier reseller network a single, role-scoped view of consolidated charges, and cost widgets across the platform now support multi-metric Cost, Usage, and Rate analysis — including a new multi-axis combo chart and drill-down experience on the Cost Trend widget.
On the Graphion side, the Policies and Compliance pages have been rebuilt for a faster, more consistent experience, and ITSM synchronization now keeps Graphion Threats current automatically as cloud provider data updates — reducing manual re-entry for security teams.
Release Highlights
- Distributor / Indirect Partner Consolidated Charges Report — new report gives every tier of a multi-tier reseller network a role-scoped, hierarchical view of consolidated charges
- Multi-Metric Cost, Usage, and Rate Analysis — cost widgets across the platform now support Usage and Rate alongside Cost, including a new Cost Trend multi-axis combo chart
- AI-Native Service Discovery — automatic visibility into AWS Bedrock and Anthropic's Claude API, with cost mapped to the agent and API key that generated it
- Graphion Governance UI Modernization — rebuilt Policies and Compliance pages, plus automatic ITSM synchronization for Graphion Threats
FinOps
AI-Native Service Discovery
Description: AI-Native Service Discovery brings AWS Bedrock and Anthropic's Claude API into CoreStack's inventory, cost attribution, and governance workflows, using accounts and API keys customers have already onboarded. Bedrock gets automated discovery and cost visibility; Claude API usage is mapped down to the specific agent and API key that generated it.
Key Capabilities:
- Auto-discovers Bedrock and Claude API usage within 24 hours — no new connector, IAM role, or manual onboarding for Bedrock
- Maps Claude API cost to the Agent and API key that generated it (including shared/multi-key cases), rolling into existing chargeback/showback Dimensions
- Captures Claude API usage detail — requests, tokens, rate limits, searchable invocation logs, and key/agent lifecycle events
- Exports AI inventory as CSV or scheduled digests
Key Benefits:
- Surfaces AI shadow-spend across Bedrock and Claude API in one inventory — 90% within 24 hours, 100% within 7 days
- Cuts cost-spike investigation from hours to a few clicks
- Reduces manual AI inventory effort from 8+ hours/quarter to under 30 minutes
Supported Providers: AWS (Bedrock), Anthropic (Claude API)
Usage Metric Support Across Cost Widgets
Description: Cost widgets across CoreStack — Summary, Forecast, and Measure by Dimension — now support a selectable "Usage" metric alongside Cost, so teams can view resource consumption (vCPU-hours, GB, requests) rather than just spend. When Usage is selected, a Consumed Unit filter lets users focus on a specific unit of measure.
Key Capabilities:
- Adds a selectable Usage metric to the Summary, Trend, Forecast, and Measure by Dimension widgets
- Applies a mandatory Consumed Unit filter (e.g., GB, Hrs, vCPU-Hours) when Usage is selected
- Shows Cost and Usage side-by-side in the group-by-None view to surface efficiency trends
- Adjusts forecasting logic to follow the usage trendline when the Usage metric is selected
- Automatically disables groupbys or drill-downs not yet supported for usage-based data
Key Benefits:
- Lets teams correlate usage patterns with cost trends to spot optimization opportunities directly in existing widgets
- Surfaces unit-cost efficiency signals — usage up with cost down (or vice versa) — without building a separate report
Cost Trend Widget — Multi-Metric Combo Chart & Drill-Down
Description: The Cost Trend widget now surfaces Cost, Usage, and Rate together in a single interactive multi-axis chart, so FinOps analysts and platform teams can see why costs changed, not just that they changed. Configuring a Consumed Unit filter unlocks a combo chart with legend-based metric toggling and drill-down from account level all the way to individual resources across all three metrics.
Key Capabilities:
- Visualizes Cost, Usage, and Rate together in a multi-axis combo chart once a Pricing Unit/Consumed Unit filter is applied
- Toggles metrics and Group By items on or off via legend click or Shift+Click, without reconfiguring the widget
- Drills down from Tenant → Cloud Account → Service → Usage Type → Region → Resource, with all three metrics drilling together
- Groups by 25+ business dimensions (cloud account, region, tags, instance type, purchase option, and more) for chargeback and allocation
- Exports PNG or CSV reflecting the current legend selection and Group By state
Key Benefits:
- Cuts monthly cost analysis time by up to 50% by replacing manual cross-referencing of cost, usage, and pricing reports with one widget
- Traces cost spikes to the root resource in under 5 minutes using synchronized drill-down across all three metrics
- Eliminates 2+ hours of manual Excel chargeback work per month by combining dimension-based Group By with Usage and Rate breakdowns
Platform
Angular Migration for Templates
Description: The Templates module (CloudOps → Orchestration → Templates) has been migrated to Angular, bringing the Templates list and detail views, Execute & Jobs, Schedules, and the Template Builder onto CoreStack's current UI framework.
Key Capabilities:
- Templates List and Detail views
- Template Execute & Jobs
- Template Schedules
- Template Builder (components, variables, constraints)
Key Benefits:
- Delivers a faster, more consistent Templates experience in line with the rest of the modernized platform
- Preserves existing template creation, execution, and scheduling workflows — no retraining required
Graphion
Governance UI Modernization — Policies and Compliance Pages
Description: The Policies and Compliance Posture pages under Governance have been rebuilt on Angular, delivering a faster, more consistent experience while preserving full functional parity with the previous versions.
Key Capabilities:
- Policies page: list and filter policies, view policy detail, pre-execute and execute policies, trigger activity, configure default notifications, and manage policy jobs, schedules, and per-policy configuration
- Compliance page: revamped Compliance Posture and standards view
Key Benefits:
- Brings Governance pages onto CoreStack's current UI framework for a more consistent experience across the platform
- Preserves every existing policy and compliance workflow — no retraining required
ITSM Integration for Graphion Threats (Regular Sync)
Description: Graphion Threats now integrates with ITSM tools on a regular sync schedule, so vulnerability groups can be tracked and resolved directly from the ITSM system as cloud provider data updates.
Key Capabilities:
- Integrates ITSM tools with Graphion Threats
- Adds configurable attributes for the Threat Domain during ITSM tool onboarding, including grouping, filters, and exceptions
- Groups vulnerabilities and tracks them in the ITSM tool, updating and resolving them based on periodic sync with cloud providers
Key Benefits:
- Keeps ITSM tickets current with the latest cloud provider threat data without manual re-entry
- Lets security teams manage vulnerability grouping and exceptions from within their existing ITSM workflow
Cloud Security — SecOps Posture and Dashboard Consolidation
Description: The SecOps Posture and SecOps Dashboard menus are now unified under a single Cloud Security menu, giving you a consolidated view of infrastructure security issues and a faster path from issue to remediation.
Key Capabilities:
- Infrastructure Issues by Severity and Accounts — an aggregated view of threats, vulnerabilities, and misconfiguration/guardrails findings
- Infrastructure Explorer — reviews detailed issue data in a single screen instead of the previous multi-screen navigation
- Misconfiguration tab filters showing which policies already have a remediation template mapped, alongside the existing skip/apply remediation actions on Guardrails findings
- Cloud Security Dashboard — carries forward the existing threat, vulnerability, and misconfiguration trend, severity, and region widgets
Key Benefits:
- Resolves security issues faster by reviewing detailed findings in one screen instead of navigating across multiple pages
- Speeds up remediation planning by showing which policies already have a remediation template mapped before you act
- Keeps existing security dashboard visibility intact under the new Cloud Security Dashboard, with Compliance and Access dashboards still available separately
CloudOps
Settings Menu — Angular Upgrade
Description: The Settings menu has been migrated to Angular, covering Resource Catalog, Account Management, Tenant Management, and Identity and Access Management, along with corresponding backend updates.
Key Capabilities:
- Resource Catalog (self-service; flagged for future deprecation)
- Account Management: Account Info, Account Configuration, Account Hierarchy
- Tenant Management
- Identity and Access Management: Users, User Groups, User Delegation, Roles, Authorization, Cost Metrics
Key Benefits:
- Brings account, tenant, and identity/access management settings onto CoreStack's current UI framework for a more consistent experience
- Preserves existing settings configuration workflows across account, tenant, and IAM areas
Reports
Distributor / Indirect Partner Consolidated Charges Report
Description: A new report gives every tier of a multi-tier reseller network — Distributor, Indirect Partner, and Customer — a role-scoped, hierarchical view of consolidated charges, replacing the flat list in the existing Consolidated Charges report.
Key Metrics: Commercial hierarchy (Distributor → Partner → Customer → Subscription, scoped by role), the same filters and Group By options as the existing Consolidated Charges report, hierarchy search by account, reseller/partner name, MPN ID, customer, or subscription, and a collapsible tree down to Meter Subcategory and Consumed Quantity.
Deprecation List
Recommendations Page Deprecation
The Recommendations page under Governance will be deprecated. This page aggregated actionable recommendations across cost, security, and operational best practices.
SecOps Menu Deprecation
The SecOps menu will be deprecated. Its functionality is now available under the Cloud Security menu, as mapped in the following table.
| Existing Menu | Existing Functionality | New Menu | New Functionality |
|---|---|---|---|
| SecOps Posture | Aggregated counts of security issues (threats, vulnerabilities, and misconfigurations/guardrails) Details of the security issues | Cloud Security | Infrastructure Issues by Severity and Accounts Infrastructure Explorers This also provides the detailed issues in one shot rather than the multi-screen navigation used earlier |
| SecOps Posture | Skip or apply remediation to misconfigurations/guardrails | Cloud Security | Available in the Infrastructure Explorer (Misconfiguration tab) Additional filters to see which policies have remediation templates mapped |
| SecOps Dashboard | Multiple widgets showing security issues (threat, vulnerability, and misconfiguration) trend, severity, and region | Cloud Security | Equivalent widgets available in the Cloud Security Dashboard Compliance and Access dashboards are moved to a separate dashboard |
External APIs
- To see the external APIs which have been added, modified, and removed in this release, refer to: External APIs 6.4 (2605)
- To see all the available external APIs, refer to: https://docs.corestack.io/reference/accesssummarycount
Updated about 3 hours ago