specification: FinOps Framework specificationVersion: '1.0' schema: https://www.finops.org/framework/ provider: Bitwarden providerId: bitwarden created: '2026-05-08' # Provenance stamped 2026-08-11: this artifact was written by the API Evangelist # bulk sweep dated 2026-05-08, not harvested from the provider. See roadmap#35. method: generated modified: '2026-05-08' reconciled: true tags: - Security - Password Manager - Open Source - Vault - Identity - FinOps - FOCUS description: >- FOCUS-aligned FinOps for Bitwarden. The Public API and SCIM endpoints are not metered separately - they are bundled in the underlying password-manager subscription (Teams $4/user/month or Enterprise $6/user/month, billed annually). Personal plans (Premium $9.99/year, Families $40/year for 6 users) do not include API access. Secrets Manager is sold as a separate per-user-per-month add-on with a tier-dependent machine-account allowance. Self-host is included; cloud regions split US and EU with no price difference. sources: - https://bitwarden.com/pricing/ - https://www.bitwarden.com/products/business/ - https://bitwarden.com/help/public-api/ alignedWith: framework: FinOps Foundation Framework frameworkUrl: https://www.finops.org/framework/ dataSpec: FOCUS dataSpecVersion: '1.3' dataSpecUrl: https://focus.finops.org/focus-specification/v1-3/ publisherName: Bitwarden, Inc. serviceCategory: Identity and Access Management billingModel: pricingCategory: Subscription (Per User) + Optional Add-Ons billingFrequency: Monthly or Annual billingCurrency: USD chargeCategories: - Purchase - Adjustment - Tax - Credit focusColumns: ServiceName: Bitwarden ServiceCategory: Identity and Access Management ProviderName: Bitwarden PublisherName: Bitwarden, Inc. InvoiceIssuerName: Bitwarden, Inc. BillingCurrency: USD ChargeCategory: Purchase meters: - name: subscription_fee_per_user description: >- Recurring per-user subscription for the active password-manager tier (Teams, Enterprise) or per-account fee for personal plans (Premium, Families). unit: user_month aggregation: sum dimensions: - plan_tier - billing_cycle - name: secrets_manager_fee description: >- Per-user-per-month subscription for the Secrets Manager add-on; price varies by Teams or Enterprise underlying tier. unit: user_month aggregation: sum dimensions: - plan_tier - billing_cycle - name: machine_accounts description: >- Machine accounts consumed against the Secrets Manager allowance bundled with the add-on; overage requires moving to a higher tier. unit: machine_account aggregation: max dimensions: - organization_id - name: storage description: >- Encrypted storage consumed by file attachments and Send across the organization and personal accounts; bundled GB included by tier. unit: GB aggregation: max dimensions: - organization_id principles: - name: Visibility description: >- Use the Public API event-logs endpoint to track member activity and feed invoice reconciliation. Member counts in the Admin Console map directly to the per-user billing line. - name: Allocation description: >- Map Bitwarden organizations and groups to business units. Use directory connector or SCIM to keep member counts aligned with HR truth so the per-user line cannot drift. - name: Optimization description: >- Choose Teams over Enterprise unless SSO, account recovery, or enterprise policies are needed. Offboard inactive members promptly via SCIM. Self-host where data residency or contractual requirements would otherwise drive add-on costs. - name: Accountability description: >- Assign a security or IT owner per Bitwarden organization. Review SCIM reconciliation logs each cycle and renegotiate Secrets Manager seats and machine-account allowances at renewal. maintainers: - FN: Kin Lane email: kin@apievangelist.com