specification: FinOps Framework specificationVersion: '1.0' schema: https://www.finops.org/framework/ provider: Snyk providerId: snyk created: '2026-05-08' # Provenance stamped 2026-08-11: this artifact was written by the API Evangelist # bulk sweep dated 2026-05-08, not harvested from the provider. See roadmap#35. method: generated modified: '2026-05-08' reconciled: true tags: - Security - DevSecOps - Vulnerability Management - Application Security - FinOps - FOCUS description: >- FOCUS-aligned FinOps for Snyk. Snyk's commercial model is per-contributing-developer subscription, where a contributing developer is one who has committed to a Snyk-monitored private repo in the last 90 days. Self-serve Team is $25/dev/month with a 5-developer floor and 10-developer cap. Ignite is $1,260/dev/year for up to 50 developers. Enterprise is custom-quoted with optional add-ons (Snyk Learning, Snyk API & Web). Test counts on the Free tier are hard-capped, providing the lever to size up. The API itself is not separately metered - it is included with the tier. sources: - https://snyk.io/plans/ - https://docs.snyk.io/snyk-api/ alignedWith: framework: FinOps Foundation Framework frameworkUrl: https://www.finops.org/framework/ dataSpec: FOCUS dataSpecVersion: '1.3' dataSpecUrl: https://focus.finops.org/focus-specification/v1-3/ publisherName: Snyk Limited serviceCategory: Application Security billingModel: pricingCategory: Subscription (Per Contributing Developer) billingFrequency: Monthly or Annual billingCurrency: USD chargeCategories: - Purchase - Usage - Adjustment - Tax - Credit focusColumns: ServiceName: Snyk ServiceCategory: Application Security ProviderName: Snyk PublisherName: Snyk Limited InvoiceIssuerName: Snyk Limited BillingCurrency: USD ChargeCategory: Purchase meters: - name: subscription_fee description: >- Recurring monthly or annual platform subscription fee for the active tier (Team, Ignite, or Enterprise). unit: month aggregation: sum dimensions: - plan_tier - billing_cycle - name: contributing_developers description: >- Count of contributing developers in the billing period - developers who have committed to a Snyk-monitored private repo in the last 90 days. Drives per-developer subscription totals. unit: developer aggregation: max dimensions: - organization_id - group_id - name: dast_targets description: >- Number of DAST web-application targets registered (10 included on Ignite, custom on Enterprise). unit: target aggregation: max dimensions: - organization_id - name: tests_per_product description: >- Free-tier-only meter; tracks consumed monthly tests against the per-product cap (e.g. open-source, code, container, IaC). Drives upgrade trigger. unit: test aggregation: sum dimensions: - organization_id - product - name: addon_subscription description: >- Subscription line for Enterprise add-ons such as Snyk Learning Management and Snyk API & Web (DAST). unit: month aggregation: sum dimensions: - addon_name principles: - name: Visibility description: >- Use Snyk Group reporting to track contributing developer counts per organization and project counts per product. The REST Audit Logs and Issues APIs feed attribution into a finops store. - name: Allocation description: >- Map organizations to business units; use group-level governance to enforce the mapping. Tag projects with consuming-team metadata so license and DAST-target consumption can be split. - name: Optimization description: >- Right-size on contributing developers - exclude bot/CI accounts and offboarded developers promptly, cap mono-repo committer sprawl, and consolidate redundant organizations to avoid duplicate fixed costs. Move automation off personal tokens to service accounts to keep tier upgrades predictable. - name: Accountability description: >- Assign a security or platform owner per Snyk group. Review contributing-developer counts each cycle and renegotiate add-on inclusion (Learning, API & Web) at renewal. maintainers: - FN: Kin Lane email: kin@apievangelist.com