AI FINOPS

Know where your AI budget goes.
Then route spend intentionally.

A2Agent separates named-user seat economics from company-owned API/account economics, so a CFO can see stranded licenses while engineering can see the shared capacity it actually owns.

Open AI Spend →Connect providers

Seat utilization · API organization cost · DeepSeek balance + Usage export · freshness, rotation and anomaly controls · encrypted read-only connections

ONE VIEW · DIFFERENT ECONOMICS

Seats are not API spend.
Balance is not spend.

A2Agent keeps those accounting domains explicit instead of adding every provider number into one misleading total.

1

Named-user seats

Import or sync member analytics, measure inactive/low/normal/high usage bands, configure the effective seat price your company actually pays, and calculate conservative addressable seat cost.

2

Company API spend

OpenAI API Platform organization costs live in an account-level FinOps record, not a fabricated employee seat. This keeps API economics separate from ChatGPT workspace membership.

3

DeepSeek account economics

Current provider balance appears in the primary summary as balance. Historical requests, tokens and billed spend come from the official Usage export and stay native-currency unless an explicit FX rule exists; missing seat imports are labeled separately.

PROVIDER CONNECTIONS

The right key
for the right admin domain.

OpenAI has separate ChatGPT Workspace and API Platform administration domains. Anthropic Enterprise analytics has its own read-only analytics key. DeepSeek balance uses the fixed account endpoint, while historical usage comes from the provider's official exported CSVs.

Open Provider Connections →
FinOps source mapeconomics without account sharing
ChatGPT Workspace
  -> workspace Admin key
  -> member directory

OpenAI API Platform
  -> organization Admin API key
  -> /v1/organization/costs

Anthropic Enterprise
  -> read:analytics key
  -> org usage + cost

DeepSeek API
  -> /user/balance
  -> current balance

DeepSeek Usage Export
  -> amount + cost CSV
  -> historical usage + native spend
DEEPSEEK HISTORICAL USAGE

Funding remaining and
usage consumed are different signals.

A2Agent keeps DeepSeek's balance API separate from its official Usage export, so top-ups and grants never get mistaken for spend.

Two-file import

Upload the extracted amount and cost CSVs from DeepSeek Platform → Usage → Export. Raw CSV bodies are discarded after normalization.

Key/model attribution

Track requests, cache-hit/miss input tokens and output tokens by provider key label and model. The raw masked exported key is not persisted.

No guessed FX

Historical billed spend remains in the provider's native currency. Non-USD DeepSeek spend does not silently enter the USD spend KPI.

Open DeepSeek Usage →
WHY THE OPENAI SPLIT MATTERS

An org-... ID is not
a ChatGPT workspace ID.

A2Agent validates this before the network request. API Platform organization IDs go to the API Platform connection; ChatGPT Workspace IDs go to the managed ChatGPT connection. That avoids generic auth failures caused by mixing credential domains.

ChatGPT Workspace

Managed workspace member directory and seat metadata. The credential is a workspace-scoped ChatGPT Admin key, not an inference key and not an API Platform organization key.

OpenAI API Platform

Organization-level API costs for the observation window. Uses an Organization Admin API key and an org-... organization identifier.

Actionable errors

401 is surfaced as unauthorized/expired/wrong domain. 403 is surfaced as recognized but missing the required organization role or scope.

FINOPS → CAPACITY

Measure the waste.
Then fix the allocation.

AI FinOps tells you where money and capacity are stranded. Organization Capacity gives engineering a policy-controlled path to company-owned APIs, enterprise usage and local compute without sharing employee logins.

Find inactive or low-value seatsKeep low-usage recommendations conservativeSee API spend separately from seat run-rateTrack DeepSeek balance and historical usage separatelyMonitor provider freshness without exposing keysExport identity-free CFO department chargebackRoute eligible workloads to organization capacityKeep Codex/Claude named-user workers private
01
Observe economicsseats / API costs / balances / exports
OK
02
Build optimization planNOW / NEXT / WATCH
OK
03
Apply capacity policyrights / budget / provider / model
CONTROL
Security boundary. FinOps credentials are encrypted at rest and used only against fixed provider administration/analytics endpoints. Export imports discard raw CSV bodies, A2Agent does not request personal browser cookies, and FinOps keys are never used for inference.