TRUSTED BY ENGINEERING TEAMS · SELF-HOSTED · ELv2 LICENSE

Stop wasting money on CI infrastructure.

RunRight profiles every CI job, recommends right-sized runners across AWS, GCP, and Azure, tracks carbon footprint, and enforces cost policies. SSO, RBAC, and an AI cost assistant are built in.

PROFILE → OPTIMIZE → ENFORCE

Install RunRight →
RUNRIGHT · build-and-test
p95 cpu1.2 cores
p95 ram1.8 GB
CURRENT
c5.xlarge
4 vCPU · 8 GB · $0.0194/min
RECOMMENDED ↓ 58%
t4g.small
2 vCPU · 2 GB · $0.0042/min
MONTHLY SAVINGS
$18.40
CO₂ REDUCED
2.4 kg/mo
❖ Enterprise-Ready & Self-Hosted ❖ AWS + GCP + Azure ❖ Carbon Footprint Tracking ❖ SSO & RBAC Built-In ❖ AI Cost Assistant ❖ SOC 2 Ready
✦ HOW IT WORKS ✦

How RunRight works

RunRight continuously profiles real usage and recommends the lowest-cost runner that still satisfies your workload requirements.

01
Profile Every CI Job

RunRight samples CPU, memory, disk I/O, and thread usage throughout every workflow run to build an accurate workload profile.

02
Build Historical Baselines

Track utilization, waste, cost, and savings trends over time as workloads evolve.

03
Turn Data Into Action

Receive runner recommendations, enforce policy limits, and route alerts automatically when thresholds are crossed.

ACTIONABLE OUTPUT

Every CI run ends with a recommendation.

Not another dashboard. Not another billing report.

RunRight converts workload telemetry into a specific infrastructure decision: keep your current runner or switch to a lower-cost alternative.

CI JOB SUMMARY
RUNRIGHT - build-and-test
Sampled 47 runs  · p95 CPU: 1.2 cores  · p95 RAM: 1.8 GB  · Current: c5.xlarge (4 vCPU · 8 GB)
RANK INSTANCE VCPU RAM COST/MIN SAVINGS
BEST FIT t4g.small 2 2 GB $0.0042 -78%
2 t3a.small 2 2 GB $0.0047 -76%
3 t3.small 2 2 GB $0.0052 -73%
Switching to t4g.small saves an estimated $18.40/mo on this workflow at current run frequency.
Carbon Tracking

Measure CO₂ emissions per job. Track sustainability KPIs and report on green CI initiatives.

AWS + GCP + Azure

300+ instance types across all major clouds, including ARM (Graviton, Ampere).

Alert Routing

Route event and threshold alerts to Slack, Teams, email, or webhooks by team or service.

Policy Automation

Set max cost/hour guardrails globally, per repository, or per job and enforce them in CI.

Role-Based Access

Five built-in roles, custom role creation, and full audit logging for every action across your team.

AI Cost Assistant

Ask your job history anything. Runs on your own Ollama or OpenAI-compatible endpoint. No SaaS required.

POLICY + ALERTING

Policies and alerts your team won't ignore

Most alerting systems create noise. RunRight only notifies teams when something requires action.

Fewer ignored alerts. Faster remediation. Controlled CI spend.

POLICY + ALERT SUMMARY
RUNRIGHT - alerting policy set
Repository: owner/repo · Job: build-and-test
4active rules 4alert destinations daily summary 09:00 utc retry on failure
AREA DETAIL
GUARDRAILS Policy scope precedence: job > repository > global.
THRESHOLDS Cost threshold violations, waste threshold breaches, and savings regressions trigger only when intervention is needed.
ROUTING Route alerts to Slack, Teams, email, or webhooks based on repository ownership. The right team gets the right signal automatically.
POLICY EVENTS Policy violations and scheduled daily summaries keep teams informed. Failed deliveries are retried automatically with backoff.
RESULT The result: fewer ignored alerts, faster remediation, and controlled CI spending.

TEAM CONTROLS

Role-based access control, out of the box.

Assign roles to control exactly who can view and change what. No external identity provider required.

Five built-in roles. Custom role creation. Full SSO integration. Every action logged.

SETTINGS › ROLES & PERMISSIONS
ROLE WHAT THEY CAN DO TYPE
Owner Unrestricted access: all configuration, all data BUILT-IN
All write actions: policies, alerts, jobs, ownership, teams, API keys, and reports BUILT-IN
Billing View reports and audit logs. No policy or alert writes. BUILT-IN
Snooze, archive, and delete job data. No system config access. BUILT-IN
Viewer Read-only access across all dashboards. No writes. BUILT-IN
Custom… Create roles with any combination of the eight permission scopes from the dashboard. No restart required. CUSTOM
SSO INTEGRATION

Roles are assigned when SSO users first log in. Supports Google, GitHub, Azure AD, Okta, and any OIDC or SAML provider.

CUSTOM ROLES

Mix and match from eight permission scopes (policies, alerts, jobs, ownership, team, API keys, reports, and audit) to create roles that fit your org.

FULL AUDIT LOG

Every create, update, and delete is logged with actor, timestamp, and changed fields. Granular per-rule tracking for alert configuration changes.

Cost dashboards explain the past. RunRight changes the future.

Traditional observability and cloud-cost platforms focus on attribution. RunRight focuses on action.

Most CI runners are oversized.
ROOT CAUSE

Runner sizes are usually chosen once and forgotten. Repositories change. Workloads evolve. Infrastructure stays the same. The result is wasted CPU, wasted memory, and rising CI costs without ownership.

Runner recommendations are the feature.
OUTCOME

Cost governance is the outcome. Instead of just showing where money went, RunRight tells you what runner to use next, enforces spending policies, and alerts teams when efficiency declines.

Every recommendation is tied to governance.
CI COST GOVERNANCE

RunRight combines live workload profiling, AWS and GCP instance matching, estimated savings, policy enforcement, and team-routed alerts into one continuous loop.

Built for Any CI Environment

GitHub Actions, GitLab CI, Jenkins, CircleCI, Bitbucket Pipelines, Kubernetes runners, self-hosted VMs, and custom build environments. Wherever your workloads run, RunRight can profile them.

EC2 / GCP VMs
ZERO CONFIG

Reads vCPU count and total memory from the OS, then matches against the catalog within a 2 GiB tolerance. Works on any CI platform: GitHub Actions, self-hosted EC2, GCP VMs, Azure VMs, and more.

Kubernetes + DinD Pods
CONTAINER-AWARE

Reads cgroup v2 (cpu.max, memory.max) or cgroup v1 equivalents. Reflects your pod's actual CPU quota and memory limit.

# K8s Downward API override (optional)
env:
  - name: RUNRIGHT_VCPUS
    valueFrom:
      resourceFieldRef:
        resource: limits.cpu
  - name: RUNRIGHT_MEMORY_GIB
    valueFrom:
      resourceFieldRef:
        resource: limits.memory
        divisor: 1Gi
Any Environment
MANUAL OVERRIDE

Skip auto-detection with two env vars. Works for Azure VMs, ARM instances, on-prem, or any environment where OS-level resource counts are unreliable.

RUNRIGHT_VCPUS=4
RUNRIGHT_MEMORY_GIB=16

INTEGRATIONS

Works in any CI

GitHub Actions, GitLab CI, Jenkins, CircleCI, Bitbucket Pipelines, Kubernetes runners, and any platform that can run a shell command.

GitHub Actions GitLab CI Jenkins CircleCI Bitbucket Pipelines Kubernetes Runners
Read the Install Guide →

How does RunRight compare to Datadog, Grafana, Sentry, and AWS Cost Tools?

See the full comparison →

SAVINGS CALCULATOR

How much could you save?

Based on typical CI job utilisation (p95 CPU 30%, p95 RAM 40%).

1 min60 min
1500

CURRENT / MO

SAVINGS / MO

AFTER RUNRIGHT / MO

Estimates use p95 usage at 30% CPU / 40% RAM headroom. Actual savings vary by workload.

AI COST ASSISTANT

Ask your CI data anything.

The built-in AI assistant connects to your actual job history, repository ownership, and cost data, answering questions with context from your own telemetry.

No external SaaS. Runs on your infrastructure with Ollama or any OpenAI-compatible endpoint.

RUNRIGHT › AI ASSISTANT SELF-HOSTED · OLLAMA
Which repositories are spending the most on CI and are most overprovisioned?

Based on the last 30 days, here are the top three repositories by CI cost with high waste scores:

1. acme/backend-api    $842/mo  waste 74%  → t3a.small
2. acme/data-pipeline  $631/mo  waste 68%  → t4g.large
3. acme/frontend-app   $218/mo  waste 61%  → t4g.micro

Switching all three saves an estimated $1,240/month. Want me to draft the policy rules for each?

Ask about costs, waste, recommendations…
SEND
JOB HISTORY SEARCH COST TREND ANALYSIS RECOMMENDATION RATIONALE POLICY DRAFTING HELP RUNS ON YOUR INFRA

ENTERPRISE READY

Built for security-conscious teams

Self-hosted on your infrastructure. No data leaves your network. SOC 2 compliant architecture.

SSO / SAML

Google, GitHub, Azure AD, Okta, and any OIDC provider.

AUDIT LOGGING

Immutable record of every configuration change and access event.

SOC 2 READY

Architecture designed for compliance. RBAC, encryption, and access controls.

SELF-HOSTED

Your data never leaves your infrastructure. No SaaS dependency.

PRICING

Free. Open source. Self-hosted.

No seats. No usage limits. No SaaS lock-in. Your telemetry stays on your infrastructure.

See full pricing →

HAVE QUESTIONS?

Read the FAQ

Build performance, data privacy, Kubernetes support, RBAC, the AI assistant: all covered.

Read the FAQ →

START CONTROLLING CI COSTS

Start controlling CI costs.

Profile workloads. Find waste. Enforce policies. Route alerts.

Open Install Guide →
© SEBASTIAN GBUDJE. ALL RIGHTS RESERVED.  ·  BUILT WITH CARE. ALWAYS BUILDING.