Validate it. Map it. Trace it. Forecast it.
Meridian is the read-only command center for Azure teams. Catch risks in your Terraform, ARM, Bicep, or Kubernetes before you deploy, trace live network paths to root-cause a connectivity issue in seconds, and stay ahead of expiring secrets, drift, and cost — all turned into a plain-English action list, not another raw dashboard.
prod/app-tier — remote-admin / wide-open path reachable — a direct lateral-movement route.
The Azure portal scatters the answers across a hundred blades. Meridian pulls them into a single workflow, so your team spends its time deciding — not digging.
Every subscription, resource, VNet and subnet in one live view — and how they connect. Sprawl you couldn't hold in your head becomes a picture you can read in seconds.
Pick a VM and watch traffic travel from the internet edge to the workload — every firewall, subnet and peering in between. “Can this be reached?” becomes a click, not a ticket.
Score the estate against the Well-Architected Framework, check CIS controls, and surface the shortest attack path from the internet to sensitive data — before anyone else finds it.
Project spend, verify every saving against real usage, and catch anomalies against your own baseline. Get ahead of the surprise instead of cleaning it up.
The best incident is the one that never happens. Meridian moves the hard questions left — into review, before deploy — and when something does break, it points straight at the cause.
Paste Terraform, ARM, Bicep, or a Kubernetes manifest and instantly see the architecture it will build — plus every security and hygiene risk, scored, before a single resource exists. Committed secrets, public storage, plaintext traffic, privileged containers: caught in the pull request, not the incident review.
Pick a VM, a port, and a direction. Meridian evaluates your NSGs exactly the way Azure does — rules in priority order, platform defaults, service tags — follows the route table’s next hop, and names the single rule that’s blocking traffic. The IP-Flow-Verify answer, without raising a ticket.
Every key, secret, and certificate across every vault — with commission dates, expiry dates, and days-left, sorted by what lapses next. A cert that would have taken production down at 2 a.m. becomes a calendar reminder instead.
Export any diagram as SVG or PNG, download findings for a PR comment, and read it all in whichever of six eye-comfort themes suits your screen.
Some teams can't hand out even read-only access on day one. Upload an exported ARM template or a Terraform state file and Meridian maps your network paths, reachability and security posture — parsed entirely in your browser.
The file is parsed locally, client-side. No upload, no server, no credentials — a safe way to evaluate Meridian before granting any access.
Terraform (HCL, state, or plan JSON), ARM templates, Bicep, and Kubernetes / docker-compose manifests — parsed with a real HCL and YAML engine, not fragile regex.
Architecture diagrams, connectivity tracing, security findings, network topology, reachability and inventory — computed straight from your file.
Honest by design: cost and metrics need a live connection — that data isn't in an infrastructure file, so those views stay clearly disabled in file mode.
Every Azure Advisor recommendation graded against 30 days of live CPU metrics. Low-confidence claims are excluded from the trusted-savings total.
Every change scored RISKY / NOTABLE / benign in real time. Risky items float to the top. Weekly drift review shrinks from twenty minutes to two.
Daily rollups compared to your own rolling 7-day baseline. History lives in your browser only. No shared training data, no vendor lock-in.
Meridian does the analysis for you and hands back plain-English answers — what to fix, what to save, what to watch next. No black box, no AI guesswork, and nothing about your estate ever leaves your tenant.
You get a realistic idea of next month's bill before it lands, so a creeping spike shows up as a trend you can act on early.
Shows the easiest route an attacker could take to reach your crown jewels, so you know which single link to cut first.
Recommends a size that comfortably handles real peaks without paying for capacity that sits idle.
Catches gradual problems — a slow memory leak, creeping cost — that fixed thresholds miss until it's too late.
A single 0-100 health number for how well your network limits the blast radius if one subnet is compromised.
Shows the real yearly money you'd save by committing — without pushing you to over-commit to capacity you won't use.
Every insight is backed by proven, auditable math that runs right in your browser. You get the answer up front — the how is always one click away.
Point Meridian at your tenant in under a minute. Sign in with your own Azure AD account — no app-registration permissions needed — or paste in a Service Principal you already have. Either way, the console can only read.
Reader role · Read-only
Credentials are encrypted (AES-GCM) in an HttpOnly, Secure cookie and never leave this browser session.
Built by Arunim's IT Caffe
Inventory, cost intelligence, security posture, and compliance reporting for every subscription in your tenant. All read-only.
Transform the way you design Azure solutions. Visually create and validate Azure architecture diagrams, generate ready-to-deploy Infrastructure as Code using Terraform or Bicep, and discover your existing Azure environment by reverse-engineering live infrastructure into clear, interactive architecture diagrams.
Elevate your projects with premium digital templates made for every moment. Explore a curated range of customizable designs including invitations, planners, e-books, wedding stationery, and more. With instant downloads and easy editing, you can create professional-looking designs quickly and confidently.