Skip to content
ECZ-IDIoT

Two meters

Two counts, and why they are not one

IoT is the only family with two separate counts. Getting them the wrong way round changes the size of the answer by orders of magnitude, so this page keeps them apart by name, deliberately and at length.

Side by side

AEC — Active Entity Capacity, and IoT Fleet Capacity

They are not interchangeable. One counts logical identities; the other counts device instances. Neither is convertible into the other, and neither consumes the other.

Pooled, across families

AEC — Active Entity Capacity

One AEC is one actively managed production entity with live bindings and current state.

AEC is one pool shared across your Agent, MCP, Plugin, API, SDK and logical Service & Workload identities, and your IoT product, model and fleet identities.

For this family, one AEC is an iot product, model or fleet identity you actively manage in production.

Separate, IoT only

IoT Fleet Capacity

A separate count of individual device instances under active management. It is the only meter this family has for devices, and it never consumes AEC.

It is a level, not a flow. Nothing about it resets at the end of a month, so a “per month” framing would describe a billing cadence and never a consumption period.

The rule that generates the confusion

The meter counts devices under active management

It counts them — never the number of Passports you hold. Those are two independent numbers, and only one of them is bounded.

A Passport can exist and occupy nothing. Holding an identity consumes no capacity of any kind. The count moves when a device is under active management, and it moves back when it is not.

So a fleet larger than your envelope is a supported condition rather than an error. Devices beyond it become unmanaged, not deleted — and you decide which ones those are.

  • Holding a Passport

    Consumes nothing. The number of IoT identities your organisation holds is not bounded by either meter.

  • Retired and historical devices

    Consume nothing. A device that is shelved, returned or decommissioned stops occupying anything. History is free.

  • Public reads

    Consume nothing, at any scale. Every read of a record — by a person, an auditor, an insurer or a machine — is free and unmetered.

  • Message and telemetry volume

    Consumes nothing. This is not billed by traffic. Payload sizes, message counts and reporting intervals sit outside both meters entirely.

Reaching a limit

What running out never does

Capacity is a count of what is actively managed. It is not a property of any identity, and it cannot reach back and change one.
  • AEC never makes an identity more verified.
  • AEC never replaces a Passport.
  • AEC never changes an ECZ-ID. Your ECZ-ID does not change.
  • Running out of AEC never deletes, revokes or unpublishes an identity.
  • Reducing or cancelling capacity never deletes a device, a record or a Passport. Bindings above the envelope become unmanaged, and nothing is destroyed.
  • Your ECZ-ID, its Resolver page and its machine JSON keep working, whatever your capacity.
  • Your organisation's tier and every Passport's assurance state are unaffected in both directions.

Where the numbers live

No allowance and no price is published here

Prices and what can be bought today come from TrustOps, which owns every purchase, entitlement and renewal.

This page describes the mechanism and names the units. The amounts — what is included, what a larger envelope costs and whether anything can be bought today — are held by TrustOps, which owns them. Typing them here would create a second copy, and a copy is what goes stale.

The free IoT Passport is £0 and is never sold. That is a property of the identity rather than of any envelope.

Configure in TrustOps (opens in a new tab)

AEC across every family, and what it never changes