All Products
Search
Document Center

Security Center:View feature activation records

Last Updated:Sep 08, 2026

Security Center provides multiple activation entries. In addition to purchasing a service, the free benefits that you claim when you purchase an ECS instance and the exhaustion of a pay-as-you-go free trial quota also automatically activate pay-as-you-go (postpaid) services and incur charges. This topic describes all activation entries of Security Center and the instance types that they create, and explains how to reconcile the activation status, activation time, and instance ID of a feature in the Security Center console and the Expenses and Costs console.

Overview

If an unexpected Security Center pay-as-you-go instance or bill appears under your account, the service was most likely activated indirectly through a free benefit or trial quota listed in Activation entries. We recommend that you first identify the source against the activation entries, and then reconcile the activation time and instance ID as described in Query entries for activation records.

Activation entries

Activation entries of Security Center fall into two categories: direct activation and associated activation. Associated activation does not require a separate order in Security Center. It is easy to overlook and is the main cause of unexpected pay-as-you-go instances under an account.

Activation entry

Activation description

Instance and billing description

Direct activation

Activate basic free protection capabilities. For more information, see Enable Security Center Basic.

Subscription instance.

Purchase edition services, value-added services, or separately sold services on the buy page. For more information, see Purchase Security Center.

Subscription instance or pay-as-you-go instance.

Apply for a 7-day Enterprise Edition trial. For more information, see Enable a 7-day Enterprise Edition free trial.

Subscription instance. No charges are incurred during the trial period. After the trial expires, the instance is automatically downgraded to Basic Edition and is not automatically converted to pay-as-you-go.

Claim a savings plan deduction quota to try out pay-as-you-go capabilities. For more information, see Activate the pay-as-you-go free trial.

Pay-as-you-go instance. After the deduction quota is used up, the pay-as-you-go features continue to run and are billed based on actual usage.

Associated activation: Claim the free comprehensive host protection benefit when you purchase an ECS instance.

When you purchase an ECS instance, select Comprehensive Host Protection. For more information, see ECS comprehensive host protection benefits.

  • The Vulnerability Fixing, Host and Container Security, and Agentic Cloud Security Posture Management pay-as-you-go features are enabled by default.

  • By default, one instance is randomly selected from the ECS instances that you purchase in the current order, and the Comprehensive Host Protection protection level (ECS complimentary protection) is bound to it.

Pay-as-you-go instance. Each Alibaba Cloud account can claim this benefit only once and cannot claim it again. After the benefit is claimed, no expiration date applies.

Query entries for activation records

The Security Center console reflects the service status that is currently in effect, and the Expenses and Costs console stores order and quota consumption records. The following table lists the corresponding entry for each query objective. For detailed steps, see the subsequent sections.

Query objective

Query entry

Protection capabilities that are currently in effect, usage statistics of each module, and pay-as-you-go activation status

Recommended: The Security Center console - Overview page.

Instance ID, and the time and order number of activation, renewal, or configuration change

The Expenses and Costs - My Orders page, filtered by product.

Quota usage of ECS complimentary benefits and trial resource plans

The Expenses and Costs - Resource Plans page, or the instance details page in the ECS console.

Consumption of savings plan deduction quotas

The Expenses and Costs - Savings Plans page.

View the feature activation overview (Security Center console)

The Overview page in the Security Center console summarizes the service activation status of the current account. Use this page to quickly confirm the protection capabilities that are in effect, without checking bills item by item.

  1. Security Center console - Overview

  2. In the service overview area on the right side of the page, view the service activation status and usage statistics.

    • Subscription area: displays the edition that you purchased, and the activation status and usage statistics of each protection module.

    • Enable Pay-as-You-Go Service area: displays the activation status of pay-as-you-go capabilities. If the switch on the right side of a feature is turned on, the pay-as-you-go feature is enabled.

    • Separately sold service areas: Some separately sold services have their own display modules on the Overview page. These modules are usually located below the Enable Pay-as-You-Go Service area and display the activation status of each feature by module.

View orders and instance IDs

Go to the Expenses and Costs console and filter orders by the product name that corresponds to the feature to view the instance ID, activation time, order number, and charges that correspond to feature activation.

Order and instance descriptions

  • Bundled-purchase instances:

    • Subscription:

      • All bundled-purchase features share the same subscription resource instance ID. If you unsubscribe from this instance, you lose all bundled-purchase features.

        Note

        Renewal, upgrade, and downgrade operations do not generate a new instance ID. Only a new purchase generates a new instance ID.

      • Bundled-purchase features mainly include edition services and value-added services. For more information, see Purchase Security Center - Edition services and value-added services.

    • Pay-as-you-go: All bundled-purchase features share the same pay-as-you-go instance ID. Pay-as-you-go instances follow the instance ID reuse rule. If you previously enabled a pay-as-you-go service, disabled it, and then enabled it again (including activation that is triggered by associated activation), the system reuses the original instance ID and does not generate a new order record.

      Note

      As a result, when you query the order in the Expenses and Costs console, the creation time of the order is the time when the pay-as-you-go service was first activated, not the time when the current feature took effect. If no order is returned, expand the query range of Creation Time Range.

  • Separately purchased instances: In the Expenses and Costs console, separately sold features have their own subscription resource instance ID or pay-as-you-go instance ID. The instance ID of each feature is different. Unsubscribing from the instance of one feature does not affect other instances.

Query steps

  1. Go to the Expenses and Costs - My Orders page, and then click Show All Filters.

  2. Configure the search conditions as described in the following section, and then click Search to view the activation, renewal, and configuration change orders of Security Center and the time when each order was placed.

    Note

    By default, only the orders from the last 6 months are queried. If the expected order is not returned, manually adjust the Creation Time Range filter condition to expand the query range.

    • Product Name: select Security Center.

    • Commodity Name: The common commodity names are described as follows.

      • Bundled-purchase features: Security Center, Security Center (Pay-as-you-go).

      • Separately sold features: Agentic EDR (intelligent host detection and response), Attack Management (pay-as-you-go), Security Operations Agent, and Agentic penetration testing (Agentic BAS). For more commodity names, see product names corresponding to features.

    • Asset/Resource Instance ID: the instance ID that corresponds to the feature.

View ECS trial and complimentary benefits

ECS comprehensive host protection free benefit

When you purchase an ECS instance and select the Comprehensive Host Protection option in the Instance and Image area, the system randomly selects one instance from the ECS instances that you purchase in the current order by default, and binds the Comprehensive Host Protection protection level (ECS complimentary protection) to it. For information about how to claim the ECS comprehensive host protection benefit, see ECS comprehensive host protection benefits.

Note

You can change the protection level for the instance later. For more information, see Configure protection editions or levels.

  1. View the feature activation status: Go to the Security Center console Overview page. In the Enable Pay-as-You-Go Service area, confirm that the corresponding Vulnerability Fixing, Host and Container Security, and Agentic Cloud Security Posture Management pay-as-you-go switches are turned on.

  2. View the benefit usage:

    1. Go to the ECS console - Instances page, and click the name of the instance to which the free benefit is bound to go to the instance details page.

    2. On the Security Protection tab, view Comprehensive Host Protection Free Benefit in the Risk Overview area.

      • Protection level: the protection level that is bound to the current server, which is Comprehensive Host Protection (ECS complimentary protection).

        Note

        If you manually changed the protection level in the Security Center console, the protection level after the change is displayed.

      • Move the pointer over the effective status of Free Security Benefits to view the usage of the current benefit.

  3. View the corresponding pay-as-you-go instance ID (optional): Go to the Expenses and Costs - My Orders page. Set Product Name to Security Center and Commodity Name to Security Center (Pay-as-you-go) to view the corresponding pay-as-you-go instance.

    Note

    If you previously activated the Security Center pay-as-you-go service, no new pay-as-you-go order is generated. You can expand the query range of Creation Time Range.

View savings plan quotas

If you use a Security Center savings plan, view the consumption of the deduction quota on the Savings Plans page of the Expenses and Costs console. This helps you determine which capabilities are billed on a pay-as-you-go basis after the quota is used up.

  1. Go to the Security Center console - Overview.

  2. In the Enable Pay-as-You-Go Service section, click View Savings Plan to go to the Cost Management - Savings Plan page.

  3. On the Savings Plan page, view quota consumption details on the Overview and View Details tabs.

    Note

    The Savings Plan Name is "Security Center Savings Plan Free Trial International Edition".

Appendix: Security Center billing modules

Security Center involves multiple products in the Expenses and Costs console. When querying orders in the Expenses and Costs console, you can locate the activation records that correspond to each feature by product name, product code, and billing method in the following table.

Product category

Product name

Product code

Billing method

Bundled purchase

Security Center

sas

Subscription

Security Center (Pay-as-you-go)

sas_postpaid_public_cn

Pay-as-you-go

Resource plan

Security Center vulnerability fix resource plan

sas_vul_dp_cn

Subscription

Security Center cloud security posture management resource plan

sas_cspm_dp_cn

Subscription

Security Center agentless detection resource plan

sas_Agentless_dp_cn

Subscription

Security Center virus protection resource plan

sas_viruspackage_dp_cn

Subscription

Security Center basic service resource plan

sas_service_dp_cn

Subscription

Separately sold

Agent Security Center (Pay-as-you-go)

sas_agentsecurityPost_public_cn

Pay-as-you-go

Attack surface management

sas_agenticasm_public_cn

Subscription

Agentic BAS basic service

agenticbas_service_subscription_cn

Subscription

Security Center savings plan free trial (China site)

sas_freetier_spn_cn

Subscription

Intelligent host detection and response

sas_edr_public_cn

Subscription

Intelligent host detection and response (Pay-as-you-go)

sas_edrPost_public_cn

Pay-as-you-go

Agentic BAS (Pay-as-you-go)

agenticbas_PayAsYouGo_cn

Pay-as-you-go

Security Operations Agent subscription

secopsagent_service_subscription_cn

Subscription

Security Operations Agent (Pay-as-you-go)

secopsagent_PayAsYouGo_cn

Pay-as-you-go

Agentic SOC (Pay-as-you-go)

Agentic_SOC_PayAsYouGo_cn

Pay-as-you-go

Attack surface management (Pay-as-you-go)

sas_agenticAsmPostpaid_public_cn

Pay-as-you-go

Agentic SOC subscription

Agentic_SOC_subscription_totalpack_cn

Subscription

Note

After a resource plan deduction quota is used up, the corresponding pay-as-you-go capabilities continue to run and incur charges. Some features support both subscription and pay-as-you-go, and are displayed as different products in the Expenses and Costs console.