Service Overview
CASB API provides out-of-band data protection, threat detection, and user behavioral anomaly detection for sanctioned SaaS applications via direct API integrations.
Definitions and Unit of Measure
A “Seat” is a subscription for a Netskope API-enabled service instance to monitor a single app instance of service or user account for the protected SaaS app. Examples:
-
Two application user accounts monitored by Netskope API-enabled Services for three SaaS application accounts requires a subscription for six Seats (2 Users x 3 SaaS application instances = 6 Seats).
-
Two Netskope instances concurrently connected to the same SaaS application account with 1K app users, are treated as 2K user Seats.
A “User” is defined as each individual that:
-
is authorized by the customer to use the customer’s systems (including the customer’s network, cloud services and Internet connections)
-
whose use of such systems is monitored by, or accessed by use of, the Services.
A “TB” is defined as one terabyte of data processed via the Retroactive Scan functionality.
Unit of Measure:
-
Seats: Each User to application instance relationship counts as one Seat, which is one Subscription Unit.
-
User: Each User counts as one Subscription Unit and cannot be shared between multiple Users.
-
TB: Each terabyte of data scanned via a Retroactive Scan counts as one Subscription Unit.
Entitlement
Subscription Period: As set forth in a customer’s order.
Licensing Model: CASB API can be entitled either per ‘Seat’ or per ‘User’ and both entitle a fixed volume of Retroactive scanning capability.
-
Seat-based Subscription: Each Subscription Unit (e.g,, Seat, TB, User, etc.) for Seat-based Subscriptions entitles customers to one Seat. Customers must purchase a fixed number of Seats that can be applied to any number of Application instances so long as the Seat quantity used does not exceed the entitled quantity.
-
User-based Subscription: Each Subscription Unit for User-based Subscription entitles customers to one User with access to unlimited non-Generative AI applications.
Pooling User, Seat and TB entitlement is assigned at the account level and may be shared across multiple of the customer’s tenants.
Add-On packages Customers may purchase incremental Subscription Units to increase their entitlements for Users, Seats, or TB (via ‘add-on’ packages) at any time during the subscription period, by placing an additional order.
Non -Roll Over: Any unused allocations at the end of the subscription period do not roll over to the subsequent period.
Usage Monitoring
Customers may view their usage by application directly within the CASB API dashboard in the WebUI at the tenant level. Customers must log into each respective tenant to review granular usage data.
Measurement & Enforcement
Measurement Methodology – Netskope measures usage based on the number of unique Users or Seats observed daily at the Customer’s account level. Methodology is aligned to the specific Application being monitored (refer to the “Billable User” methodology for application-specific breakdowns).
-
TB scanned via Retroactive Scanning is measured as cumulative volume over the annual Subscription Period.
Service Limitations If usage exceeds the purchased entitlement, Netskope reserves the right to limit functionality, including the cessation of protection, until the customer acquires sufficient additional licenses.
Overage Remediation If the customer’s actual usage exceeds the purchased entitlement, the customer must, within 30 days of notification, either:
-
Purchase additional licenses (Users, Seats or TB packages) sufficient to cover the total active usage; or
-
Immediately cease the use of the Service for the volume exceeding the licensed entitlement.
Customer Records: The customer may be required to provide system data, audit logs, or written confirmation of the number of Users and/or Seats upon reasonable request by Netskope.
-

