Axiom

axiom.cocontributed by Samuele Ongaro

ALMOST

A weekend of work, and real gaps remain.

Log and event storage priced to let you keep everything: ingest without sampling, query with a purpose-built language, and set alerts on the results.

Promptfree, for everyone, and the only version there is
Build me log storage that replaces Axiom — and be honest about why this is ALMOST.

What you are paying for is **storage economics**: ingest everything, keep it for months, and query it fast enough to be worth opening during an incident. Reproducing that means a columnar store, compression, and object storage, not a table in a relational database. It is buildable with existing open pieces, and it is genuinely more operational work than it looks. Read the sizing section before starting.

STACK
- ClickHouse for storage and querying, or Loki if your queries are mostly label filters and greps. Do not write a storage engine
- Vector as the shipper and the transform layer. Do not write log agents
- Node 20+ with Fastify only for the small pieces: the query interface, alerts and access control
- Object storage for cold data
- Caddy in front, on a private network

THE SHAPE
- Ingest endpoints speaking the common protocols so existing shippers work unchanged: HTTP with JSON lines, syslog, and whatever your platform already emits
- One wide table per dataset with a timestamp, a set of low-cardinality attributes as real columns, and the rest as a map. Query on the columns; the map is for the long tail
- Partition by day, order by the columns you filter on most, and set a compression codec deliberately. Those three choices decide whether a month of data is queryable in a second or in a minute
- Tiering: hot on local disk, older partitions on object storage, with a stated retention per dataset

WHAT DECIDES THE BILL
- Volume, and it is always higher than estimated. Measure bytes per day per service before choosing hardware
- Cardinality: an attribute with millions of distinct values — a request id, a user id — as a real column will destroy the index. Keep those in the map or in a dedicated field, and write the rule down where people adding logs will read it
- Sampling is the thing the paid product exists to avoid, so if you find yourself sampling, compare the cost honestly against the subscription
- Structured logs, one JSON object per line, with a level, a timestamp, a service and a request id. A log line that is a sentence cannot be queried, and this is the single biggest lever on usefulness

QUERYING
- The store's own query language, with saved queries and a few starting points for the questions asked during an incident: errors by service, slowest requests, everything for one request id
- A time-range picker, a live tail, and a share link that carries the query and the range
- Fast enough that somebody opens it at three in the morning rather than grepping a server

ALERTS
- A saved query, an interval, a threshold, and a channel. Evaluated by a small worker, with deduplication and a recovery message
- Alert on symptoms with an action attached; delete any alert nobody acts on
- The alerting path must not depend on the infrastructure being watched

ACCESS AND SAFETY
- Per-dataset permissions, and redaction at ingest: secrets, tokens and personal data stripped by key and by pattern before storage. A log store is where data leaks to and stays
- Retention enforced and provable, because a log containing personal data is subject to the same deletion requests as anything else

OPERATIONS
- Compose files, the shipper configuration, retention policies, and a disk watchdog that sheds ingest rather than filling the volume
- Backups for the configuration and the alert definitions; the logs themselves have a retention, and that is the policy
- Health endpoint reporting ingest lag and free space

WHAT MATTERS MOST
Cardinality discipline and structured logs at the source. Get those wrong and no amount of storage tuning saves you; get them right and a small machine will hold more than you expect.

What you lose

  • Storage economics that make keeping every log affordable, which is the whole pitch
  • A query engine fast enough on months of data to be worth opening during an incident
  • Ingest endpoints and shippers for every runtime already written

If you would rather not build

  • Postgres with a jsonb column, for a single service

What it costs

read from their page 15 Aug 2026

PlanBilled monthlyBilled yearlyLast read
—$25/mo—15 Aug 2026

Their pricing page is where these came from. Seeing a different price? Tell us.

The escape hatch

open source · no votes, no paid placement

Loki

$0

Log aggregation designed to be cheap to run, self-hostable.

grafana/lokifree · open source

Vector

$0

Collects, transforms and ships logs to whatever you store them in.

vectordotdev/vectorfree · open source

Why this verdict

our own opinion · changed only by a person

54/100

Verdict kinda at 54. One service worth of logs fits in Postgres comfortably; a fleet does not, and that is exactly where these products earn their price.

History

tracked since 10 Aug 2026 · nothing is ever overwritten

Interest · last 30 dayspeak 1/day
views0130 Aug4 Sept9 Sept14 Sept19 Sept24 Sept28 Sept
— views— prompt copies none yet— votes none yet

Questions about Axiom

answered from the record above

Is Axiom free?

No — the plan we track is $25 a month. From around $25/month billed monthly, priced on ingested volume, with a free allowance.

Can you replace Axiom by building your own?

ALMOST. A weekend of work, and real gaps remain. Replacement score 54 out of 100, build time a weekend. Read what you lose before you decide.

How much does Axiom cost?

$25 a month on Personal — $300 a year. Recorded 10 Aug 2026.

What do you lose by replacing Axiom?

Storage economics that make keeping every log affordable, which is the whole pitch; A query engine fast enough on months of data to be worth opening during an incident; Ingest endpoints and shippers for every runtime already written. If any of those carry weight for you, keep paying.

Is there an open-source alternative to Axiom?

Yes: Loki, Vector. The prompt on this page is for when you want it your way instead.

Related entries

same category first, most replaced first

All 56 in Dev tools

Not sending yet

Every week, something stops being worth paying for.

New verdicts, prices that moved, entries added. One email a week. Unsubscribe in one click. Nothing is being sent yet — your address is kept here, and the first issue is the first thing it is used for.

free forever · no tracking pixel · stored here, never passed to anyone

Esc