The only agent that thinks for itself

Autonomous Monitoring with self-learning AI built-in, operating independently across your entire stack.

Unlimited Metrics & Logs
Machine learning & MCP
5% CPU, 150MB RAM
3GB disk, >1 year retention
800+ integrations, zero config
Dashboards, alerts out of the box
> Discover Netdata Agents

Centralized metrics streaming and storage

Aggregate metrics from multiple agents into centralized Parent nodes for unified monitoring across your infrastructure.

Stream from unlimited agents
Long-term data retention
High availability clustering
Data replication & backup
Scalable architecture
Enterprise-grade security
> Learn about Parents

Fully managed cloud platform

Access your monitoring data from anywhere with our SaaS platform. No infrastructure to manage, automatic updates, and global availability.

Zero infrastructure management
99.9% uptime SLA
Global data centers
Automatic updates & patches
Enterprise SSO & RBAC
SOC2 & ISO certified
> Explore Netdata Cloud

Deploy Netdata Cloud in your infrastructure

Run the full Netdata Cloud platform on-premises for complete data sovereignty and compliance with your security policies.

Complete data sovereignty
Air-gapped deployment
Custom compliance controls
Private network integration
Dedicated support team
Kubernetes & Docker support
> Learn about Cloud On-Premises

Powerful, intuitive monitoring interface

Modern, responsive UI built for real-time troubleshooting with customizable dashboards and advanced visualization capabilities.

Real-time chart updates
Customizable dashboards
Dark & light themes
Advanced filtering & search
Responsive on all devices
Collaboration features
> Explore Netdata UI

Monitor on the go

Native iOS and Android apps bring full monitoring capabilities to your mobile device with real-time alerts and notifications.

iOS & Android apps
Push notifications
Touch-optimized interface
Offline data access
Biometric authentication
Widget support
> Download apps

The future of infrastructure observability

See our strategic direction across AI-native observability, full-stack signals, operational intelligence, and enterprise platform maturity.

AI-native observability
Full-stack signal coverage
Operational intelligence
Enterprise platform maturity
Agent releases every 6 weeks
Cloud continuous delivery
> Explore Product Roadmap

Best energy efficiency

True real-time per-second

100% automated zero config

Centralized observability

Multi-year retention

High availability built-in

Zero maintenance

Always up-to-date

Enterprise security

Complete data control

Air-gap ready

Compliance certified

Millisecond responsiveness

Infinite zoom & pan

Works on any device

Native performance

Instant alerts

Monitor anywhere

AI-native observability

Continuous delivery

Open source foundation

80% Faster Incident Resolution

AI-powered troubleshooting from detection, to root cause and blast radius identification, to reporting.

True Real-Time and Simple, even at Scale

Linearly and infinitely scalable full-stack observability, that can be deployed even mid-crisis.

90% Cost Reduction, Full Fidelity

Instead of centralizing the data, Netdata distributes the code, eliminating pipelines and complexity.

See and Map Your Entire Network

Live topology, flow analytics, and SNMP device and trap monitoring — unified with your full-stack observability.

Control Without Surrender

SOC 2 Type 2 certified with every metric kept on your infrastructure.

Integrations

800+ collectors and notification channels, auto-discovered and ready out of the box.

800+ data collectors
Auto-discovery & zero config
Cloud, infra, app protocols
Notifications out of the box
> Explore integrations
Real Results
46% Cost Reduction

Reduced monitoring costs by 46% while cutting staff overhead by 67%.

— Leonardo Antunez, Codyas

Zero Pipeline

No data shipping. No central storage costs. Query at the edge.

From Our Users
"Out-of-the-Box"

So many out-of-the-box features! I mostly don't have to develop anything.

— Simon Beginn, LANCOM Systems

No Query Language

Point-and-click troubleshooting. No PromQL, no LogQL, no learning curve.

Enterprise Ready
67% Less Staff, 46% Cost Cut

Enterprise efficiency without enterprise complexity—real ROI from day one.

— Leonardo Antunez, Codyas

SOC 2 Type 2 Certified

Zero data egress. Only metadata reaches the cloud. Your metrics stay on your infrastructure.

Full Coverage
800+ Collectors

Auto-discovered and configured. No manual setup required.

Any Notification Channel

Slack, PagerDuty, Teams, email, webhooks—all built-in.

Built for the People Who Get Paged

Because 3am alerts deserve instant answers, not hour-long hunts.

Every Industry Has Rules. We Master Them.

See how healthcare, finance, and government teams cut monitoring costs 90% while staying audit-ready.

Monitor Any Technology. Configure Nothing.

Install the agent. It already knows your stack.
From Our Users
"A Rare Unicorn"

Netdata gives more than you invest in it. A rare unicorn that obeys the Pareto rule.

— Eduard Porquet Mateu, TMB Barcelona

99% Downtime Reduction

Reduced website downtime by 99% and cloud bill by 30% using Netdata alerts.

— Falkland Islands Government

Real Savings
30% Cloud Cost Reduction

Optimized resource allocation based on Netdata alerts cut cloud spending by 30%.

— Falkland Islands Government

46% Cost Cut

Reduced monitoring staff by 67% while cutting operational costs by 46%.

— Codyas

Real Coverage
"Plugin for Everything"

Netdata has agent capacity or a plugin for everything, including Windows and Kubernetes.

— Eduard Porquet Mateu, TMB Barcelona

"Out-of-the-Box"

So many out-of-the-box features! I mostly don't have to develop anything.

— Simon Beginn, LANCOM Systems

Real Speed
Troubleshooting in 30 Seconds

From 2-3 minutes to 30 seconds—instant visibility into any node issue.

— Matthew Artist, Nodecraft

20% Downtime Reduction

20% less downtime and 40% budget optimization from out-of-the-box monitoring.

— Simon Beginn, LANCOM Systems

Pay per Node. Unlimited Everything Else.

One price per node. Unlimited metrics, logs, users, and retention. No per-GB surprises.

Free tier—forever
No metric limits or caps
Retention you control
Cancel anytime
> See pricing plans

What's Your Monitoring Really Costing You?

Most teams overpay by 40-60%. Let's find out why.

Expose hidden metric charges
Calculate tool consolidation
Customers report 30-67% savings
Results in under 60 seconds
> See what you're really paying

Your Infrastructure Is Unique. Let's Talk.

Because monitoring 10 nodes is different from monitoring 10,000.

On-prem & air-gapped deployment
Volume pricing & agreements
Architecture review for your scale
Compliance & security support
> Start a conversation

Monitoring That Sells Itself

Deploy in minutes. Impress clients in hours. Earn recurring revenue for years.

30-second live demos close deals
Zero config = zero support burden
Competitive margins & deal protection
Response in 48 hours
> Apply to partner

Per-Second Metrics at Homelab Prices

Same engine, same dashboards, same ML. Just priced for tinkerers.

Community: Free forever · 5 nodes · non-commercial
Homelab: $90/yr · unlimited nodes · fair usage
> Get the Homelab Plan

$1,000 Per Referral. Unlimited Referrals.

Your colleagues get 10% off. You get 10% commission. Everyone wins.

10% of subscriptions, up to $1,000 each
Track earnings inside Netdata Cloud
PayPal/Venmo payouts in 3-4 weeks
No caps, no complexity
> Get your referral link
Cost Proof
40% Budget Optimization

"Netdata's significant positive impact" — LANCOM Systems

Calculate Your Savings

Compare vs Datadog, Grafana, Dynatrace

Savings Proof
46% Cost Reduction

"Cut costs by 46%, staff by 67%" — Codyas

30% Cloud Bill Savings

"Reduced cloud bill by 30%" — Falkland Islands Gov

Enterprise Proof
"Better Than Combined Alternatives"

"Better observability with Netdata than combining other tools." — TMB Barcelona

Real Engineers, <24h Response

DPA, SLAs, on-prem, volume pricing

Why Partners Win
Demo Live Infrastructure

One command, 30 seconds, real data—no sandbox needed

Zero Tickets, High Margins

Auto-config + per-node pricing = predictable profit

Homelab Ready
Free Video Course

8-episode Netdata tutorial by LearnLinux.tv

76k+ GitHub Stars

3rd most starred monitoring project

Worth Recommending
Product That Delivers

Customers report 40-67% cost cuts, 99% downtime reduction

Zero Risk to Your Rep

Free tier lets them try before they buy

AI Support Assistant, Available 24/7

Nedi has access to all official documentation, source code, and resources. Ask any question about Netdata—responds in your language.

Deployment & configuration
Troubleshooting & sizing
Alerts & notifications
Evidence-based answers
> Ask Nedi now

Never Fight Fires Alone

Docs, community, and expert help—pick your path to resolution.

Learn.netdata.cloud docs
Discord, Forums, GitHub
Premium support available
> Get answers now

60 Seconds to First Dashboard

One command to install. Zero config. 850+ integrations documented.

Linux, Windows, K8s, Docker
Auto-discovers your stack
> Read our documentation

76,000+ Engineers Strong

615+ contributors. 1.5M daily downloads. One mission: simplify observability.

Per-Second. 90% Cheaper. Data Stays Home.

Side-by-side comparisons: costs, real-time granularity, and data sovereignty for every major tool.

See why teams switch from Datadog, Prometheus, Grafana, and more.

> Browse all comparisons
Edge-Native Observability, Born Open Source
Per-second visibility, ML on every metric, and data that never leaves your infrastructure.
Founded in 2016
615+ contributors worldwide
Remote-first, engineering-driven
Open source first
> Read our story
Promises We Publish—and Prove
12 principles backed by open code, independent validation, and measurable outcomes.
Open source, peer-reviewed
Zero config, instant value
Data sovereignty by design
Aligned pricing, no surprises
> See all 12 principles
Edge-Native, AI-Ready, 100% Open
76k+ stars. Full ML, AI, and automation—GPLv3+, not premium add-ons.
76,000+ GitHub stars
GPLv3+ licensed forever
ML on every metric, included
Zero vendor lock-in
> Explore our open source
Build Real-Time Observability for the World
Remote-first team shipping per-second monitoring with ML on every metric.
Remote-first, fully distributed
Open source (76k+ stars)
Challenging technical problems
Your code on millions of systems
> See open roles
Meet the Team Behind Netdata
Conferences, meetups, and tradeshows where you can see Netdata in action and talk to the engineers who build it.
Live demos and deep dives
Book 1-on-1 meetings
Talks and panel sessions
Event recaps and photos
> See all events
Talk to a Netdata Human in <24 Hours
Sales, partnerships, press, or professional services—real engineers, fast answers.
Discuss your observability needs
Pricing and volume discounts
Partnership opportunities
Media and press inquiries
> Book a conversation
Your Data. Your Rules.
On-prem data, cloud control plane, transparent terms.
Trust & Scale
76,000+ GitHub Stars

One of the most popular open-source monitoring projects

SOC 2 Type 2 Certified

Enterprise-grade security and compliance

Data Sovereignty

Your metrics stay on your infrastructure

Validated
University of Amsterdam

"Most energy-efficient monitoring solution" — ICSOC 2023, peer-reviewed

ADASTEC (Autonomous Driving)

"Doesn't miss alerts—mission-critical trust for safety software"

Community Stats
615+ Contributors

Global community improving monitoring for everyone

1.5M+ Downloads/Day

Trusted by teams worldwide

GPLv3+ Licensed

Free forever, fully open source agent

Why Join?
Remote-First

Work from anywhere, async-friendly culture

Impact at Scale

Your work helps millions of systems

$ guides / smartctl-disk-monitoring / smartctl-nvme-thermal-throttling ▌

Operations Guides

NVMe thermal throttling: throughput dropping with no errors

NVMe throughput drops during sustained I/O. No I/O errors in dmesg, no command timeouts, SMART health says PASSED, Media and Data Integrity Errors at zero. The workload has not changed, but latency is up and throughput is down by 30, 50, or more percent. Hours later, performance recovers on its own. The pattern repeats: degradation during peak load, recovery during quiet periods or overnight.

This is NVMe thermal throttling. The controller reduces performance to stay below vendor-defined temperature thresholds. Nothing in the standard error path surfaces it. The drive does not log I/O errors, the kernel does not see transport errors, and the SMART health assessment stays PASSED because the drive is operating within its protective envelope.

The evidence is in the SMART/Health Information log, specifically the time-above-threshold counters that most monitoring setups never collect. This article covers how to read those counters, confirm the diagnosis, and distinguish thermal throttling from look-alike conditions.

What this means

NVMe controllers define two temperature thresholds in firmware:

  • WCTEMP (Warning Composite Temperature Threshold): typically 70-80C, vendor-defined. At WCTEMP, the controller may begin light throttling.
  • CCTEMP (Critical Composite Temperature Threshold): typically 80-85C, vendor-defined. At or above CCTEMP, the controller applies heavy throttling or shutdown.

When the composite temperature crosses WCTEMP, the controller starts reducing I/O throughput. The throttling mechanism is vendor-specific, but the observable effect is consistent: I/O latency increases and throughput decreases. The drive does not flag this as an error because it is a designed protection mechanism, not a fault.

The SMART/Health Information log (NVMe Log Page 02h) tracks time spent above these thresholds:

  • Warning Comp. Temperature Time: cumulative minutes the composite temperature was at or above WCTEMP but below CCTEMP. Cleared to zero if WCTEMP or CCTEMP is not defined (0h).
  • Critical Comp. Temperature Time: cumulative minutes the composite temperature was at or above CCTEMP. Cleared to zero if CCTEMP is not defined.

Non-zero values confirm throttling has occurred, even when current temperature is normal. These counters accumulate while the controller is operational; the specification excerpt does not define their retention across power cycles.

The health log also tracks Host Controlled Thermal Management (HCTM) transitions. HCTM lets the host OS set two additional throttle thresholds (TMT1 and TMT2) via NVMe Set Features (Feature Identifier 0x10). When the composite temperature crosses a host-set TMT, the controller throttles and increments the corresponding transition count:

  • Thermal Temp. 1 Transition Count (thermal_mgmt_temperature_1_transition_count): increments when the composite temperature rises to TMT1 and light thermal management starts.
  • Thermal Temp. 2 Transition Count (thermal_mgmt_temperature_2_transition_count): increments for TMT2 (heavier) thermal management.
  • Thermal Temp. 1/2 Total Time (..._total_time): seconds spent in each state.
flowchart TD
    A[Sustained I/O workload] --> B[Composite temperature rises]
    B --> C{Crosses WCTEMP?}
    C -->|No| A
    C -->|Yes| D[Controller throttles: throughput drops]
    D --> E[Temperature stabilizes or falls]
    E --> F{Below threshold?}
    F -->|No| D
    F -->|Yes| G[Throttle releases: throughput recovers]
    G --> A
    D --> H[Warning Comp Temp Time increments]
    B --> I{Crosses CCTEMP?}
    I -->|Yes| J[Heavy throttle or shutdown]
    J --> K[Critical Comp Temp Time increments]

A key subtlety: the composite temperature is a vendor-computed value, not a direct physical sensor reading. The NVMe specification states that the manner in which this value is computed is implementation-specific and may not represent the actual temperature at any physical point in the subsystem. The drive’s internal sensor may lag behind actual component temperature. By the time SMART shows 70C, the junction temperature may already be at the throttle point.

Common causes

CauseWhat it looks likeFirst thing to check
Detached or missing M.2 heatsinkSingle drive overheats, neighbors are fine. Common after server relocation or chassis work.Physical inspection of heatsink mounting. Warning Comp. Temp. Time non-zero.
Inadequate chassis airflowMultiple drives in the same area run hot. Throughput drops correlate across drives.Compare temperatures across all NVMe drives. Check fan status and airflow path.
Adjacent GPU or CPU heatOne drive near a heat-generating component runs consistently hotter. Temperature tracks compute load, not disk I/O.Check physical layout. Correlate temperature with GPU or CPU load.
Datacenter or room cooling failureAll drives in a rack or row show rising temperatures simultaneously.Check ambient temperature at the rack intake.
Blocked vents or cable obstructionOne chassis or bay runs hotter than identical configurations.Physical inspection of airflow path in the chassis.

Quick checks

All commands below are read-only and safe to run on production drives.

# Current temperature and all SMART/Health fields
smartctl -a /dev/nvme0n1

# Focus on temperature and time-above-threshold counters
smartctl -A /dev/nvme0n1 | grep -iE "temperature|warning|critical|thermal"

# Controller thresholds (WCTEMP/CCTEMP) from Identify Controller data
smartctl -c /dev/nvme0n1

# nvme-cli alternatives (if smartmontools is not installed)
nvme smart-log /dev/nvme0n1
nvme id-ctrl /dev/nvme0n1 | grep -iE "wctemp|cctemp"

# Real-time I/O throughput and latency to correlate with temperature
iostat -x 1 /dev/nvme0n1

# Kernel thermal or NVMe events (most drives do not log thermal AENs to dmesg,
# so absence of output does not rule out throttling)
dmesg -T | grep -iE "nvme|thermal|throttl" | tail -30

# Chassis ambient temperature (if lm-sensors is configured)
sensors

The most important single output is from smartctl -A. Look for these fields:

  • Temperature: the current composite temperature.
  • Warning Comp. Temperature Time: if non-zero, the drive has spent time above WCTEMP.
  • Critical Comp. Temperature Time: if non-zero, the drive has spent time above CCTEMP.
  • Available Spare: confirm this is not also declining, which would indicate wear-related degradation compounding the thermal issue.

How to diagnose it

  1. Capture current temperature. Run smartctl -A /dev/nvme0n1 and note the composite temperature. Also note Temperature Sensor 1 through 8 if the drive exposes multiple sensors. Compare against WCTEMP from smartctl -c.

  2. Check time-above-threshold counters. Non-zero Warning Comp. Temperature Time confirms the drive has been throttling. This is your primary evidence. The current temperature may be normal if the drive has already throttled and cooled.

  3. Correlate with host-side I/O metrics. Run iostat -x 1 during a throughput degradation event. Look for increased await (latency) and decreased throughput (rkB/s and wkB/s) on the suspect drive. The degradation should correlate with temperature, not with a change in queue depth or workload pattern.

  4. Rule out pSLC cache exhaustion. Consumer and prosumer NVMe drives use a pseudo-SLC write cache. Under sustained writes, this cache fills and write speed drops from several GB/s to hundreds of MB/s. This looks identical to thermal throttling from the operator’s perspective. Distinguishing heuristic: if the slowdown tracks cumulative write volume since the last TRIM, suspect pSLC exhaustion. If it tracks temperature, suspect thermal throttling.

  5. Check Critical Warning bit 1. Run smartctl -A /dev/nvme0n1 | grep "Critical Warning". Bit 1 (0x02) means a temperature is currently at or above an over-temperature threshold or at or below an under-temperature threshold. For overheating, the relevant over-temperature threshold may be WCTEMP, CCTEMP, or a host-set TMT. This bit reflects current state, not history. A drive that throttled hours ago shows 0x00 if it has since cooled.

  6. Compare across drives in the same chassis. If multiple NVMe drives show elevated temperatures simultaneously, the root cause is environmental (airflow, ambient, fan failure), not drive-specific. If only one drive is hot, suspect a physical issue such as heatsink detachment or PCIe slot placement near a heat source.

  7. Establish the throttle cycle pattern. If the degradation recurs on a daily cycle (worse during peak load, recovers overnight), thermal throttling is the likely explanation. Temperature has a time constant: the drive heats up under sustained load and cools when I/O subsides.

Metrics and signals to monitor

SignalWhy it mattersWarning sign
Composite TemperatureCurrent thermal state of the drive.Trending toward WCTEMP under load.
Warning Comp. Temperature TimeCumulative evidence of throttling history.Non-zero value, especially if growing between polls.
Critical Comp. Temperature TimeCumulative time above CCTEMP.Any non-zero value. Sustained time at this temperature risks NAND damage.
Critical Warning bit 1 (0x02)Temperature above WCTEMP or CCTEMP right now.Currently set. May be transient but indicates the drive is at its thermal limit.
I/O throughput and await (iostat)The user-visible symptom of throttling.Throughput drops while queue depth stays constant. Await increases without corresponding media errors.
Available SpareThermal stress accelerates NAND wear.Declining alongside elevated temperature confirms compounding damage.
Percentage UsedHigh temperature accelerates endurance consumption.Rising faster than expected from write volume alone.

Fixes

Fix airflow and cooling

This is the most common and most effective fix. Thermal throttling means the drive cannot shed heat fast enough. Addressing the cooling path restores full throughput without changing any drive configuration.

  • Check fan status. A failed chassis fan is the most common root cause. Verify all fans are spinning and that airflow direction is correct (front-to-back in most server configurations).
  • Inspect the M.2 heatsink. On M.2 drives, the heatsink or thermal pad may have detached, especially after physical maintenance. A drive with no heatsink in a sustained-write workload will throttle quickly. Reseat the heatsink with proper thermal pad contact.
  • Check for airflow obstruction. Cables, drive cages, or dust accumulation can redirect airflow away from the NVMe slot. Ensure the airflow path to the drive is unobstructed.
  • Reduce ambient temperature. If the datacenter or room temperature is high, all drives suffer. Address the environmental issue rather than individual drives.

Reduce write workload

If cooling improvements are not possible or insufficient, reducing the write rate gives the controller more thermal headroom. This is a workaround, not a fix.

  • Move write-heavy workloads (logs, WAL, swap, temp files) to a different drive.
  • Batch writes to reduce sustained burst duration.
  • Enable TRIM to help the controller manage garbage collection efficiently, which reduces internal write amplification and heat generation.

Consider HCTM thresholds

Host Controlled Thermal Management lets the OS set TMT1 and TMT2 throttle points via NVMe Set Features (Feature Identifier 0x10). By default, the drive firmware uses its own WCTEMP and CCTEMP thresholds. HCTM gives the host control over when throttling begins.

Setting TMT1 lower than the firmware default causes the drive to throttle earlier and more gently, which can prevent the sharp throughput cliffs that occur when the firmware abruptly throttles at WCTEMP. The trade-off is that you are choosing to limit performance at a lower temperature to avoid hitting the harder thermal wall.

Warning: nvme set-feature applies changes immediately and affects live I/O performance. Test on a non-production drive first. HCTM thresholds may not persist across controller resets unless saved with the Save (SV) bit; check your drive’s behavior.

TMT1/TMT2 supported ranges are reported as vendor-specific MNTMT/MXTMT fields. Standard smartctl output does not print the currently configured TMT values; use nvme get-feature --feature-id 0x10 where the controller supports Get Features for HCTM.

Prevention

  • Monitor Warning and Critical Comp. Temperature Time. These counters are the only accumulated evidence of throttling. Alert on any non-zero value that was previously zero. This is a Level 3 maturity signal in the SMART monitoring maturity model.

  • Track composite temperature trends. A rising baseline temperature over days or weeks indicates degrading cooling before throttling begins. A 10C increase from the established baseline without a workload change warrants investigation.

  • Establish temperature baselines per drive. NVMe drives in different chassis positions have different thermal profiles. Baseline each drive at deployment and alert on deviation, not on absolute thresholds alone.

  • Schedule periodic physical inspection. M.2 heatsinks detach. Fan bearings fail. Airflow paths get obstructed. These are mechanical issues that monitoring can hint at (rising temperature) but cannot confirm.

  • Do not page on temperature alone. Transient temperature spikes from burst I/O or ambient heat self-resolve with throttling. Temperature without corroborating signals (throughput drop, Warning Comp. Temp. Time incrementing, Critical Warning bit 1) is the drive operating within its protection envelope.

How Netdata helps

  • Per-second temperature correlation. Netdata collects NVMe SMART metrics at per-second resolution, making the correlation between temperature rise and throughput drop visible at the timescale where throttling actually occurs. Standard polling intervals of 5 to 10 minutes miss the throttle cycle entirely.
  • Throughput and latency alongside SMART data. Netdata surfaces disk I/O metrics (throughput, latency, queue depth, iowait) on the same dashboard as SMART health data, so the diagnostic pattern of temperature rising while throughput drops with no media errors is visible without switching tools.
  • Anomaly detection on temperature trends. Netdata’s ML-based anomaly detection flags unusual temperature patterns (gradual rise, new sustained-temperature baseline) before they reach the throttle threshold.
  • Rate-of-change alerting on cumulative counters. Warning Comp. Temperature Time and Critical Comp. Temperature Time are cumulative counters. Netdata’s rate calculation surfaces when these counters start incrementing, which is definitive evidence of throttling history.
  • Fleet-level temperature comparison. When multiple drives in the same chassis show temperature anomalies simultaneously, Netdata’s correlated dashboards make the environmental root cause immediately visible.