Audit logs are available on Enterprise plans. Contact us to enable audit logs for your organization.
What’s tracked
Audit logs capture security-related events and administrative changes, including:- Authentication — successful and failed logins, logouts, and session management
- Passwords & MFA — password resets, changes, MFA setup and removal
- API keys — enabling, regenerating, and revoking API access
- User management — inviting, disabling, and changing roles for team members
- Groups — creating, renaming, and modifying group membership and access
- Organization settings — name changes, MFA requirements, and org deletion
- OAuth apps — creating, deleting, and resetting secrets for developer apps
Viewing audit logs
Go to Settings → Audit logs in the left sidebar. You’ll see a table of recent events with:- Time — hover for the exact timestamp
- Actor — who performed the action and their role
- Action — the event type (e.g.,
auth.login.success,user.invite) - Resource — what was affected
- Outcome — whether it succeeded or failed
Filtering
Use the filter bar at the top of the page to narrow events by:- Date range — select a start and end date
- Actor type — filter by Org Members, API Keys, or Unknown actors
- Resource type — filter by Users, Groups, or Organization
Event categories
Events are organized into these categories:
For a complete list of every event type and what data is captured, see the event types reference.