- Available on: Enterprise plans
- Access: Workspace admins and owners
- Location: Settings → Workspace → Audit logs
Audit log events
Workspace audit logs include events across categories such as:| Category | Example events |
|---|---|
| Workspace membership |
|
| Workspace management |
|
| Groups |
|
| Identity and access |
|
| Secrets and integrations |
|
| Projects |
|
| Authentication |
|
Audit log table
By default, the page shows logs for All actions, All members, and All time. The total number of matching logs appears in the top right of the table. The table is organized into four columns:| Column | Description |
|---|---|
| Timestamp | Shows relative time, such as 4 minutes ago or about 11 hours ago. Hover to see the exact date and time. |
| Actor | The member who performed the action. Clicking the member’s name opens a popover showing their User ID, IP address, and User Agent. From this popover, you can copy these details or filter the table by that user. |
| Action | The type of activity, displayed as a label such as Prompt sent, Workspace updated, Member added, or Project created. |
| Resource | The affected object, such as a project, workspace, or user. Some resources are clickable. For example, clicking a project name opens that project. |
Filtering audit logs
You can combine all three filters to focus on specific activity:- All actions lets you filter by a specific action type, such as
Member added,Member removed,Workspace updated,Project created, orPrompt sent. - All members lets you select a workspace member using the searchable member picker.
- Time range includes presets such as All time, Last 7 days, Last 30 days, Last 90 days, This month, and Last month.
How to use audit logs
A typical workflow:- Set a relevant time range.
- Filter by member to review activity from a specific user.
- Filter by action type to narrow results to a specific kind of change.
- Expand entries to inspect the full JSON details.
- Open affected projects or jump to related messages to review context.
- Use the member popover to copy details such as user ID, IP address, or user agent if needed.
Audit log data retention
Logs are retained for 13 weeks, or approximately 90 days. Events older than that are automatically removed.Logs before February 26, 2026 may be incomplete.
FAQ
Who can access audit logs?
Who can access audit logs?
Audit logs are available on Enterprise plans and are visible to workspace owners and admins.
How long are audit logs retained?
How long are audit logs retained?
Audit logs are retained for 13 weeks, or approximately 90 days. Events older than that are automatically removed.
Can I export audit logs?
Can I export audit logs?
No, there is currently no export functionality.Audit log entries can be expanded to view structured JSON details, which can be copied if needed.
Why don’t I see audit logs?
Why don’t I see audit logs?
If audit logs are not available or do not appear as expected:
- Confirm your workspace is on an Enterprise plan.
- Confirm your role includes permission to view audit logs. You must be a workspace admin or owner.
- Clear filters and try a broader time range.