Audit
Who changed what, and when.
List the access log
Returns the workspace's request log — who called what, when, and with which parameters.
query Parameters
cursor^[A-Za-z0-9_-]+$limitlog_bodylog_idlog_methodlog_paramslog_querylog_timestamplog_urllog_userlog_user_nameoffsetsort^-?[a-z0-9_]+$Headers
X-Tenant-IdThe workspace this request acts in. Every row the API returns is isolated to it at the database layer by row-level security.
List the access log › Responses
Success
has_moreWhether more rows exist past this page.
next_cursorPass back as cursor for the next page. Null on the last page.
List audit history
Returns the workspace's audit trail: who changed which record, when, and what the changeset was.
query Parameters
cursor^[A-Za-z0-9_-]+$history_idhistory_ophistory_recordhistory_tablehistory_timestamphistory_userhistory_user_namelimitoffsetsort^-?[a-z0-9_]+$Headers
X-Tenant-IdThe workspace this request acts in. Every row the API returns is isolated to it at the database layer by row-level security.
List audit history › Responses
Success
has_moreWhether more rows exist past this page.
next_cursorPass back as cursor for the next page. Null on the last page.
List security events
Authentication activity across the workspace — sign-in attempts, credential changes, second-factor actions and account blocks, as the identity provider reported them.
Events are recorded when authentication is processed, which is not always when a person acted: a token exchange renewing a session carries its own timestamp. Filter on ae_type to narrow to the events a person caused, and on ae_success to separate attempts from outcomes.
query Parameters
ae_cityae_connectionae_countryae_idae_ipae_successae_timestampae_typeae_userae_user_namecursor^[A-Za-z0-9_-]+$limitoffsetsort^-?[a-z0-9_]+$Headers
X-Tenant-IdThe workspace this request acts in. Every row the API returns is isolated to it at the database layer by row-level security.
List security events › Responses
Success
has_moreWhether more rows exist past this page.
next_cursorPass back as cursor for the next page. Null on the last page.
