Audit Logs
The audit log is a record of security-relevant events in your workspace, who signed in, who changed access, who touched sensitive settings. Admins use it to answer "what happened, and who did it?" after the fact.
Viewing the log
Go to Settings → Audit Logs. Entries are listed newest-first, each with a timestamp, the user responsible, the event type, and details about what changed.
What's recorded
The log focuses on security and account events rather than everyday ticket edits (those live in the activity feed). Expect entries for sign-ins, permission and role changes, and changes to sensitive configuration.
Filtering
For investigations, narrow the list by:
- Level:
info,warning, orerror - Event type: a specific kind of security event
- User: everything attributable to one person
- Date range: a from/to window
Combine filters to zero in, for example, all warning-level sign-in events for one user last week.
Related
- For per-ticket history (status changes, comments, assignments), use the activity feed.
- Individual account protections like 2FA are covered in account & security.