Audit log: a complete record of security and admin activity

New featureAccount and BillingSecurity

The Audit log gives a complete, organisation-wide record of security and administrative activity: sign-ins, member and role changes, credential and API key activity, billing and SSO changes, and more. It's built for compliance, security reviews and investigations, giving you a clear audit trail of who did what, when, and from where.

The organisation-wide Audit log, listing events with the person, action, target, country and device for each one.

Every security and administrative event in your organisation, recorded with the person, action, target, country and device.

Filter by event type, time range or a single person, export a month of history at a time as NDJSON, or stream every event to your SIEM in real time with signed webhooks.

The Audit log webhook settings, showing the endpoint URL, signing secret and a recent deliveries table.

Stream every audit event to your SIEM or endpoint, signed so you can verify it came from Calibre.

You can also choose how long events are kept, and place a legal hold to preserve everything during an investigation or for compliance.

The Audit log is available now on the Company Plan. Read the documentation for setup, the event payload and signature verification.