Skip to content

Audit log Optional feature

Records important user operations and system events. You can view it from global nav > Workspace settings > Audit log, and from each resource's change log. Only a Workspace Owner can view it (Workspace permissions).

TIP

This is an optional feature. Depending on your contract, it might not be available.

Information shown on screen

The audit log screen has the following columns.

ColumnContent
TimeWhen the operation occurred
StatusSuccess / Error / Deny
IPThe IP address the operation came from (only on the workspace settings audit log screen; not shown in each resource's change log)
LogThe operation described in natural-language text, including the actor (user, API key, and so on) and the target resource
  • Log text is recorded in English.
  • Email addresses are partially masked.
  • Content such as notebook body text isn't recorded.
  1. Open global nav > Workspace settings > Audit log.
  2. In the search field, choose a user, group, or API key, or enter a keyword.
  3. Select Search.
  • There's no filtering by category or operation type.
  • Keywords do a partial match against the log text. Prefix a word with - to exclude logs containing it.
  • Select Refresh logs to get the latest list.

Relationship with change logs

Entry pointScope
Workspace settings > Audit logThe entire workspace
Each screen's Change log / HistoryLimited to operations related to that resource (users, groups, API keys, PATs, teamspaces, connection permissions, additional notebook permissions, reports, public links, and more)

Using an API key or PAT (token use) is included in the workspace-wide audit log. It's excluded from each key's management change log.

Recorded operations

Examples of operations recorded for audit purposes.

CategoryExamples
WorkspaceCreation, renaming, deletion, icon and setting changes
Users / invitationsSending, accepting, and declining invitations, role changes, removal, joining via domain match or invite link
GroupCreation, renaming, deletion, member joining and leaving, owner and permission changes
Teamspace / folderCreation, renaming, deletion, moving, owner changes
NotebookCreation, deletion, renaming, moving, duplicating, restoring, opening, updates (metadata), additional permission changes
VersionCreation, renaming, deletion, opening
Report / public link / signed embedPublishing, publishing changes, deletion, settings, tags, sharing, token issuance, and more
ConnectionCreation, deletion, access level changes, owner changes, running/getting results/cancelling SQL jobs, and more
Catalog-relatedCreating, updating, and deleting tags, updating table annotations
API key / PATCreation, updates, deletion, secret operations, usage
WorkflowCreation, duplication, updates, deletion, running and cancelling jobs
ThemeAdding, updating, deleting, and setting the default notebook theme (color palette)

Retention and export

  • The retention period is 1 year (Fixed limits and constraints).
  • There's currently no export feature on the screen. If you need to export data, contact Codatum support.