Skip to main content
The audit log is your workspace’s own change record: what was changed, who changed it, and when. It is the page to open when a compliance review asks how a setting came to be the way it is, or when something in the workspace stopped behaving as expected. Find it under Settings → Audit Log. Workspace owners and admins can view recorded support access and changes made during support sessions on every plan. A plan that includes Audit Log also shows other workspace activity. Without that feature, support entries remain visible alongside an upgrade link to Settings → Plan.

What it records

Entries are written as changes happen, across assistants and their tools, automations and campaigns, audience and knowledge-base content, telephony (numbers, SIP trunks, carrier connections, caller IDs), channels and email addresses, workspace settings such as retention and dark windows, and security actions — API keys created or revoked, members invited or removed, roles changed. Each row names the person who acted, or API / System when the change came from a key or an automatic process rather than someone signed in, together with the action, the resource it touched, and the time. Newest entries sit on top. Use the page controls at the bottom to move between pages — each page loads a fresh set of entries.

Search and sort

Type in the search box to keep only the entries matching an action, a resource, or the name or email of whoever made the change. Select the Action or Time column header to sort by it, and select it again to reverse the direction.
Audit Log search with no matching entries

Settings → Audit Log: use the search field to narrow workspace activity. This example search has no matching entries.

Reading an entry

Select a row to expand it. A change to existing settings lists each field that changed with its before and after value side by side; other entries show whatever detail was recorded with them. Recorded support sessions include the person accessing the workspace, the reason for access, and the session start. Leaving the session adds an end entry. Changes made during the session show the administrator who performed them and share the same access reason and session reference, so you can follow the work across entries. Expand a change to see the recorded fields or before-and-after values. The impersonation marker identifies actions performed through a support session. Both recording this support activity and viewing its entries are available independently of the workspace’s plan. The owner or admin role is still required to view them.

See also

Trust Center and Roles and team management.