/
Export workspace audit logs for compliance monitoring and SIEM integration.
Pro Plus plan — Audit log export is available on Pro Plus plans for compliance and SIEM workflows. Upgrade from Billing & Plans.
Export workspace audit logs for SIEM integration (Pro Plus)
100/minsincenumberrequiredStart of time range (Unix timestamp in ms)untilnumberEnd of time range (Unix timestamp, defaults to now)limitnumberNumber of logs (max 1000, default 100)categoriesstringComma-separated list: authentication, authorization, data_access, data_modification, configuration, security, systemformatstringResponse format: json (default), csv, or cef{
"logs": [
{
"id": "log_abc123",
"category": "authentication",
"action": "user.login",
"actorId": "usr_def456",
"actorEmail": "jane@example.com",
"ipAddress": "192.168.1.1",
"userAgent": "Mozilla/5.0...",
"timestamp": "2024-02-01T10:30:00Z",
"metadata": {}
}
],
"total": 523,
"hasMore": true
}Filter audit logs by category to narrow down to specific event types:
authenticationLogin, logout, MFA, and session eventsauthorizationPermission changes, role updates, and access grantsdata_accessRead operations on sensitive resourcesdata_modificationCreate, update, and delete operationsconfigurationSettings changes, integration updatessecurityAPI key operations, SSO configuration changessystemSystem-level events and administrative actionsjsonStandard JSON format (default)csvCSV format for spreadsheet importcefCommon Event Format for SIEM systems (Splunk, QRadar, etc.)