Audit Log
Admin Panel → Audit Log shows who did what in your account — so you can trace permission changes and answer "who did this?".
What gets recorded?
| Area | Recorded events |
|---|---|
| Users | Created, deleted, role changed, agent access turned on or off. |
| Invitations | Sent, cancelled, resent. |
| Roles | Permission matrix saved, reset to defaults, custom role created or deleted. |
| Support requests | Opened, closed, reopened. |
| Sign-in | Successful and failed attempts. |
A role change and agent access are separate rows. One save can change both, and "user updated" would not answer the question "what changed?".
The period before recording
The screen tells you when recording started. That matters: an empty list does not mean "nothing was done", it means "there was nothing to record yet". Things done before recording began were not undone — they were simply not recorded.
The audit log cannot be deleted
There is no endpoint that deletes or edits the log — not from the panel, not from the API. An editable audit log is not an audit log. Secrets such as passwords or keys are never written into it either.
Your account only
Every entry belongs to one account and is visible only to that account's users. Another customer's actions never appear in your list.
One detail about failed sign-ins: an attempt is recorded only if the email resolves to a user. If it does not, we do not know which account it belongs to — and therefore do not know whom to show it to.
SemAgent