Audit Log
The Audit Log provides a complete history of all administrative actions taken in your tenant. Use it to track who did what and when.
Viewing the Audit Log
Go to Settings > Audit Log in the sidebar. The log shows entries in reverse chronological order (newest first).
| Column | Description |
|---|---|
| Timestamp | When the action occurred (hover to see full date and time) |
| User | Email of the person who performed the action |
| Action | What was done (color-coded badge) |
| Entity Type | The type of resource affected |
| Entity Name | Name or identifier of the affected resource |
| Details | Additional context about the change |
Filtering
Use the dropdowns to filter by:
- Action - Filter by a specific action type (e.g., only show Create or Delete actions)
- Entity Type - Filter by resource type (e.g., App, Device, Group)
Results are paginated. Use Previous and Next to browse pages.
Tracked Actions
The audit log captures actions across all areas of the platform:
Apps
- Created, updated, deleted
- Rolled back to a previous version
- Dependency added or removed
Assignments
- Created, updated, deleted
Groups
- Created, updated, deleted
- Device added or removed
Devices
- Deleted
- Force check-in requested
Deployments
- Cancelled
- Retried
Policies
- Created, updated, deleted
- Settings added or removed
- Assigned to or removed from a group
Scripts
- Created or deleted
- Schedule created, updated, or deleted
Windows Update
- Ring created, updated, deleted
- Ring assigned to or removed from a group
Users & Settings
- User signed in
- Sign-in attempt failed, with the reason
- User invited, removed, or access changed
- Invite revoked
- Tenant settings updated
- Enrollment token created or deleted
Action Color Coding
Actions are color-coded for quick scanning:
| Color | Action Types |
|---|---|
| Green | Create, Add (new resources or associations) |
| Blue | Update, Retry, Rollback (modifications) |
| Red | Delete, Remove, Cancel (removals) |
Tips
- Use the audit log to investigate unexpected changes in your environment.
- Filter by Entity Type to review all changes to a specific resource category.
- The Details column contains the specifics of each change - hover to see the full information.