Skip to main content
Every change in an org is recorded with who made it: an agent published by someone on your team, a session created with an API key, a task stopped from the console, a note the agent wrote to its own files during a task. Admins see the log in the console under Settings → Audit log. Admins and API keys can read it with GET /v1/audit_events:
Response

The event

The log never holds prompts, answers, file contents or secrets. It says that a file was written, and by whom, not what it says. It isn’t deleted by retention: it outlasts the tasks it mentions.

Actors

Objects also say who made and changed them, without a trip to the log: sessions and tasks have created_by, agents have created_by and updated_by, an agent’s draft has saved_by, its versions published_by and its files updated_by.

Actions

task.answered, task.approval_decided and task.stopped are your team’s. What the customer answers, decides or stops is in the task’s events, with answered_by: "customer". More actions may be added, so don’t fail on ones you don’t know.

Filtering and paging

object_id without object_type is a 400. Reading the log needs the admin role or an API key.
With the SDKs, listAll and list_all walk every page: