AtlasWork, planned itself.

    The AI-native, all-in-one work platform. Tasks, projects, CRM, contracts, and analytics in one calm workspace.

    System status
    • SSO
    • SCIM
    • Two-factor sign-in
    • Audit log

    Product

    • Overview
    • PDF tools
    • Diagram tools
    • People & HR
    • Integrations
    • Marketplace
    • Pricing

    Resources

    • Guides
    • Glossary
    • Compare
    • Docs
    • API reference
    • Support
    • Changelog
    • Status

    Company

    • About
    • Careers
    • Press
    • Contact

    Legal & trust

    • Trust center
    • Security
    • Privacy
    • Terms
    • DPA
    • GDPR
    • SLA
    • Refunds
    • Google API data
    Atlas, a product by wrxstack.com·© 2026 wrxstack·All rights reserved
    PrivacyTermsSecurityStatus

    You are in control of your cookies

    Atlas uses strictly necessary cookies to keep you signed in. With your consent, we add anonymized product analytics, conversion attribution, and remembered preferences. Change your mind any time at /privacy/cookies.

    Off until you agree · Change it any time

    • Necessaryalways on
    • Analyticsopt-in
    • Marketingopt-in
    • Preferencesopt-in
    Skip to documentation
    Docs
    Back to Atlas

    Start here

    • Overview

    Developer

    • REST API guide
    • Authentication
    • API reference
    • MCP (AI agents)
    • MCP tools reference
    • SDKs
    • Quick actions
    • Changelog

    Webhooks

    • Overview
    • Quickstart
    • Events
    • Payloads and headers
    • Security and signing
    • Delivery and retries
    • Managing via API

    Connect

    • Connectors
    • Integrations

    Product

    • Collaboration and chat
    • Signing in and security
    • Client portal

    Reference

    • Glossary
    • Keyboard shortcuts
    • Module reference
    Module reference

    Module guide

    Audit log

    Append-only record of every consequential action, per tenant.

    Open module/settings/audit-log
    adminobservability

    Overview

    Every service that mutates state calls recordAudit() to append a row with the actor identity, action name (for example, "task.updated"), target (for example, "task:xyz"), and free-form context. Under impersonation the row is stamped with actingAs. This drives automations (when-then), exports (CSV and JSON), and compliance replays.


    Highlights

    The capabilities worth knowing before you dive in.

    • BigInt autoincrement id, so ordering is unambiguous under concurrency
    • Indexed by (tenantId, at), (tenantId, actorId), and (tenantId, action)
    • Search UI with an action-prefix filter and an actor filter
    • Feeds the automation engine and the webhook dispatcher

    Important to know

    Limits, permissions, and sharp edges to keep in mind.

    • Audit events are append-only; they are never mutated or deleted.
    • The context JSON can carry arbitrary metadata, so keep PII out.
    • Under super-admin impersonation, actingAs is stamped server-side and cannot be spoofed by the client.

    How to use it

    The primary workflow, start to finish.

    1. 1Open /settings/audit-log.
    2. 2Filter by an action prefix (for example, "task.") or by actor.
    3. 3Export to CSV or JSON for external analysis.

    FAQ

    Can an audit entry be edited or removed?
    No. The log is append-only. Entries are never mutated and never deleted, which is what makes it usable as evidence rather than as a convenience.
    Can I tell when somebody acted through impersonation?
    Yes. The acting identity is stamped on the row by the server and cannot be set by the client, so an action taken while impersonating carries both the account it was taken as and the operator who took it.
    Is it safe to put anything I like in the context field?
    The context accepts arbitrary metadata, which means it will faithfully keep whatever you put there, including personal data you did not intend to retain. Keep personal data out of it and record identifiers instead.

    Automate this module

    Everything on this screen is scriptable. Drive it from the REST API, or let an AI agent run it through the MCP server.
    All modules
    Was this page helpful?

    On this page

    • Overview
    • Highlights
    • Important to know
    • How to use it
    • FAQ