Audit Log Detail
Audit Log Detail is a drawer opened from one Documents log row. It shows the fields recorded for that event; fields with no value may be omitted.
Open and close the drawer
- Open Documents Activity Logs.
- Search or filter until you find the relevant row.
- Select Details.
- Close the drawer with X, Escape, or the backdrop.
Your log filters remain available after the drawer closes.
Fields you may see
| Group | Examples |
|---|---|
| Identity | Log ID, Request ID, Occurred At. |
| Classification | App, Section, Action, Outcome. |
| Request | HTTP Method, Endpoint, Status Code. |
| Actor | Name, Email, Roles. |
| Resource | Resource Type/Path, Entity, Instance, Field, Document ID, File Name. |
| Permission target | Principal type, ID, and name. |
| Network/error | IP Address and Error Message. |
| Additional data | Change Summary and Metadata, when recorded. |
Investigate a denied event
Check the actor, roles, action, resource, outcome, status code, time, and IP information that is available. A denied outcome means the recorded request was blocked; it does not by itself prove malicious intent.
Investigate a deletion
- Filter by file and delete-related action where possible.
- Open Details and confirm the document, actor, time, and scope.
- If it was an individual soft-deleted file, look in Trash.
- If it was a permanent folder or Document Management deletion, Trash cannot restore it.
Use identifiers when requesting help
Record the Log ID and Request ID when available. They help support correlate the UI event with server records. The drawer does not have a dedicated shareable URL or export button.
The presence of technical fields does not by itself establish a compliance standard, immutability guarantee, or retention period.
Still stuck? See Get Help with Support or reach your workspace administrator.
