Audit Log Detail

`/documents/logs`Users permitted to open Documents Logs1 min read

Audit Log Detail is a drawer opened from one Documents log row. It shows the fields recorded for that event; fields with no value may be omitted.

Open and close the drawer

  1. Open Documents Activity Logs.
  2. Search or filter until you find the relevant row.
  3. Select Details.
  4. Close the drawer with X, Escape, or the backdrop.

Your log filters remain available after the drawer closes.

Fields you may see

Group Examples
Identity Log ID, Request ID, Occurred At.
Classification App, Section, Action, Outcome.
Request HTTP Method, Endpoint, Status Code.
Actor Name, Email, Roles.
Resource Resource Type/Path, Entity, Instance, Field, Document ID, File Name.
Permission target Principal type, ID, and name.
Network/error IP Address and Error Message.
Additional data Change Summary and Metadata, when recorded.

Investigate a denied event

Check the actor, roles, action, resource, outcome, status code, time, and IP information that is available. A denied outcome means the recorded request was blocked; it does not by itself prove malicious intent.

Investigate a deletion

  1. Filter by file and delete-related action where possible.
  2. Open Details and confirm the document, actor, time, and scope.
  3. If it was an individual soft-deleted file, look in Trash.
  4. If it was a permanent folder or Document Management deletion, Trash cannot restore it.

Use identifiers when requesting help

Record the Log ID and Request ID when available. They help support correlate the UI event with server records. The drawer does not have a dedicated shareable URL or export button.

The presence of technical fields does not by itself establish a compliance standard, immutability guarantee, or retention period.

Still stuck? See Get Help with Support or reach your workspace administrator.