Viewing Audit Logs

- Navigate to Audit Logs in the sidebar
- Filter by:
- Date range
- Action type (created, deleted, accessed, etc.)
- User
- Resource (specific MCP server)
- Client (MCP client application, e.g. Cursor, Claude Desktop)
- Click on any log entry to see full details
What Gets Logged
- MCP server creation, configuration, and deletion
- Skill creation, update, and deletion
- Plugin creation, update, and deletion
- Access requests and approvals
- Policy changes
- User authentication events
- Tool calls and API requests (including skill and plugin proxy calls)
- Agent account lifecycle (creation, credential rotation, deletion)
- Security violations and risk assessments
All logs are tamper-proof and retained for compliance purposes.
Related Resources
Security
Monitor security alerts
Employee Handbook
Complete user guide