What we log
Immutable events cover reveal, copy, create, update, delete, login, sharing changes, approval requests, access review decisions and secure file downloads—with actor, IP address, timestamp and target resource.
Trust center
Every sensitive action leaves a trace: who performed it, what resource was touched, when it happened and from where.
Immutable events cover reveal, copy, create, update, delete, login, sharing changes, approval requests, access review decisions and secure file downloads—with actor, IP address, timestamp and target resource.
Approval workflows for secret reveal and exports are logged end-to-end. Access review campaign activity provides evidence for least-privilege certification cycles.
Audit retention scales with your subscription. Business and partner plans include longer retention windows suitable for SOC 2 and internal security reviews.
Read-only auditor roles let compliance and security teams review activity without vault write access or credential reveal permissions.
Administrators can review organization activity from the admin console. Enterprise customers can request extended retention and export options during procurement.
Start a free trial or log in to review vaults, MFA and audit logs with your team.
Contact our security team for compliance mapping, DPAs and architecture reviews.