Audit trail

Every privileged action against your Gateway org, recorded with who, what, when, and from where

The audit trail is an append-only record of privileged actions in your organization (settings, key, credential, member, and role changes, sign-ins, and exports) for compliance reviews and “who changed this?”. Inference requests are in the request logs instead.

View and export

Open Settings → Audit trail in the dashboard, filter by date, event type, and member, and Export CSV to download the filtered set. There is no API or streaming export. Both need View audit trail, which all four built-in roles include. Each export is recorded as AUDIT_LOG_EXPORTED and appears in the file it produces.

The CSV columns are Timestamp, User Name, User Email, Role, IP Address, Event Type, and Event Description. Cells starting with =, +, -, @, a tab, or a carriage return get a leading single quote so spreadsheets don’t run them as formulas.

Entry fields

FieldDescription
TimestampWhen the event was recorded, in UTC
UserName and email of the member who acted, captured at write time. Empty for system-driven events.
RoleThe member’s role at the time of the event, kept even if the role is later renamed or deleted
IP addressThe client IP as seen by Cloudflare (CF-Connecting-IP), otherwise the connection IP
URL and methodThe request path and HTTP method that caused the event
Request bodyThe submitted body. Omitted for API keys, credentials, SSO, sign-in, password reset, and self-hosted endpoints, so secrets never reach the audit trail.
Event typeOne of the event types below
Event descriptionA readable summary. Update events list each changed field, for example Changed allowed_models: added openai/gpt-5.5; removed openai/gpt-5-mini, with values cut to 100 characters.

Entries are never edited and are kept indefinitely. Failed actions write no entry (it commits with the change), except failed sign-ins (LOGIN_FAILED).

Reference

Event type names are the prefix plus the action, for example API_KEY_CREATED. The Event type filter lists every current type; new features add more.

ResourcePrefixActions
API keysAPI_KEY_CREATED, UPDATED, DELETED
Management keysMANAGEMENT_KEY_CREATED, DELETED
Vendor credentials (BYOK)CREDENTIAL_CREATED, UPDATED, DELETED
MembersMEMBER_INVITED, JOINED, INVITATION_RESENT, INVITATION_REVOKED, ROLE_CHANGED, REMOVED
RolesROLE_CREATED, UPDATED, DELETED
Sign-innoneLOGIN_SUCCESS, LOGIN_FAILED, LOGOUT, PASSWORD_RESET
MFAMFA_ENABLED, DISABLED, DEVICE_CHANGED, ADMIN_RESET, VERIFICATION_FAILED, REQUIRED_ENABLED, REQUIRED_DISABLED
SSOSSO_PROVIDER_CREATED, PROVIDER_UPDATED, PROVIDER_DELETED, LOGIN_REQUIRED_ON, LOGIN_REQUIRED_OFF
OrganizationORG_CREATED, SETTINGS_UPDATED, DEACTIVATED, REACTIVATED, DELETED
Agent signupnoneAGENT_SIGNUP, AGENT_CLAIM_REISSUED, ORGANIZATION_CLAIMED
ProjectsPROJECT_CREATED, UPDATED, DELETED, PI_SETTINGS_UPDATED, PI_SETTINGS_DELETED, DLP_SETTINGS_UPDATED, DLP_SETTINGS_DELETED
CustomersCUSTOMER_CREATED, UPDATED, DELETED, PI_SETTINGS_UPDATED, PI_SETTINGS_DELETED, DLP_SETTINGS_UPDATED, DLP_SETTINGS_DELETED
Routing policiesROUTING_POLICY_CREATED, UPDATED, DELETED
Routing rulesROUTING_RULE_CREATED, UPDATED, DELETED
Unified routingUNIFIED_ROUTING_CONFIG_CREATED, UPDATED, DELETED, REORDERED
Prompt classifiersROUTING_CLASSIFIER_CREATED, UPDATED, DELETED
Model aliasesMODEL_ALIAS_CREATED, UPDATED, DELETED
Custom routingBYOR_CONFIG_*, DATASET_*, DATASET_SOURCE_* (each CREATED, UPDATED, DELETED), PROMPTS_IMPORTED, PROMPTS_IMPORTED_FROM_SOURCE, EVAL_RUN_TRIGGERED, RESULT_OVERRIDDEN, RESULT_RESTORED
Custom routing benchmarksBYOR_BENCHMARK_CREATED, UPDATED, DELETED, SCORES_UPLOADED, SCORE_OVERRIDE_SET, SCORE_OVERRIDE_DELETED
EvalsEVAL_SUITE_*, CASE_* (each CREATED, UPDATED, DELETED), RUN_CANCELLED
ExperimentsEXPERIMENT_SUITE_CREATED, SUITE_UPDATED, SUITE_ARCHIVED, CASE_*, CASES_IMPORTED, CASES_SYNCED, RUN_TRIGGERED, RUN_CANCELLED, ALERT_ACKNOWLEDGED, ALERT_WEBHOOK_*, SCHEDULE_UPDATED, SCHEDULE_DELETED
Model migrationsMODEL_MIGRATION_CREATED, UPDATED, COMPLETED, ABANDONED
Self-hosted endpointsSELF_HOSTED_ENDPOINT_CREATED, UPDATED, DELETED
Telemetry exportTELEMETRY_EXPORT_DESTINATION_CREATED, UPDATED, DELETED
DLP rulesDLP_RULE_CREATED, UPDATED, DELETED
Blocklist rulesBLOCKLIST_RULE_CREATED, UPDATED, DELETED
CompressionCOMPRESSION_SETTING_CREATED, UPDATED, DELETED
BillingnonePAYMENT_METHOD_CREATED, PAYMENT_METHOD_UPDATED, PAYMENT_METHOD_DELETED, BILLING_SETTINGS_UPDATED, CREDITS_PURCHASED, CREDITS_PURCHASE_RETRIED, CREDITS_PURCHASE_BLOCKED, CREDITS_REFUNDED, AUTO_TOPUP_PAUSED, AUTO_TOPUP_RESUMED
Audit trailnoneAUDIT_LOG_EXPORTED
Org-level prompt injection changes aren't recorded

Changes under Security → Prompt injection write no entry. Project and customer PI overrides do, as PROJECT_PI_SETTINGS_* and CUSTOMER_PI_SETTINGS_*.

A deleted member’s entries keep the name, email, and role captured at write time. A deleted organization’s entries can no longer be listed.

Next steps