Audit log - who did what and when
Read the tamper-evident record of changes, filter it, and see the before and after of each change.
The audit log records important changes in your company: creating, updating, voiding and posting documents, plus permission changes, approvals and branch changes. Open Audit Log from Company > Audit Log. The company owner can always open it; other people need the Audit Log view permission.
Nothing in the log can be edited or deleted.
Check the log is intact
At the top you may see a green banner: "Audit chain verified" with the number of events and "no tampering detected". If a record has been altered, the banner turns red and names the first event that does not match.
Read the log
Each row shows:
| Column | What it tells you |
|---|---|
| When | Date and time |
| Actor | Who did it. "System" means the change was not made by a signed-in person |
| Action | What happened, for example sales_document.void |
| Entity | The kind of record and its number |
| Branch | The branch number, if the change belonged to a branch |
Select Details on a row to see what it looked like before and after, plus any extra information. Select Hide to close it. Use the page buttons at the bottom to move through older events.
Filter the log
Type into Entity type (for example sales_documents) or Action (for example sales_document.void) to show only matching events. The match must be exact.
Good to know
- Examples of actions you will see:
staff.update,staff.role_assign,staff.deactivate,role.update,branch.create,approval.request. - A change made by an approver after an approval is linked to that approval, so you can follow the chain.
- To answer "who changed this role?", filter Action by
role.update.
See also Approvals and Roles and permissions.