Keyboard shortcuts

Press or to navigate between chapters

Press S or / to search in the book

Press ? to show this help

Press Esc to hide this help

Audit Logs

Audit logs provide a record of significant actions taken within Odin Scan. They support security monitoring, compliance tracking, and team accountability by recording who did what, when, and on which resources.

Accessing Audit Logs

Audit logs are accessible from the dashboard sidebar under Reports > Audit Logs.

What Gets Logged

The following events are recorded in the audit log:

EventDescription
Scan triggeredA user initiated a security analysis on a repository
Report viewedA user opened and viewed an analysis report
Settings changedA user modified account or project settings
Finding resolvedA user marked a finding as resolved
Finding suppressedA user suppressed a finding (marked as accepted risk or false positive)
Repository syncedA user triggered a repository synchronization
API key createdA user generated a new API key
API key revokedA user revoked an existing API key

Log Entry Details

Each audit log entry contains:

FieldDescription
DateTimestamp of when the action occurred
UserThe user who performed the action
ActionThe type of event (e.g., “Scan triggered”, “Finding resolved”)
RepositoryThe repository associated with the action (if applicable)
BranchThe branch involved (if applicable)
DetailsAdditional context about the action

Example Log Entries

2025-01-15 10:30:00  alice@company.com  Scan triggered     username/contracts  main
2025-01-15 10:45:00  bob@company.com    Report viewed      username/contracts  main
2025-01-15 11:00:00  alice@company.com  Finding resolved   username/contracts  main
2025-01-15 14:20:00  alice@company.com  Settings changed   --                  --

Filtering and Searching

The audit log view supports filtering to help you find specific events:

  • Filter by action type – show only certain event types (e.g., only “Scan triggered” events).
  • Filter by user – view actions performed by a specific team member.
  • Filter by repository – narrow logs to a specific repository.
  • Filter by date range – view events within a specific time period.
  • Search – free-text search across log entries.

Retention

Audit log entries are retained according to your subscription tier. Pro plans include extended retention.

Use Cases

Security monitoring – Review logs for unexpected actions, such as scans triggered by unfamiliar users or API keys created outside of normal workflows.

Compliance reporting – Generate audit trails showing when repositories were scanned, who reviewed the results, and how findings were handled.

Team accountability – Track which team members are actively reviewing and resolving findings.

Incident investigation – Trace the sequence of actions leading up to a specific event or configuration change.

Next Steps