TrustPortDocs
In the dashboardAudit Logs & Compliance

What is recorded

EventRecorded when
LoginSuccessSomeone signs in, by any method
LoginFailureA sign-in fails: wrong password, unknown email, locked account
LoginBlockedRadar or one of your actions refused a sign-in
PasswordResetA password is reset through the forgot-password flow
PasswordChangedA signed-in user changes their password
UserCreatedA new account is created
UserUpdatedA user’s profile or status changes
UserDeletedAn account is deleted
RiskScoredRadar scores a sign-in

Each event shows who it concerns, the details, the IP address, the outcome and the time.

Find what you need

  • Filter by event type and by outcome: success, failure or blocked.
  • Search the current page by event, user, IP address or details.
  • Page through older events with Previous and Next.

Read events with the API

List recent failed sign-ins
curl "https://id.trustportidentity.com/api/v1/audit/events/?event_type=LoginFailure&outcome=failure&per_page=50" \
  -H "Authorization: Bearer $TRUSTPORT_API_KEY"

To react to events as they happen rather than polling, use webhooks.

Who can see it

Owners, admins and viewers can read the audit log. Nobody can edit or delete entries.

© TrustPort IdentitySomething unclear? Tell us and we'll fix the page.