# Audit log

> See who changed what in your organization, and when.
> URL: https://artor.app/docs/audit-log

See who made changes in your organization: members joining, leaving, or changing role; prototype access being turned on or
off; environment variables, registry providers, and skills being added or removed; and plan and
billing-interval changes. Some events may be missing; see the limits below.

Find it under **Settings → Audit log**. It's visible to organization **owners and admins**.

## What's recorded

Each entry shows the **actor** (who did it), the **action**, the **target** it affected, a few
**details**, and **when** it happened.

| Area | Events |
| --- | --- |
| Members | added, removed, role changed, publish capability changed (publisher/reviewer) |
| Access | prototype access toggled, version access toggled |
| Environment | variable set, variable deleted |
| Registry | provider added, removed |
| Skills | added, re-pinned, removed |
| Plan | plan changed, [billing interval](https://artor.app/docs/billing) switch scheduled, scheduled interval switch cancelled |
| Spaces | created, renamed, deleted, member added/removed, role changed, opened to the org, content moved between spaces |
| Sharing | org-wide default for [guest commenting](https://artor.app/docs/sharing#guest-commenting) changed; a live [public link's settings](https://artor.app/docs/sharing#changing-a-link-youve-already-shared) changed; a live public link repointed to another version; a link password set, changed, or removed; the organization's password requirement changed |
| Comments | a guest's thread or message deleted by a moderator |

**Note:** 
  Secrets are never recorded. The log identifies what changed — never an
  environment variable's value, a registry credential, a skill's access token, or a
  [link password](https://artor.app/docs/sharing#password-protection).

## Good to know

- **Entries can't be edited or deleted from the app.**
- **Some events may be missing.** A change can succeed even if it cannot be recorded in the log.
- **Most recent activity.** The log shows the latest events; there's no deep history export yet.
- **Not every action is recorded.** Everyday work — publishing, moving folders, writing and
  editing your own comments — isn't logged. Deleting **someone else's** content is, which is why
  guest-comment moderation appears here while a member tidying up their own comment doesn't. A
  guest deleting their own thread isn't logged either.
- **Organization-specific.** Owners and admins see their own organization's activity.
