Audit Logs

Every significant action in QuantAssure is logged. The audit trail provides compliance evidence and helps you track who did what and when.

What's Logged

  • All create, update, and delete operations
  • Status changes on findings, action items, and controls
  • User authentication events (login, logout, failed attempts)
  • Risk acceptances and dismissals
  • Report generation
  • System configuration changes
  • Team management actions (invites, removals)
  • Integration sync events
  • AI triage events

Viewing Audit Logs

  • Navigate to Audit Log
  • Filter by:
    • Entity type (finding, policy, system, user, etc.)
    • Action (create, update, delete, status_change, etc.)
    • User (who performed the action)
    • Date range
    • Search by entity name or description
  • Each entry shows: timestamp, user, action, entity, and description

Exporting for Compliance

  • Click "Export CSV" to download the filtered audit trail
  • CSV exports are useful for IRAP evidence and internal audits
  • Include date range filters to scope exports to audit periods
Tip: Export your audit trail as part of your IRAP evidence pack. Assessors value a clear record of security-related activities.