> ## Documentation Index
> Fetch the complete documentation index at: https://docs.get2dial.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Search the audit log

> Find who changed a user, role, or workspace setting and when, filtering the audit log by action, resource, user, or date.

Find who changed a user, role, or workspace setting, and when.

## Before you start

* You need an **admin** role.

## Steps

<Steps>
  <Step title="Go to the audit log">
    In the left navigation, select **Audit log**.
  </Step>

  <Step title="Filter, if needed">
    Narrow by action (for example, a role change or a password reset), resource type, the user
    who made the change, or a date range.
  </Step>

  <Step title="Open an entry for detail">
    Each entry shows who acted, what they acted on, when, and the IP address the action came
    from.
  </Step>
</Steps>

## Verify

<Check>
  Recent changes to users and roles in your workspace appear in the list, newest first.
</Check>

<Note>
  Get2Dial retains audit log entries for at least 365 days and does not delete them
  automatically. Retention is platform-controlled — it can't be shortened or turned off from
  your workspace.
</Note>

## Common problems

* **You can't find an entry you expect.** Widen your date range — the default view shows only
  recent activity. Entries load newest-first with no total count, so keep narrowing your
  filters rather than paging to the end.

## Next steps

<CardGroup cols={2}>
  <Card title="Roles and permissions" href="/account/roles-and-permissions" />

  <Card title="Set a session policy" href="/account/session-policy" />
</CardGroup>
