Audit log
The audit log is a record of what happened in your HIVE workspace - who did it, what they did, and when. Use it to answer “who changed this?”, to review sign-in activity, or to hand an auditor a CSV.
Where it lives
Section titled “Where it lives”Open Settings and choose the Audit Log tab.
What’s recorded
Section titled “What’s recorded”Every event is filed under one of four categories:
| Category | Covers |
|---|---|
| Content | What your team creates, changes, and publishes |
| Auth | Successful sign-ins - password, Microsoft, and SSO |
| Connection | Connecting, reconnecting, and disconnecting platforms |
| Admin | Workspace and settings changes |
Each row shows:
- When - the date and time, in your own time zone.
- Actor - who did it, with their email.
- Action - the specific event, as a short code such as
post.published. - Category - one of the four above.
- Target - what was acted on, and its type.
- IP - the address the request came from.
- Details - choose View to open the full event, including the fields the table doesn’t have room for.
Some events carry more detail than others, so a dash just means HIVE has nothing recorded for that column.
Finding an event
Section titled “Finding an event”The log is paginated - 25 at a time, with Previous and Next - and three filters narrow it:
- Category - pick one, or All categories.
- Action - type an action code (for example
post.published) and press Enter. - Date range - pick a range, or Clear dates to go back to everything.
When nothing matches you’ll see “No audit events match these filters.”
Export to CSV
Section titled “Export to CSV”Choose Export CSV to download the log as a spreadsheet-friendly file.
- A date range is required - the button stays disabled until you pick one (“Select a date range to enable CSV export”).
- A range can cover at most 366 days.
- Your category and action filters apply to the export too, so you get exactly what you’re looking at.
Retention
Section titled “Retention”HIVE retains audit events for 12 months. The retention period is fixed for every workspace, so there’s nothing to set up.
Events older than 12 months are deleted daily, and that can’t be undone, so export anything you need to keep for longer.