Skip to main content

Audit Log Events

These events are captured by Audit Log. All events are of type "string".

Account

EventDescriptionScopesData (parameters)
LoginLogin to accountAccount
DeletedAccount was deleted.AccountplanId

Approval

EventDescriptionScopesData (parameters)
Add approval channelNew approval channel was added to Stack Automation's Approval Channels administration page..- Name
- Type
Delete approval channelApproval channel was deleted from Stack Automation's Approval Channels administration page.- Name
- Type
Policy auto approvedPolicy was approved automatically by OPA.Account/Space- Name
- Type
Update approval channelApproval channel's settings were updated, like description or approvers list.- Approval type (auto/manual)
- Approval status (approved/denied)
- Entity type
- Entity name
- Action (Launch/Extend)
- Policy path + name
- Approver Email (if approval type is manual)
- Notes (if exist)

Blueprint

EventDescriptionScopesData (parameters)
Content ModifiedBlueprint YAML was modified.Account/Space/Blueprint
PublishedBlueprint was publishedAccount/Space/Blueprint.- Repository name
RemovedUser removed blueprint. This applies to blueprints that were discovered from assets, not for blueprints who are defined in the repository.
UnpublishedBlueprint was unpublished.Account/Space/Blueprint- Repository name

Cloud Account (cost target)

EventDescriptionScopesData (parameters)
CreatedCloud account was created.Account- Name
- Cloud
DeletedCloud account was deleted.Account- Name
- Cloud

Cost

EventDescriptionScopesData (parameters)
ExportedCost data was exported using the Cost page's Export to CSV button.Account

Credential

EventDescriptionScopesData (parameters)
CreatedNew credential was created in the Credentials store.Account- Name
- Cloud Type
- Credential Type
DeletedA credential was deleted.Account- Name
ModifiedA credential was modified.Account- Name

Environment

EventDescriptionScopesData (parameters)
Collaborators AddedCollaborators were added to a deployment.Account/Space/Environment- list of new collaborators
Collaborators RemovedDeployment's collaborators were removed.Account/Space/Environment- list of removed collaborators
Drift DetectedDeployment's resources were modified externally.Account/Space/Environment- Grain
Drift Reconcile StartedDeployment's Reconcile operation was initiated to reset the deployment to its original state.Account/Space/Environment- Grain
Drift Reconcile CompletedDeployment's Reconcile operation completed.Account/Space/Environment- Grain
Environment ExtendedDeployment's duration was extended.Account/Space/Environment- Extension Duration
Environment Launch StartedDeployment was launched.Account/Space/Environment- is_sample: "true" indicates that the deployment was created from a sample blueprint
Environment Launch CompletedDeployment's launch completed and the deployment's state changed to Active.Account/Space/Environment- is_sample: "true" indicates that the deployment was created from a sample blueprint
- Duration
Termination StartedDeployment's termination was initiated.Account/Space/Environment
Termination CompletedDeployment's termination completed.Account/Space/Environment
Force TerminateDeployment was force terminated immediately.Account/Space/Environment
Owner changedDeployment's owner was changed.Account/Space/Environment- New owner
Updates DetectedStack Automation detected a change in the asset files in the repository.Account/Space/Environment- Grain
Update StartedDeployment's update was initiated by the user to update the deployment with the latest changes to the asset files.Account/Space/Environment- Grain
Update CompleteDeployment was updated.Account/Space/Environment- Grain
Update DismissedUser dismissed updates to the asset files, choosing to leave their deployment as is.Account/Space/Environment- Grain

Host/Management Server

EventDescriptionScopesData (parameters)
Added to SpaceAdded a management server to a space.Account/Space- Host name
- Cloud
- Type (Docker, K8s), Space
CreatedCreated a new management server.Account- Host name
- Cloud
- Type (Docker, K8s)
ConnectedManagement server was successfully connected to the cluster.Account- host_name
- Type (Docker, K8s)
DeletedManagement server was deleted from Stack Automation.Account- Host name
- Cloud
- Type (Docker, K8s)
Removed From SpaceManagement server was removed from a space.Account/Space- Host name
- Cloud
- Type (Docker, K8s), Space
RenamedManagement server's name was changed.Account-old_host_name
- new_host_name
- type

Notification

EventDescriptionScopesData (parameters)
AddedNew notification target was created.Account, Space- Name
- Target
DeletedNotification target was deleted from Stack Automation.Account/Space- Old Name
- New Name
- Old Target type
- New Target type
Enabled ToggledNotifications were enabled for a notification target.Account/Space- Name
- Old enabled
- New enabled
ModifiedNotification target was modified (name, enabled notifications, etc.Account/Space- Name

Parameter

EventDescriptionScopesData (parameters)
CreatedNew parameter was created in the Parameters store.Account or Account/Space- Name (parameter event)
- Sensitive
- Value
- Description
DeletedParameter was deleted from the Parameters store.Account or Account/Space- Name (parameter event)
ModifiedParameter's settings were modified.Account or Account/Space- Name (parameter event)
- oldIsSensitive
- newIsSensitive

Policy

EventDescriptionScopesData (parameters)
DeletedPolicy was deleted from Stack Automation.Account- Name
- approvalChannel
- overridable
- manualInitiation
DisabledPolicy was disabled.Account- policyName
- enabledValue
DuplicatedA copy of an existing policy was created.Account- policyName
- existingPolicyName
- isCustom
- spaceNames
EnabledPolicy was enabled.Account- policyName
- enabledValue
ImportedPolicy was imported from a connected policy repository.Account- policyName
ModifiedPolicy's settings were modified.Account- policyName
SynchronizedThe version of a custom policy in Stack Automation was synced with the policy version in the repository.Account- policyName

Repository

EventDescriptionScopesData (parameters)
Assets DiscoveredAssets were discovered from a space's repository.Account/SpaceName
ConnectedA repository was connected to a space.Account/Space- Name
- Type
- Branch
- Url
DisconnectedA repository was disconnected from a space.Account/SpaceName

Space

EventDescriptionScopesData (parameters)
CreateNew space was created in Stack Automation.Account/Space
ModifySpace's settings were modified (name, icon, banner color).Account/Space- oldProperties (name, color, icon)
- newProperties (name, color, icon)
DeleteSpace was deleted from Stack Automation.Account/Space

Tag

EventDescriptionScopesData (parameters)
CreatedNew tag created in the Tags administration page.Account- Name
- Scope
- possibleValues
- description
DeletedTag was deleted.Account- Name
ModifiedTag was modified.Account-Name
- Scope
- oldProperties
- newProperties
OverriddenUser changed a space-level tag's value in the space's Tags page.Account- Name
- OldValue
- NewValue

User

EventDescriptionScopesData (parameters)
InvitedUser was invited to join Stack Automation (Stack Automation invitation email).Account- User Email
Invitation CancelledStack Automation invitation was cancelled by an admin.Account- User Email
- User Role
- Space
Sign upNew user signed up to Stack Automation.Account- User Email
User Account Role UpdatedUser's account role was changed (or attached - for new users).Account- User Email
- oldRole
- newRole
DeletedUser was deleted from Stack Automation.Account- User Email
LoginUser logged into Stack Automation.Account- User Email
Reset PasswordUser's password was reset.Account- User Email
User Added to SpaceUser was added to a space.Account/Space- User Email
- reason
- space name
- given space role
User Space Role UpdatedUser's space role was changed (space admin/dev/member).Account- User Email
- oldRole
- newRole

Workflows

EventDescriptionScopesData (parameters)
CreatedCreated a new workflow.Account- Name
DeletedDeleted a workflow from Stack Automation.Account- Name
DisabledDisabled a workflow.Account- Name
EnabledEnabled a workflow.Account- Name
EndedWorkflow's execution ended at the completion of all its actions.Account/Environment- Name
- Actor (User/Schedule)
-If the actor is User, user details (email) is displayed
InvokedWorkflow was triggered, either by the workflow's defined schedule or manually by the deployment end-user.Account/Environment- Name
- Actor (User/Schedule)
- If the actor is User, user details (email) is displayed