METAOPUS

Roles, sign-in security and the audit log

Who can see what, how sign-ins are protected, and what is recorded.

Account & security 2 min read Article 2 of 6 in Account & security

Frequently asked

Can the audit log be switched off?

No. Permission changes, impersonation, consent and access to restricted documents are always recorded. A log that can be switched off is not evidence of anything.

What does tamper-evident actually mean here?

Each record is chained to the one before it, so an edited or removed row can be detected rather than merely assumed impossible. The console has a Verify integrity control that checks the chain.

Can one customer's records reach another?

No. Whatever a role says, records are separated by customer — a role can narrow what somebody sees within your account, never widen it beyond it.

Was this helpful?

All of Account & security

Still stuck? Tell us what you are trying to do — a person answers, and we would rather fix the product than explain it twice.