Structurell keeps a record of security and administration changes in your subscription, such as access being granted, API tokens being created or revoked, and settings being changed. Each service also keeps an activity log of what happened in it. You can read both on **Account → Diagnostics → Logs**, which is useful when you need to find out when something changed, or to give an auditor evidence of how access is managed.

## Before you start

**Logs** is for subscription administrators. The page only shows logs for services your subscription uses.

## Read the audit log

The **Cross-service audit log** at the top of the page brings together security and administration events from each service, newest first. Each entry shows:

- what happened
- the kind of record it affected, the action taken, and identifiers for the record and the person who made the change
- the service it came from, the event type and, where recorded, the **Outcome**
- the date and time

The log shows 25 entries at a time. Use the page controls below the list to move through older entries.

If you see a message such as "2 audit sources are unavailable.", some services couldn't be read at that moment. Select **Refresh** to try again.

## Filter the audit log

Use the filters above the list. Each one starts at **All**.

- **Service code** shows events from the services you choose.
- **Event type** shows one or more kinds of event.
- **Outcome** shows events with a particular result.

Select **Clear** to remove every filter. If nothing matches, you'll see "No matching audit events were found."

## Export the audit log

1. Set the filters to the events you want.
2. Select **Export CSV**.

Structurell downloads a file named `audit-log.csv` containing the events that match your filters.

## Service activity logs

Below the audit log, a card for each service links to that service's own log, for example **Content**, **CRM**, **Projects** or **Intelligence**. Each one lists activity in that service, newest first, with when it happened, what it was, the type of entry and who made it.

To export a service log:

1. Open the service's log and filter it to the entries you want.
2. Select the download button (**Download filtered results**) below the list.
3. Choose **CSV**, **JSON** or **XML**.

You'll see "Export is queued. You will receive an email when it is ready." The file arrives by email.

## Notes

- The logs are read-only. To change access, use **Account → Access → Users**, **Groups** or **Access Review**. See [Access review](/account-and-access/access-review).
- Changes to your package, add-ons and allowances are listed separately, under **History** on the Package page. See [Package and add-ons](/account-and-access/package-and-add-ons).

## Related articles

- [Access review](/account-and-access/access-review)
- [Users, teams, groups and permissions](/account-and-access/users-teams-groups-and-permissions)
- [API tokens](/account-and-access/api-tokens)