Skip to main content
Audit logs in Vantage provide a detailed record of changes to certain resources in your workspace. You can use them to trace when a change occurred, who made it, and what was modified. Currently, audit logs are available for Virtual Tags, Cost Reports, Dashboards, Canvas, Business Metrics (when assigned to Cost Reports), Segments, billing rules (including custom SQL billing rules), Integration Delegations (for MSP Partner Integrations), MSP Invoices, and FinOps Agent actions. Each log entry contains the action performed, the actor, the source of the change, and any relevant object details. Audit logs are available to users with the Organization Owner role. Events are logged for all changes to supported resources, regardless of who made the change. Logs are retained for 24 months. When you edit a saved filter, an audit log event is created for all Cost Reports that the saved filter is applied to. This provides visibility into when saved filter changes affect multiple reports across your workspace. Additionally, when a Cost Report is deleted, any saved filters associated with that report are included in the audit log entry to provide complete visibility into the deletion event.
For longer log retention, contact support@vantage.sh.

Access and Filter Audit Logs

You can access audit logs from the Settings UI or directly from a Cost Report or Virtual Tag.
1
From the top navigation, select Settings.
2
In the left navigation, under General Settings, select Audit Logs.

Filter Audit Logs

1
On the Audit Logs screen, a table is displayed that contains a row for each audit log event. You can complete the following actions on this screen:
  • Filter audit logs by Event (create, update, destroy), Object Type (Cost Report, Dashboard, Canvas, Virtual Tag, Segment, Billing Rule, Integration Delegations, MSP Invoice, or FinOps Agent Cost Recommendation action), Object (the object’s name), Workspace, User (or Team when using service tokens), and Source (the console or API).
  • Filter audit logs based on a date range, up to 24 months.
  • View more details for an audit log.
Business Metrics: When you assign or remove a Business Metric from a Cost Report, or change Business Metric settings (such as label filters or unit scale), these changes are tracked in audit logs under the associated Cost Report. Changes to the default forecast selection (choosing which Business Metric forecast to display) are also tracked as updates to the Cost Report.
2
Select any row in the table to view more details. On the details screen, changes are displayed in a GitHub-style diff format with color-coded additions and removals, making it easy to see exactly what was modified.

FinOps Agent Audit Logs

When the FinOps Agent takes action on savings recommendations, detailed audit log entries are created. FinOps Agent actions are visually distinguished in the audit log table with a different object icon, making it easy to identify agent actions at a glance. Within the Vantage Audit Logs, you can see the following information for each FinOps Agent action:
  • Time the recommendation was provided: When the Agent first identified and presented the savings opportunity
  • Time the recommendation was approved: When a user approved the remediation action (if Owner Approval mode is enabled)
  • Vantage User that approved the remediation: The user who approved the action (only applicable in Owner Approval mode)
  • What Resources were altered: The specific resources that were modified as part of the recommendation remediation
  • Time the action was taken in the cloud provider: When the action was executed in your cloud environment
For more information about the FinOps Agent, see the Vantage FinOps Agent documentation.

Canvas Audit Logs

Canvas create, update, and delete actions are tracked in Audit Logs. Updates include changes to the Canvas title and prompt. Generated table output is not tracked as a user-editable configuration change.

Integration Delegation Audit Logs

All additions and removals of integration assignments to Managed Accounts from the Partner Integrations page are logged in the Audit Log of the Management Account. An audit log entry is created for each integration that was modified. The log entry includes the following details:
  • Integration name: The name of the integration that was modified
  • Managed Accounts added: Which Managed Accounts were newly assigned to the integration
  • Managed Accounts removed: Which Managed Accounts were unassigned from the integration
  • Current Managed Accounts: The complete list of Managed Accounts connected to the integration after the change
You can filter audit logs by the Integration Delegations object type to view only these events.

Audit Log Metadata and Details

All audit logs contain the following object metadata at the top of the log.
When actions are performed using a service token (Team token), the audit log displays Team and Team Role fields instead of User and User Role. The Source field will show API to indicate the action was performed via the API using a service token. The team name is displayed in both the Team and Team Role fields.

Object Details

Two sections are displayed to indicate what has been changed or not changed on the object. These tables list the values updated by the user. When a value or setting changes, both the previous and new values appear in the object details. In the example below, the date binning, date interval, and report groupings have all been updated.
Multi-dimensional Grouping

Share Audit Logs

You can share an audit log with other Vantage users. The log detail page has a unique URL that allows you to share log events with any authenticated Vantage user who has access to audit logs (i.e., Owners). A URL looks similar to: https://console.vantage.sh/settings/audit_logs/adt_lg_123a4f5a6c7dab94.