Paginates forward in time from a given audit log ID. It takes a log ID parameter to begin fetching from and a take parameter for the number of log entries to fetch.
For a complete list of all audit log types and their descriptions, see the Audit Logs Guide.
Bearer authentication header of the form Bearer <token>, where <token> is your auth token.
Audit log ID to begin fetching from.
Number of audit log entries to fetch, max 1000
Optional filter to return only logs of a specific type. See the Audit Logs Guide for a complete list of log types.
"auth:login"
List of audit log entries
Optional metadata for certain event types.
Unique identifier for the log entry.
"0194f5c5-2021-75ae-b202-f049fca9dce2"
IP address of the actor.
"0.0.0.0"
Date when the event occurred in ISO format.
"2025-02-11T16:08:44.324452"
Type of audit log event. We may add more types at any time, so in developing and maintaining your code, you should not assume that only these types exist. For a complete list of all audit log types and their descriptions, see the Audit Logs Guide.
"admin:fetch_workspace_history"
Email of the user who triggered the event.
"user@example.com"
User agent of the actor who triggered the event.
"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"