> ## Documentation Index
> Fetch the complete documentation index at: https://explore.airia.com/llms.txt
> Use this file to discover all available pages before exploring further.

# System Log

View a searchable, filterable audit trail of all platform configuration changes made in your organization.

Open the System Log from the left navigation under **Audit → System Log**. In the classic settings-based navigation, it appears under **Settings → Log Management → System Log**. Access requires the **System Log → Read** permission (see [Access](#access)).

## What is logged

The System Log records every configuration change made through the Airia platform: user logins and logouts, resource creation, editing, and deletion, permission and role assignments, and policy changes. Each entry captures who made the change (the actor), the affected resource, the operation performed, and a timestamp.

The System Log is distinct from [SIEM Log Forwarding](/admin-hub/account_settings/siem), which streams events to an external SIEM destination in real time.

## Filtering log entries

Use the filter bar to narrow the log to the events you need.

| Filter        | What it matches                                                                         |
| ------------- | --------------------------------------------------------------------------------------- |
| Date range    | Entries within a specific time window                                                   |
| User          | Entries from a specific actor                                                           |
| Project       | Entries scoped to a specific project                                                    |
| Resource type | The type of entity affected — Agent, Knowledge source, Credential, Policy, and 40+ more |
| Operation     | The action taken — Create, Edit, Delete, Login, and 60+ more                            |
| Severity      | Event severity level: Low, Medium, High, or Critical                                    |

Multiple filters combine as AND — only entries matching all active filters are shown.

## Exporting log entries

Select **Export CSV** to download the currently filtered log entries as a CSV file, delivered as a zip archive. The export respects all active filters and the selected date range.

Export is not available for users with the Read-Only Admin role.

## Access

The System Log requires the **System Log → Read** permission. The following built-in roles include this permission by default: Platform Admin, Admin, Read-Only Admin, and Security Admin.
