Skip to navigationSkip to loginSkip to main contentSkip to footer section

Audit Trail

Beta

Monitor everything that happens within your Organization. If you need to know who did what, when and from where on your Scaleway infrastructure, Audit Trail is your main ally.

Your cloud investigator

Stop guessing what changed in your infrastructure. Audit Trail acts as your dedicated private investigator, reconstructing the timeline of events so you can instantly find who did what, when and how.

Compliance-ready

Simplify your regulatory burden and simplify external audits by turning complex cloud activity into clean, exportable evidence.
Maintain continuous compliance and eliminate manual guesswork with a reliable, permanent trail of your infrastructure.

Rapid forensic intelligence

Accelerate incident response and eliminate security blind spots with alerts and centralized event filtering.
Quickly isolate the root cause of breaches, unauthorized access attempts, or system failures to protect your architecture.

Why you need Audit Trail

  • Compliance complexity

    Preparing for security audits means manually gathering evidence across multiple systems, risking non-compliance penalties and failed certifications. Compliance officers struggle to maintain continuous visibility and prove adherence to standards.

  • Invisible infrastructure changes

    When systems break, finding the root cause feels like searching for a needle in a haystack without a clear timeline of what changed. DevOps and Cloud Developers waste valuable time investigating incidents without proper visibility into API calls and configuration changes.

  • Blind spots in security

    Unauthorized actions and malicious activity can go unnoticed without centralized visibility across your entire organization. Security teams lack the tools to detect suspicious behavior in real-time, leaving vulnerabilities unaddressed until it’s too late.

Build for complete visibility

Detailed event logging

Every API call is recorded with principal, method, IP address, timestamp, and status - giving you forensic-level detail. Capture the exact user, source IP address, time of entry, and precise API methods called for complete accountability.

Regional event storage

Events are stored in the specific region where they occurred (FR-PAR, NL-AMS, PL-WAW, IT-MIL), ensuring EU data sovereignty. Align with strict EU data residency regulations and maintain control over your data location.

Automated export to Object Storage

Seamlessly archive logs to your personal buckets with date-based hierarchies (YYYY/MM/DD/) for effortless audit retrieval. Turn active operational trails into tamper-proof, archived evidence with Object Lock support.

Alert management

Get immediate notifications for forbidden API requests or abnormal behavior to catch threats before they escalate. Enable instant notifications for abnormal system behavior or unauthorized access attempts.

Organization-wide logging

Centralized visibility across all integrated products and projects within your Organization. Track access of denied requests too, providing full accountability for all actions across your entire infrastructure.

Advanced filtering

Pinpoint issues instantly by filtering on Region, Product, Status, API Methods, IP addresses, and time ranges. Advanced troubleshooting filters let you instantly isolate issues in the Scaleway console by filtering multi-projects events.

Get started with tutorials

Additional resources

Audit Trail concepts

Understand the core concepts behind event logging, retention, and export mechanisms.

Read more

Quickstart Guide

Get up and running with Audit Trail in just a few minutes.

Get started

API Reference

Integrate Audit Trail programmatically using our comprehensive API documentation.

View API docs

Frequently asked questions

What events does Audit Trail record?

SouthShortIcon

Audit Trail records all API calls made within your Organization, including the principal (user/application), API method, IP address, timestamp, request status, and metadata specific to each product.

How long are Audit Trail events retained?

SouthShortIcon

Events are stored for 90 days by default. For longer retention, you can configure automated exports to your Object Storage buckets where you control the retention policy.

Which Scaleway products are integrated with Audit Trail?

SouthShortIcon

Audit Trail supports most Scaleway products including Instances, Kubernetes, IAM, Key Manager, Secret Manager and more. See our full list of supported endpoints.

Can I export Audit Trail logs for compliance audits?

SouthShortIcon

Yes! You can configure automated exports to Object Storage buckets with organized date hierarchies (YYYY/MM/DD/), making it easy to retrieve specific time periods for audits.

How do I set up alerts for security events?

SouthShortIcon

You can enable preconfigured alerts. Alerts are sent via email to designated recipients.

Can I filter events by specific users or IP addresses?

SouthShortIcon

Yes, the console provides advanced filtering options including principal, IP address, API method, product, region, status, and custom date ranges.

Is there a cost for using Audit Trail?

SouthShortIcon

Audit Trail base functionality is free. Standard costs apply for Object Storage if you configure exports for long-term retention.

How do I grant my team access to Audit Trail?

SouthShortIcon

Use the Audit Trail IAM permission set to grand granular access. See our permissions tutorial for step-by-step instructions.

Access Audit Trail