Security & Compliance

Security Event Log

Dedicated security event stream for failed logins, permission escalations, suspicious API calls, and admin actions — with real-time alerts for your security team.

Get Started Free

The Security Event Log is a dedicated, high-priority stream of security-relevant events — separate from the business audit trail — designed specifically for your security team. While the audit trail covers all platform activity, the Security Event Log surfaces the events that indicate risk: failed authentication attempts, IP blocks, permission escalation, sensitive configuration changes, and abnormal API usage patterns. Real-time alerts ensure your team responds to threats, not just reports on them.

Separate from business audit trail Real-time security alerts Failed login tracking IP block event logging API anomaly detection Long-term retention
What's included

Everything you need, nothing you don't

Dedicated Security Event Stream

All security-relevant events are written to a separate, dedicated log stream — so your security team does not have to filter through business transaction records to find the signals that matter.

Failed Authentication Events

Every failed login attempt — wrong password, expired account, IP blocked, MFA failed — is logged with the user identity, source IP, timestamp, and failure reason.

Brute-Force Pattern Detection

The system automatically identifies IP addresses generating a high rate of failed login attempts — flagging them in the security event log and optionally blocking them automatically.

Permission Escalation Events

Every role assignment, permission change, and temporary elevated access grant is logged as a security event — with the authorising user and the effective date and time.

Sensitive Configuration Changes

Changes to security-critical platform configuration — IP allowlists, 2FA policies, webhook secrets, API token creation — are logged as security events and trigger real-time alerts to the security admin.

API Security Events

Unusual API access patterns — rate limit breaches, calls to disallowed endpoints, invalid token attempts — are surfaced in the security event log with the client IP and token identity.

Real-Time Alert Subscriptions

Security admins subscribe to specific event types for real-time alerts via email or SMS — ensuring immediate notification of high-priority security events rather than discovery during log review.

SIEM Export Integration

Export the security event log stream in JSON format to your SIEM platform for centralised monitoring, correlation with other security data sources, and long-term archival.

Who uses this module

Built for your team

IT Security Teams

Monitor platform security events in real time — failed logins, IP blocks, admin changes — from a dedicated console that surfaces risk signals without noise from business transactions.

CISOs

Maintain oversight of platform security posture with a real-time alert feed for high-priority events and a searchable historical record of all security-relevant platform activity.

Compliance Officers

Demonstrate active security monitoring to regulators and auditors — with a documented record of every security event, alert sent, and team response.

Ready to activate Security Event Log?

Sign up free and configure Security Event Log in minutes — or book a demo and we'll walk you through it live.

Get Started Free