Skip to main content

Audit

Audit shows what happened in your organization: who did what, what your nodes were told to do, and what ran on a schedule. Everything here is read-only.

Open it from the sidebar: select Audit.

The Audit page on its Users tab: the tabs, the filters, and the activity list

The tabs​

You see only the tabs your role allows.

TabWhat it shows
UsersEvery action taken in your organization, and who took it.
NodesThe commands sent to your nodes, and the queue of orders for their worktree slots.
SessionsEvery agent session and its transcript. See Sessions.
WorkflowsEvery firing of your scheduled activities. Shown only to Owners and Admins of your organization.
PersonasEvery role an agent can be given on a task. Shown to anyone who can create tasks.

Each tab has its own address, so a bookmark or a shared link opens the same tab. Times are shown, and filtered, in your time zone; the line under the filters names it.

Users​

The heading reads Who did what, and when. Each row is one action.

FilterWhat it does
SearchNarrows the list to rows whose summary, actor, path or kind contains what you type.
All / Read / WriteShows every action, only reads, or only changes.
ActorShows only one person's actions.
StatusShows only actions that ended with one result, such as 200 OK or 403 Forbidden.
From / ToLimits the list to a time range.

Each row shows a mark for how the action ended, what was done, the action's name, who did it and how long ago. Rows the task pipeline wrote one after another are folded into one row; select it to see them all.

An action's details​

Select a row, or Details in its ⋯ menu, to open its details.

The details of one action: Event, Request and Payload

SectionWhat it shows
EventWhen it happened, the Actor, the Action, its Type (read or write), the Event id and the Account.
RequestThe Method, the Path and the Status it ended with.
PayloadEach field the action recorded.
Full payload (JSON)Select it to see everything recorded, as JSON.

Select Close to go back to the list.

Empty states​

MessageMeaning
Nothing has been captured yetNo action has been recorded.
No activity matches these filtersNo row matches your filters. Select Clear filters to see them all.
Could not load the activity logThe list couldn't be read. Nothing was changed. Select Retry.

Nodes​

The Nodes tab has two parts: Commands and Slot Intents.

Commands​

The heading reads Every command a node was told to run.

The Commands list: the filters and one row per command

FilterWhat it does
SearchNarrows the list to commands of the type you type.
NodeShows only one node's commands.
Statusdispatched, done, failed or rejected.
From / ToLimits the list to a time range.

Each row shows a mark for its status, the command's number, its type and target, its result (such as exit 0, or why it failed), the node it ran on and how long ago it was sent. Select + on a row to see the command's arguments and result.

MessageMeaning
No commands yetNo command has been sent to your nodes.
No matching commandsNo command matches your filters.

Slot Intents​

The heading reads Every order standing against a pool slot — the wedge detector. An order asks a node to do something to one worktree slot. A healthy queue is nearly empty, so an order that has waited for minutes is stuck.

The Slot Intents counts: Pending, Due now, Withheld, Refusing and Oldest pending

Use Node at the top to look at one node. The counts under it are:

CountMeaning
PendingOrders still waiting to be carried out.
Due nowPending orders the node should take next.
WithheldPending orders held back for now.
RefusingPending orders the node has refused at least once.
Oldest pendingHow long the oldest pending order has waited.

Below the counts are two lists:

  • Pending — the waiting orders, with a count By verb for each kind of order.
  • Recently retired — orders that finished, with a count of their Outcomes. Failed orders are removed after a set time, which the note above the list states. Completed ones are kept.

A red banner appears when an order was refused until it gave up. Nothing will clear such an order on its own; each row names its node and slot. A yellow banner appears when pending orders have been refused.

MessageMeaning
Queue empty — nothing is stuckNo order is waiting.
Nothing retired in the retention windowNo order finished in the time the list keeps.
Nothing matches these filtersNo order matches your filters.

Workflows​

The heading reads Every firing of every cron, including the ones that never arrived. Each row is one time a scheduled activity was due to run. To create or change a scheduled activity, see Schedule.

The Workflows tab: the Cron and Outcome filters, with no firings recorded yet

FilterWhat it does
CronShows only one scheduled activity's firings.
OutcomeShows only firings that ended one way.
OutcomeMeaning
actedIt ran and did its work.
noopIt ran and had nothing to do.
skippedIt didn't run this time.
missedIt was due but never fired.
errorIt failed.

A row names its activity and, when the firing started a task, links to that task.

When the list is empty it says No firings recorded. Each scheduled activity's setting decides which firings are kept, so an empty list doesn't mean nothing ever ran.

Personas​

The heading reads Every role a fleet runner can be dispatched as. Each row is one persona.

The Personas tab: one row per persona, with its summary, model tier and result

ItemMeaning
MarkGreen ●: you can pick it when you create or edit a task. Purple »: only the task pipeline uses it.
Short name and nameThe persona, such as coder and Coder.
⚙A persona the system itself runs.
SummaryWhat the persona is for.
Model tierThe model tier it uses by default, such as High, Standard or Low.
ResultWhat it delivers: pr (a pull request), db (a document) or outcome (a reported outcome).

Select a row to open the persona's page. See Persona details.