组织审计日志
Dropstone 组织中的每项管理操作都会被记录,并支持筛选、时间范围以及 CSV 或 JSON 导出。日志中包含什么、谁能读取,以及为什么没有人可以编辑它。
Available onFreeProMaxEnterprise由管理组织的角色读取。
组织中的每项管理操作都会被记录:谁执行了操作、做了什么、何时执行,以及是否成功。日志位于 dashboard 中的 Audit 部分。
日志内容
- 谁做出了更改,以及何时。
- 更改了什么:成员角色、策略、数据设置、共享或撤回的记忆、归档读取。
- 结果如何:成功、拒绝或失败。
日志还带有风险标记和结果,因此安全审查可以筛选出值得关注的操作,而不必阅读所有内容。
读取日志
按操作、风险和结果进行筛选,并将时间范围缩小到最近 24 小时、7 天、30 天、90 天或所有时间。然后以 CSV 或 JSON 格式导出您正在查看的内容。
导出内容与您看到的行相同,这使其可以作为证据使用,而不是作为证据摘要。
没有人可以编辑它
控制台明确说明:这里无法编辑或删除任何行,而且永远不会。可变的审计日志不是审计日志。
这也是日志不受组织保留窗口限制的原因。保留窗口决定对话、遥测和使用记录的保留时长。操作记录则在整个协议有效期内保留。请参阅 组织如何管理其数据。
读取操作也会被审计
除设置之外,还有两件事值得了解:
- 读取对话归档会写入一条条目,记录读取者的姓名、他们筛选的条件以及搜索的内容。成员可以看到他们的对话被记录,以及记录被读取。请参阅 读取和导出对话归档。
- 更改数据设置会记录更改者的姓名,启用内容日志时的确认操作也会被记录。
谁能读取
管理组织的角色可以读取日志,auditor 角色就是为此而设的:它可以读取 dashboard 中的所有内容,但不做任何更改,这通常是外部审查员或内部控制团队所需要的。
请参阅 角色和权限。
Related articles
- Roles and permissionsThe six roles in a Dropstone organization, what each one may do, why reading member conversations is deliberately not an administrator power, how administrators are appointed, and what the gold verified mark means.
- Your organization dashboardWhat each section of your organization dashboard holds, from members and teams to usage, billing, policies, the audit log, and the conversation archive. And who can see which part.
- How an organization manages its dataThe three settings an owner controls for an organization, what each one stores, who can read it, and the limits of the strongest setting. Content logging, product telemetry, and retention, in one place.
- Read and export the conversation archiveWho can read an organization's recorded conversations, how to search and filter them, what the archive never holds, and how to export it as JSONL.
- SCIM provisioningAutomate joiners, leavers, and team membership in Dropstone from your identity provider using SCIM 2.0. Users and groups are supported. Deprovisioning is a soft delete.
- How Dropstone handles your dataWhat Dropstone stores, for how long, who can see it, whether it is used to improve the models, and the commitments that apply to every account. A plain-language summary of Dropstone's data practices.
Ctrl+I