Every state-changing action — a permission change, a decision, an agent's tool call — is written to an append-only, tamper-evident audit log, exportable for compliance review. Nothing in it can be edited or deleted after the fact, including by an admin.
Was this article helpful?