> ## Documentation Index
> Fetch the complete documentation index at: https://docs.quivr.thevibecompany.co/llms.txt
> Use this file to discover all available pages before exploring further.

# List audit events

> List immutable sensitive-action entries for the API key's organization, newest first. Requires audit:read and organization-wide Corpus scope. Time filters are RFC3339 instants; since is inclusive and until exclusive. Cursors bind organization, permissions and filters including limit; reuse the same filters on later pages. Reads and searches are not audited.



## OpenAPI

````yaml /openapi.yaml get /v0/admin/audit
openapi: 3.1.0
info:
  title: Quivr HTTP API
  version: 0.0.0-draft
  description: >-
    Every endpoint of the Quivr v0 HTTP API. Send an API key as a bearer token;
    the key decides the Organization, the actions and the Corpora a request may
    reach.
servers: []
security:
  - ApiKey: []
paths:
  /v0/admin/audit:
    get:
      tags:
        - Admin
      summary: List audit events
      description: >-
        List immutable sensitive-action entries for the API key's organization,
        newest first. Requires audit:read and organization-wide Corpus scope.
        Time filters are RFC3339 instants; since is inclusive and until
        exclusive. Cursors bind organization, permissions and filters including
        limit; reuse the same filters on later pages. Reads and searches are not
        audited.
      operationId: listAuditEvents
      parameters:
        - name: since
          in: query
          description: Inclusive RFC3339 timestamp.
          schema:
            type: string
            format: date-time
        - name: until
          in: query
          description: Exclusive RFC3339 timestamp.
          schema:
            type: string
            format: date-time
        - name: actor
          in: query
          description: Exact API key identifier; no substring matching.
          schema:
            type: string
        - name: action
          in: query
          description: Exact audit action name; no substring matching.
          schema:
            type: string
        - name: target_type
          in: query
          description: Exact target type; no substring matching.
          schema:
            type: string
        - name: target_id
          in: query
          description: Exact target identifier; no substring matching.
          schema:
            type: string
        - name: limit
          in: query
          schema:
            type: integer
            minimum: 1
            maximum: 200
            default: 50
        - name: page_cursor
          in: query
          schema:
            type: string
      responses:
        '200':
          description: An organization-scoped page of audit entries.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/AuditEventPage'
        default:
          description: >-
            Structured error; 401 invalid API key, 403 without audit:read or
            with restricted Corpus scope, 422 invalid_cursor, 422 invalid_schema
            or invalid_limit, 503 storage_unavailable.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
components:
  schemas:
    AuditEventPage:
      type: object
      additionalProperties: false
      required:
        - items
      properties:
        items:
          type: array
          items:
            $ref: '#/components/schemas/AuditEvent'
        next_page_cursor:
          type: string
    Error:
      type: object
      additionalProperties: false
      properties:
        request_id:
          type: string
          description: Bounded caller X-Request-ID, or an engine-generated correlation ID.
        trace_id:
          type: string
          description: W3C trace ID when a trace context is present.
        span_id:
          type: string
          description: W3C span ID of the API handler when a trace context is present.
        code:
          type: string
          minLength: 1
        message:
          type: string
          minLength: 1
        retryable:
          type: boolean
        field:
          type: string
          minLength: 1
          description: >-
            JSON Pointer (RFC 6901) to the request member that caused a 422,
            when known (for example /config/url or /credential/secret/token on
            connector commands).
        resync_url:
          type: string
          format: uri-reference
      required:
        - code
        - message
        - retryable
    AuditEvent:
      type: object
      additionalProperties: false
      required:
        - id
        - time
        - actor
        - action
        - target_type
        - target_id
        - organization
        - outcome
        - request_id
        - detail
      properties:
        id:
          type: string
          pattern: ^[1-9][0-9]*$
          description: >-
            Decimal audit identifier, represented as text to preserve bigint
            precision.
        time:
          type: string
          format: date-time
        actor:
          type: string
          description: >-
            SHA-256-derived API key identifier; empty for unauthenticated
            attempts.
        action:
          type: string
        target_type:
          type: string
        target_id:
          type: string
          description: >-
            Target identifier; empty if refusal occurred before the target could
            be resolved.
        organization:
          type: string
        outcome:
          type: string
          enum:
            - accepted
            - refused
        request_id:
          type: string
        detail:
          type: object
          additionalProperties: false
          required:
            - status
          properties:
            status:
              type: integer
              minimum: 100
              maximum: 599
            error_code:
              type: string
            plan_id:
              type: string
            credential_version:
              type: integer
              minimum: 1
  securitySchemes:
    ApiKey:
      type: http
      scheme: bearer
      description: >-
        API key, not necessarily a JWT. Server derives Organization, permitted
        actions and Corpus scope; every resource access is authorized.

````

This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.