Skip to content

Logging & audit security checks across 10 apps

Audit logs, event retention and incident-response hooks — the evidence you need when something goes wrong, and the controls auditors ask for first.

Why it matters

Without audit logs retained long enough there is no incident investigation and no evidence to hand an auditor. NIS2 and DORA make logging, event retention and incident-response hooks explicit obligations rather than good practice.

Browse by app

Highest-severity checks

The 8 most severe Logging & audit checks across all 10 apps — each links to the connector page where the setting, its remediation and its framework mapping are documented.

  1. CloudTrail Not Logging — AWS severity: critical
  2. Role Disables Session Recording — Teleport severity: critical
  3. Service Without Escalation Policy — PagerDuty severity: critical
  4. Session Recording Disabled — Teleport severity: critical
  5. Alert Route No Escalation Path — incident.io severity: high
  6. App Service Logging Disabled — Azure severity: high
  7. Audit Logging Disabled — Datadog severity: high
  8. Audit Logging Not Enabled — Google Cloud severity: high

Where to start

Connect Azure first — it carries the most Logging & audit checks in the catalog(setup guide, read-only access). A first scan takes about 15 minutes and reports every failing check on this page with its remediation steps.

All topics · Browse by app

The information on this page is provided for general informational purposes and is believed to be accurate as of its most recent update. Product names, logos, and trademarks are the property of their respective owners and are used for identification purposes only; their use does not imply any affiliation with or endorsement by those owners. Descriptions of third-party applications and of compliance frameworks are based on publicly available documentation and may change over time.

See these checks run on your stack

Start a free 14-day trial — no credit card required.

Start Free Trial