On-Call API › Audit log
List the On-Call audit log
GET/api/v1/oncall-audit-logs
Who changed what in On-Call, newest first: alerts acknowledged, schedules
edited, policies changed and so on. With both resource_type and
resource_id, only that resource's entries.
Permission (API-key scope): oncall:audit:read.
Authorization
bearerAuth(oncall:audit:read)apiKeyHeader(oncall:audit:read)
Parameters
Query parameters
resource_typestringFor examplealert,incident,schedule,escalation_policy,maintenance_window.resource_idstringThe resource's id; used only together withresource_type.limitintegerHow many entries (default 100).
Responses
200
The entries.
dataarray of AuditLog requiredShow AuditLog properties
idstringorg_idstringuser_idstringWho did it: a user id, or an API key's id for an organization key.resource_typestringresource_idstringactionstringe.g.alert.acknowledged,schedule.updated.actor_typestringdetailsobjectcreated_atstring (date-time)
successboolean required
401
No API key was sent, or it is unknown, revoked or expired (UNAUTHORIZED).
errorobject requiredcodestring requiredMachine-readable code. Branch on this.messagestring requiredHuman-readable explanation.
403
The key lacks the scope this endpoint needs (FORBIDDEN).
errorobject requiredcodestring requiredMachine-readable code. Branch on this.messagestring requiredHuman-readable explanation.
429
Too many requests (RATE_LIMITED). Wait Retry-After seconds.
Retry-AfterintegerSeconds to wait.
errorobject requiredcodestring requiredMachine-readable code. Branch on this.messagestring requiredHuman-readable explanation.
500
Something went wrong on EvoHub's side (INTERNAL_ERROR). Retry later.
errorobject requiredcodestring requiredMachine-readable code. Branch on this.messagestring requiredHuman-readable explanation.
Example request
curl -X GET 'https://evohub.io/api/v1/oncall-audit-logs' \
-H 'Authorization: Bearer <TOKEN>'