# List Uptime audit log entries

`GET https://evohub.io/api/v1/uptime-audit-logs`

Part of the [Uptime API](https://docs-dev.evohub.io/uptime.md) reference · operationId `listUptimeAuditLogs`.

Changes made in Uptime, newest first: monitors created, changed,
paused, resumed, deleted, silenced and linked to channels; channels
created and deleted; the organization's silence set and cleared; the
weekly summary turned on or off.

Filter to one resource with `resource_type` and `resource_id`
together; either alone is ignored.

`data` is `[]` when there are no entries.

Requires the `uptime:audit:read` scope.

## Authorization

Any one of:

- `bearerKey`
- `headerKey`

Where:

- `bearerKey`: HTTP Bearer — An EvoHub API key (`evohub_…`) as a bearer token.
- `headerKey`: API key in the header `X-API-Key` — An EvoHub API key (`evohub_…`).

## Query parameters

- `resource_type` (string, example `monitor`): `monitor`, `channel`, `silence` or `weekly_digest`. Needs `resource_id`.
- `resource_id` (string, example `mon_8c1d0b52-6f3e-4a7d-9b21-0e5c4f7a3d19`): The resource's ID. Needs `resource_type`.
- `limit` (integer, default `100`, min 1, max 500): How many entries to return. A value outside 1–500, or not a number, is read as 100.

## Responses

### 200 — The entries.

Content type: `application/json`

Type: `object`

- `data` (array of AuditLogEntry)
  - `id` (string)
  - `org_id` (string)
  - `user_id` (string): Who made the change; for an organization API key, the key's ID.
  - `resource_type` (string, one of `monitor`, `channel`, `silence`, `weekly_digest`)
  - `resource_id` (string)
  - `action` (string): `monitor.created`, `monitor.updated`, `monitor.paused`, `monitor.resumed`, `monitor.deleted`, `monitor.silenced`, `monitor.silence_cleared`, `monitor.channel_linked`, `monitor.channel_unlinked`, `channel.created`, `channel.deleted`, `silence.set`, `silence.cleared`, or `update` (weekly summary).
  - `actor_type` (string, value `user`)
  - `details` (object)
    - Other keys: any
  - `created_at` (string (date-time))

### 401 — No API key was sent, or it is unknown, revoked or expired (`UNAUTHORIZED`).

Content type: `application/json`

Type: `Error`

- `error` (object, required)
  - `code` (string, required, example `MONITOR_NOT_FOUND`)
  - `message` (string, required, example `monitor not found`)
  - `request_id` (string)

### 403 — The key lacks the scope this endpoint needs (`FORBIDDEN`).

Content type: `application/json`

Type: `Error`

- `error` (object, required)
  - `code` (string, required, example `MONITOR_NOT_FOUND`)
  - `message` (string, required, example `monitor not found`)
  - `request_id` (string)

### 429 — Too many requests (`RATE_LIMITED`). Wait for `Retry-After` seconds.

Headers:

- `Retry-After` (integer): Seconds to wait before retrying.

Content type: `application/json`

Type: `Error`

- `error` (object, required)
  - `code` (string, required, example `MONITOR_NOT_FOUND`)
  - `message` (string, required, example `monitor not found`)
  - `request_id` (string)

### 500 — Something went wrong on EvoHub's side (`INTERNAL_ERROR`). Retry later.

Content type: `application/json`

Type: `Error`

- `error` (object, required)
  - `code` (string, required, example `MONITOR_NOT_FOUND`)
  - `message` (string, required, example `monitor not found`)
  - `request_id` (string)

## Example request

```bash
curl -X GET 'https://evohub.io/api/v1/uptime-audit-logs' \
  -H 'Authorization: Bearer <TOKEN>'
```
