Security
Monitor platform-wide security events and admin session control status.
Fetch security/audit timeline
Returns the chronological security and governance audit event timeline for a tenant. Events include login attempts, permission changes, impersonation events, session revocations, policy updates, and identity config changes. Use for SOC 2 evidence gathering or investigating security incidents.
List tenant security events
Returns security events across all tenants or scoped to the current admin's accessible tenants. Events cover failed login attempts, brute force detections, session anomalies, and policy violations. Use for platform-wide security monitoring and alerting.
Read session-control revocation status
Returns the current session-control revocation fence status for the platform, showing the most recent bulk session revocation events across all tenants. Use to confirm that an emergency revocation was applied and determine when it took effect.