Audit logs
This Pulumi Cloud feature is available in the Enterprise and Business Critical editions.
Pulumi Cloud retains audit logs for a limited window. Exporting them to a system you control gives you long-term retention and lets you correlate Pulumi activity with the rest of your security tooling.
There are two ways to get events out.
Manual export
Pull a range of events on demand from the console, the CLI, or the REST API. Useful for an ad hoc investigation or a one-time archive.
Automated export
This Pulumi Cloud feature is available in the Business Critical edition.
Configure a destination once, and Pulumi Cloud delivers new events to it continuously — no manual downloads or API polling. Neither destination backfills history, so events are delivered forward from the time you enable the export.
Learn more
- Audit log formats — the fields each of the JSON, CSV, and CEF export formats carries.
- Audit logs — what audit logs record and how to view them in the console.