Audit and Performance Logs
Overview
Kloudfuse writes two structured log streams for security review and platform observability. Audit logs capture every login and every change a user makes to platform configuration, and performance logs capture every API call handled by a query service with its origin, duration, and outcome. This section explains how to enable both streams, what fields each one carries, and how to query them.
Audit and performance logs are the last of five layers for handling sensitive data; the first is masking it in the collector before it is sent. See Keeping Sensitive Data Out of Kloudfuse.