Freakout maintains a structured audit trail of security-relevant activity, giving enterprise customers evidence of who did what, and when.
Every audit event captures the action taken, its outcome (success or failure), a severity level, a timestamp, the acting user, and the affected resource. Recorded activity includes:
Audit events are deliberately minimal. They reference IDs, not content:
Audit logs are retained for 365 days in write-protected log storage, separate from the product database. Retention is enforced by infrastructure lifecycle policy. Audit records are kept for the full retention window even if the associated account is deleted — this is a standard security-log exception under GDPR (see Compliance & GDPR).
High-signal audit activity feeds automated monitoring:
Alerts route to our operations team for triage. Infrastructure-level anomalies (network abuse, credential exposure, injection attempts) are monitored by a separate, dedicated alarm set.
Audit queries run through a constrained, admin-only interface — every evidence query is itself audit-logged. If you need audit evidence for a security review or investigation, contact security@freakout.ai with the time range and scope, and we will provide an export.
In addition to the application audit trail, private asset storage read/write events are captured in separate storage-level access logs (see Security & Data Protection), giving two independent records for asset-access investigations.