Every action taken on an envelope is automatically recorded in a tamper-evident audit trail. No additional configuration is required. The log captures who did what, when, and from where — providing a complete, verifiable chain of evidence from envelope creation through to completion.
The audit trail captures every meaningful event in the envelope lifecycle — creation, sending, opening, MFA verification, disclosure agreement, field completion, attachment uploads, comments, declines, completion, cancellation, reassignment, and restoration.
For the complete list of events mapped to envelope status transitions, see the Envelope Lifecycle.
For signature fields specifically, the audit trail includes the full certificate details used for validation alongside an image of the applied signature — providing independently verifiable proof of identity and signing intent.
See the FAQ for common questions about audit trail retention and API retrieval.
See the audit trail endpoints in the API Reference.
The audit trail is designed to meet the evidentiary requirements of electronically signed documents under eIDAS and equivalent frameworks. For envelopes requiring the highest assurance level (QES), the audit trail works in conjunction with the PKI certificate embedded in the signed PDF to provide complete, independently verifiable proof.