aidp-audit — audit logs (enable, retention, search)
Manage AIDP Workbench audit logging and search audit entries. Self-contained: no MCP / ai-data-engineer-agent
required. Engine precedence per references/aidp-cli-map.md — prefer the official aidp CLI, else oci raw-request.
When to use
- "Turn on / configure audit logging", "set audit retention", "who did X / search the audit log", compliance questions.
Engine (CLI-preferred)
- Manage:
aidp audit manage-logs <instance-id> --body '{"action":"ENABLE","retentionPeriod":<days>}' --auth api_key --profile DEFAULT(actione.g.ENABLE/DISABLE;retentionPeriodin the body). - Search:
aidp audit search-logs <instance-id> …(filter by time/principal/resource peraidp help audit). - Fallback (
oci raw-request):POST …/20240831/dataLakes/<OCID>/actions/manageAuditLogs(manage) and the audit search endpoint; verify the exact path/body live and record inreferences/rest-endpoint-map.mdbefore asserting (no-fabrication).
Workflow
- Read current state / search first; show the user what you found.
- For
manage-logs(enable/disable/retention) — confirm before changing, since it affects compliance posture. - Present results; for search, summarize matches (don't dump raw if large).
Guardrails
- Changing audit config is a governance action — confirm. Never disable auditing without explicit instruction.
References
- references/aidp-cli-map.md · references/oci-raw-request.md · references/rest-endpoint-map.md

