Why an Access Trail Matters

Knowing who currently has access to a VPN isn't enough on its own - you also want a record of how that access changed over time, and who authorised it.

Access Governance

Know who currently has access to each VPN, and keep a record of every time that access was granted or revoked, and by whom.

HR and IT Investigations

When someone leaves or a policy question comes up, you can see exactly when their access was granted and when it was revoked.

Supporting Documentation

An exportable grant/revoke history is useful supporting evidence alongside your own access control processes for regulator or insurer reviews.

Incident Response

If you need to confirm who had access to a VPN at a given time, the grant/revoke history tells you exactly that.

What Every Log Entry Captures

Every time a user's access to a VPN is granted or revoked, PrivyNet automatically records the following - no configuration required

User

Whose access to the VPN was changed

Event

Whether access was granted or revoked

Timestamp

When the change was made

Performed By

Which admin made the change

Admin-only and tenant-scoped

Regular users can't view or change access logs - only your organisation's admins can, and they only ever see records for your own users and VPNs. Admins can clear their organisation's log from the dashboard if needed.

Export Your Access History

Pull your access records into your existing compliance or reporting workflow without any manual transformation

CSV Export

Download your access log as a flat CSV file directly from the dashboard. Open it in Excel or Google Sheets, or import it into your compliance tool with no transformation required.

  • Human-readable, spreadsheet-compatible
  • One row per access change - user, event, timestamp, and who performed it
  • Ideal for compliance reports and HR investigations

CSV export is available directly from the PrivyNet dashboard. No API key required for manual exports - select your date range and download.

How This Supports Common Compliance Frameworks

An access grant/revoke history is useful supporting evidence for the network access monitoring requirements in these frameworks

FrameworkRequirementPrivyNet Coverage
GDPRAccess records & accountability
Access grant/revoke history
SOC 2Logical access monitoring
Access grant/revoke history
ISO 27001Access control evidence
Exportable grant/revoke history
Cyber EssentialsNetwork access control
Access grant/revoke history

PrivyNet provides a Data Processing Agreement (DPA) as part of every subscription. Combined with your access log export, this gives auditors useful supporting documentation - it's not a substitute for your own access control policy and records.

Frequently Asked Questions

Common questions about VPN access logs and compliance evidence

What does PrivyNet's access log actually capture?

It's a record of access control changes: whenever a user is granted or revoked access to a VPN, PrivyNet logs who was affected, which action was taken, when, and which admin performed it. It does not log individual connection sessions - PrivyNet does not track connection/disconnection times, IP addresses used, or session duration.

Can access logs be deleted?

Tenant admins can clear their organisation's access log from the dashboard if needed. Regular users cannot view or modify logs at all - only admins have access.

Are access logs scoped to my organisation only?

Your own admins only ever see logs for your organisation's users and VPNs - there's no visibility into other tenants. PrivyNet's own platform administrators can access logs across accounts where needed for support and compliance purposes.

Can I export access logs for compliance reporting?

Yes. Logs can be exported from the PrivyNet dashboard as a CSV file, ready to open in a spreadsheet or feed into your own reporting workflow.

How long are access logs retained?

Entries are retained until an admin chooses to clear them - there's no automatic expiry. Contact support if you need guidance on retention for your own compliance requirements.

Do PrivyNet access logs support GDPR compliance?

They provide access grant/revoke records that support GDPR's accountability principle around who can access data and when that changed. We also provide a Data Processing Agreement (DPA) as part of your subscription.

Know Who Has Access, and Why

Every access change recorded automatically. Exportable whenever you need it. No extra configuration required.

Access grant/revoke history
CSV export
Compliance-ready