Home
Home/How it works/Audit Logs
Ed25519 signaturesSHA-256 hashes8 SDKs
Status
Sign inStart free
Home
How it works · Audit Logs

How Audit Logs works.

Signed activity logs for each of your customers, with a viewer they can open themselves. This page covers the mechanism: what happens to a request, what is signed, and how someone outside your company checks it.

Read the docsProduct page
sha-256 · 3a352297…2592
sha-256 · 3e4f0f2c…2982
A customer's activity log, livePOST /v1/audit/events
org_acme · activityLive
5 events · signatures valid · no gaps
The path of a request
  1. 01 · SendCreate an organizationOne audit organization per customer
  2. 02 · ProcessSend eventsCall the API from the code path where the action happens
  3. 03 · SignInvoance numbers and signsThe writer assigns the next seq inside a transaction, then signs the canonical bytes
  4. 04 · VerifyYour customer reads and verifiesThrough the portal, the embedded viewer, an export, or the offline verifier in the SDK
Step by step
  1. Create an organization

    One audit organization per customer. Each has its own sequence and retention period.

  2. Send events

    Call the API from the code path where the action happens. An idempotency key makes retries safe.

  3. Invoance numbers and signs

    The writer assigns the next seq inside a transaction, then signs the canonical bytes.

  4. Your customer reads and verifies

    Through the portal, the embedded viewer, an export, or the offline verifier in the SDK.

Technical factsAPI reference
OrderingPer-organization seq, assigned under a row lock. Gapless by contract.
SignatureEd25519 over canonical event bytes, including seq
RedeliveryA redelivered message never burns a sequence number
Integrity checkGET /v1/audit/orgs/{id}/integrity
Offline verifyverifyAuditEvent(event) in every SDK, no network call
RetentionSet per organization, capped by your plan
API keysAudit-scoped: audit:write to send, audit:read to query. Ledger keys are rejected

How a third party verifies

Verification does not need an Invoance account or access to your systems. The verifier recomputes the hash from what they hold and compares it with the signed record.

  1. 01 · AnyoneOpens the proof linkNo account, no dashboard access
  2. 02 · CheckRecompute the hashSubmitted payload against anchored hash
  3. 03 · Resultmatch_result: truePlus issuer domain and signing time

Try it against a real record.

Open the verifier, or create a record of your own on the free plan.

Open the verifierAll mechanisms

Proof infrastructure. Records are hashed, signed with your organization's Ed25519 key, and stored append-only, so anyone can check them later.

Products

  • Audit Logs
  • Event Ledger
  • AI Attestation
  • Document Anchoring
  • Traces

Developers

  • Documentation
  • API reference
  • SDKs
  • How it works
  • How traces seal
  • System status

Verify

  • Audit Log
  • Event
  • AI Attestation
  • Document
  • Trace

Company

  • Company overview
  • What is Invoance
  • Pricing
  • Security
  • Compliance teams
  • Finance teams
  • Partners
  • Brand assets
  • Resources
  • Help center
  • Contact
© 2025 – 2026 Invoance, Inc. All rights reserved.© 2026 Invoance, Inc. All rights reserved.
PrivacyLegal noticeLegal FAQ