pub struct AuditEvent {Show 14 fields
pub timestamp: DateTime<Utc>,
pub user: String,
pub session_id: Option<String>,
pub event_type: AuditEventType,
pub resource: String,
pub outcome: AuditOutcome,
pub metadata: Option<Value>,
pub workspace_id: Option<String>,
pub tenant_id: Option<String>,
pub request_id: Option<String>,
pub ip_address: Option<String>,
pub resource_id: Option<String>,
pub action: Option<String>,
pub prev_hash: Option<String>,
}auth only.Expand description
An audit event with enterprise multi-tenant context.
All fields beyond timestamp, user, event_type, resource, and outcome
are optional for backward compatibility. Enterprise platforms populate the
additional context fields for multi-tenancy, tracing, and compliance.
Fields§
§timestamp: DateTime<Utc>Timestamp of the event.
user: StringUser ID (email, subject, or system identifier).
session_id: Option<String>Session ID (if available).
event_type: AuditEventTypeType of event.
resource: StringResource being accessed (tool name, agent name, or descriptive path).
outcome: AuditOutcomeOutcome of the operation.
metadata: Option<Value>Additional metadata (arbitrary JSON).
workspace_id: Option<String>Workspace ID for multi-tenant scoping.
tenant_id: Option<String>Tenant ID for multi-tenant scoping (higher level than workspace).
request_id: Option<String>Request ID for distributed tracing correlation.
ip_address: Option<String>Client IP address.
resource_id: Option<String>Resource UUID (distinct from the human-readable resource name).
action: Option<String>Action verb (e.g., “read”, “write”, “delete”, “execute”).
prev_hash: Option<String>SHA-256 hash of the previous event (for cryptographic chaining).
Implementations§
Source§impl AuditEvent
impl AuditEvent
Sourcepub fn new(
event_type: AuditEventType,
user: impl Into<String>,
resource: impl Into<String>,
outcome: AuditOutcome,
) -> AuditEvent
pub fn new( event_type: AuditEventType, user: impl Into<String>, resource: impl Into<String>, outcome: AuditOutcome, ) -> AuditEvent
Create a new audit event with the given type, user, resource, and outcome.
Sourcepub fn tool_access(
user: &str,
tool_name: &str,
outcome: AuditOutcome,
) -> AuditEvent
pub fn tool_access( user: &str, tool_name: &str, outcome: AuditOutcome, ) -> AuditEvent
Create a new tool access event.
Sourcepub fn agent_access(
user: &str,
agent_name: &str,
outcome: AuditOutcome,
) -> AuditEvent
pub fn agent_access( user: &str, agent_name: &str, outcome: AuditOutcome, ) -> AuditEvent
Create a new agent access event.
Sourcepub fn authentication(user: &str, outcome: AuditOutcome) -> AuditEvent
pub fn authentication(user: &str, outcome: AuditOutcome) -> AuditEvent
Create an authentication event.
Sourcepub fn resource_event(
event_type: AuditEventType,
user: &str,
resource: &str,
resource_id: &str,
outcome: AuditOutcome,
) -> AuditEvent
pub fn resource_event( event_type: AuditEventType, user: &str, resource: &str, resource_id: &str, outcome: AuditOutcome, ) -> AuditEvent
Create a resource lifecycle event.
Sourcepub fn secret_accessed(
user: &str,
secret_name: &str,
outcome: AuditOutcome,
) -> AuditEvent
pub fn secret_accessed( user: &str, secret_name: &str, outcome: AuditOutcome, ) -> AuditEvent
Create a secret access event.
Sourcepub fn config_changed(
user: &str,
config_key: &str,
outcome: AuditOutcome,
) -> AuditEvent
pub fn config_changed( user: &str, config_key: &str, outcome: AuditOutcome, ) -> AuditEvent
Create a configuration change event.
Sourcepub fn custom(
event_type: &str,
user: &str,
resource: &str,
outcome: AuditOutcome,
) -> AuditEvent
pub fn custom( event_type: &str, user: &str, resource: &str, outcome: AuditOutcome, ) -> AuditEvent
Create a custom event type for platform extensions.
Sourcepub fn with_session(self, session_id: impl Into<String>) -> AuditEvent
pub fn with_session(self, session_id: impl Into<String>) -> AuditEvent
Set the session ID.
Sourcepub fn with_metadata(self, metadata: Value) -> AuditEvent
pub fn with_metadata(self, metadata: Value) -> AuditEvent
Set metadata.
Sourcepub fn with_workspace(self, workspace_id: impl Into<String>) -> AuditEvent
pub fn with_workspace(self, workspace_id: impl Into<String>) -> AuditEvent
Set workspace ID for multi-tenant scoping.
Sourcepub fn with_tenant(self, tenant_id: impl Into<String>) -> AuditEvent
pub fn with_tenant(self, tenant_id: impl Into<String>) -> AuditEvent
Set tenant ID for multi-tenant scoping.
Sourcepub fn with_request_id(self, request_id: impl Into<String>) -> AuditEvent
pub fn with_request_id(self, request_id: impl Into<String>) -> AuditEvent
Set request ID for distributed tracing.
Sourcepub fn with_ip_address(self, ip: impl Into<String>) -> AuditEvent
pub fn with_ip_address(self, ip: impl Into<String>) -> AuditEvent
Set client IP address.
Sourcepub fn with_resource_id(self, id: impl Into<String>) -> AuditEvent
pub fn with_resource_id(self, id: impl Into<String>) -> AuditEvent
Set resource UUID.
Sourcepub fn with_action(self, action: impl Into<String>) -> AuditEvent
pub fn with_action(self, action: impl Into<String>) -> AuditEvent
Set action verb.
Sourcepub fn with_prev_hash(self, prev_event_json: &str) -> AuditEvent
pub fn with_prev_hash(self, prev_event_json: &str) -> AuditEvent
Compute and set the cryptographic hash chain link.
The hash is SHA-256 of the JSON-serialized previous event. Call this before logging to maintain an append-only chain.
Trait Implementations§
Source§impl Clone for AuditEvent
impl Clone for AuditEvent
Source§fn clone(&self) -> AuditEvent
fn clone(&self) -> AuditEvent
1.0.0 (const: unstable) · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
source. Read moreSource§impl Debug for AuditEvent
impl Debug for AuditEvent
Source§impl<'de> Deserialize<'de> for AuditEvent
impl<'de> Deserialize<'de> for AuditEvent
Source§fn deserialize<__D>(
__deserializer: __D,
) -> Result<AuditEvent, <__D as Deserializer<'de>>::Error>where
__D: Deserializer<'de>,
fn deserialize<__D>(
__deserializer: __D,
) -> Result<AuditEvent, <__D as Deserializer<'de>>::Error>where
__D: Deserializer<'de>,
Source§impl Serialize for AuditEvent
impl Serialize for AuditEvent
Source§fn serialize<__S>(
&self,
__serializer: __S,
) -> Result<<__S as Serializer>::Ok, <__S as Serializer>::Error>where
__S: Serializer,
fn serialize<__S>(
&self,
__serializer: __S,
) -> Result<<__S as Serializer>::Ok, <__S as Serializer>::Error>where
__S: Serializer,
Auto Trait Implementations§
impl Freeze for AuditEvent
impl RefUnwindSafe for AuditEvent
impl Send for AuditEvent
impl Sync for AuditEvent
impl Unpin for AuditEvent
impl UnsafeUnpin for AuditEvent
impl UnwindSafe for AuditEvent
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
impl<ST, DT> CastableFrom<ST, Initialized, Initialized> for DT
impl<ST, DT> CastableFrom<ST, Uninit, Uninit> for DT
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> DeserializeOwned for Twhere
T: for<'de> Deserialize<'de>,
Source§impl<T> FmtForward for T
impl<T> FmtForward for T
Source§fn fmt_binary(self) -> FmtBinary<Self>where
Self: Binary,
fn fmt_binary(self) -> FmtBinary<Self>where
Self: Binary,
self to use its Binary implementation when Debug-formatted.Source§fn fmt_display(self) -> FmtDisplay<Self>where
Self: Display,
fn fmt_display(self) -> FmtDisplay<Self>where
Self: Display,
self to use its Display implementation when
Debug-formatted.Source§fn fmt_lower_exp(self) -> FmtLowerExp<Self>where
Self: LowerExp,
fn fmt_lower_exp(self) -> FmtLowerExp<Self>where
Self: LowerExp,
self to use its LowerExp implementation when
Debug-formatted.Source§fn fmt_lower_hex(self) -> FmtLowerHex<Self>where
Self: LowerHex,
fn fmt_lower_hex(self) -> FmtLowerHex<Self>where
Self: LowerHex,
self to use its LowerHex implementation when
Debug-formatted.Source§fn fmt_octal(self) -> FmtOctal<Self>where
Self: Octal,
fn fmt_octal(self) -> FmtOctal<Self>where
Self: Octal,
self to use its Octal implementation when Debug-formatted.Source§fn fmt_pointer(self) -> FmtPointer<Self>where
Self: Pointer,
fn fmt_pointer(self) -> FmtPointer<Self>where
Self: Pointer,
self to use its Pointer implementation when
Debug-formatted.Source§fn fmt_upper_exp(self) -> FmtUpperExp<Self>where
Self: UpperExp,
fn fmt_upper_exp(self) -> FmtUpperExp<Self>where
Self: UpperExp,
self to use its UpperExp implementation when
Debug-formatted.Source§fn fmt_upper_hex(self) -> FmtUpperHex<Self>where
Self: UpperHex,
fn fmt_upper_hex(self) -> FmtUpperHex<Self>where
Self: UpperHex,
self to use its UpperHex implementation when
Debug-formatted.Source§impl<T> Instrument for T
impl<T> Instrument for T
Source§fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
Source§fn in_current_span(self) -> Instrumented<Self> ⓘ
fn in_current_span(self) -> Instrumented<Self> ⓘ
Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreimpl<T> MaybeSend for Twhere
T: Send,
Source§impl<T> Pipe for Twhere
T: ?Sized,
impl<T> Pipe for Twhere
T: ?Sized,
Source§fn pipe<R>(self, func: impl FnOnce(Self) -> R) -> Rwhere
Self: Sized,
fn pipe<R>(self, func: impl FnOnce(Self) -> R) -> Rwhere
Self: Sized,
Source§fn pipe_ref<'a, R>(&'a self, func: impl FnOnce(&'a Self) -> R) -> Rwhere
R: 'a,
fn pipe_ref<'a, R>(&'a self, func: impl FnOnce(&'a Self) -> R) -> Rwhere
R: 'a,
self and passes that borrow into the pipe function. Read moreSource§fn pipe_ref_mut<'a, R>(&'a mut self, func: impl FnOnce(&'a mut Self) -> R) -> Rwhere
R: 'a,
fn pipe_ref_mut<'a, R>(&'a mut self, func: impl FnOnce(&'a mut Self) -> R) -> Rwhere
R: 'a,
self and passes that borrow into the pipe function. Read moreSource§fn pipe_borrow<'a, B, R>(&'a self, func: impl FnOnce(&'a B) -> R) -> R
fn pipe_borrow<'a, B, R>(&'a self, func: impl FnOnce(&'a B) -> R) -> R
Source§fn pipe_borrow_mut<'a, B, R>(
&'a mut self,
func: impl FnOnce(&'a mut B) -> R,
) -> R
fn pipe_borrow_mut<'a, B, R>( &'a mut self, func: impl FnOnce(&'a mut B) -> R, ) -> R
Source§fn pipe_as_ref<'a, U, R>(&'a self, func: impl FnOnce(&'a U) -> R) -> R
fn pipe_as_ref<'a, U, R>(&'a self, func: impl FnOnce(&'a U) -> R) -> R
self, then passes self.as_ref() into the pipe function.Source§fn pipe_as_mut<'a, U, R>(&'a mut self, func: impl FnOnce(&'a mut U) -> R) -> R
fn pipe_as_mut<'a, U, R>(&'a mut self, func: impl FnOnce(&'a mut U) -> R) -> R
self, then passes self.as_mut() into the pipe
function.Source§fn pipe_deref<'a, T, R>(&'a self, func: impl FnOnce(&'a T) -> R) -> R
fn pipe_deref<'a, T, R>(&'a self, func: impl FnOnce(&'a T) -> R) -> R
self, then passes self.deref() into the pipe function.Source§impl<T> PolicyExt for Twhere
T: ?Sized,
impl<T> PolicyExt for Twhere
T: ?Sized,
impl<T> Read<Exclusive, BecauseExclusive> for Twhere
T: ?Sized,
Source§impl<T> Tap for T
impl<T> Tap for T
Source§fn tap_borrow<B>(self, func: impl FnOnce(&B)) -> Self
fn tap_borrow<B>(self, func: impl FnOnce(&B)) -> Self
Borrow<B> of a value. Read moreSource§fn tap_borrow_mut<B>(self, func: impl FnOnce(&mut B)) -> Self
fn tap_borrow_mut<B>(self, func: impl FnOnce(&mut B)) -> Self
BorrowMut<B> of a value. Read moreSource§fn tap_ref<R>(self, func: impl FnOnce(&R)) -> Self
fn tap_ref<R>(self, func: impl FnOnce(&R)) -> Self
AsRef<R> view of a value. Read moreSource§fn tap_ref_mut<R>(self, func: impl FnOnce(&mut R)) -> Self
fn tap_ref_mut<R>(self, func: impl FnOnce(&mut R)) -> Self
AsMut<R> view of a value. Read moreSource§fn tap_deref<T>(self, func: impl FnOnce(&T)) -> Self
fn tap_deref<T>(self, func: impl FnOnce(&T)) -> Self
Deref::Target of a value. Read moreSource§fn tap_deref_mut<T>(self, func: impl FnOnce(&mut T)) -> Self
fn tap_deref_mut<T>(self, func: impl FnOnce(&mut T)) -> Self
Deref::Target of a value. Read moreSource§fn tap_dbg(self, func: impl FnOnce(&Self)) -> Self
fn tap_dbg(self, func: impl FnOnce(&Self)) -> Self
.tap() only in debug builds, and is erased in release builds.Source§fn tap_mut_dbg(self, func: impl FnOnce(&mut Self)) -> Self
fn tap_mut_dbg(self, func: impl FnOnce(&mut Self)) -> Self
.tap_mut() only in debug builds, and is erased in release
builds.Source§fn tap_borrow_dbg<B>(self, func: impl FnOnce(&B)) -> Self
fn tap_borrow_dbg<B>(self, func: impl FnOnce(&B)) -> Self
.tap_borrow() only in debug builds, and is erased in release
builds.Source§fn tap_borrow_mut_dbg<B>(self, func: impl FnOnce(&mut B)) -> Self
fn tap_borrow_mut_dbg<B>(self, func: impl FnOnce(&mut B)) -> Self
.tap_borrow_mut() only in debug builds, and is erased in release
builds.Source§fn tap_ref_dbg<R>(self, func: impl FnOnce(&R)) -> Self
fn tap_ref_dbg<R>(self, func: impl FnOnce(&R)) -> Self
.tap_ref() only in debug builds, and is erased in release
builds.Source§fn tap_ref_mut_dbg<R>(self, func: impl FnOnce(&mut R)) -> Self
fn tap_ref_mut_dbg<R>(self, func: impl FnOnce(&mut R)) -> Self
.tap_ref_mut() only in debug builds, and is erased in release
builds.Source§fn tap_deref_dbg<T>(self, func: impl FnOnce(&T)) -> Self
fn tap_deref_dbg<T>(self, func: impl FnOnce(&T)) -> Self
.tap_deref() only in debug builds, and is erased in release
builds.