Audit logs are included with every Cal.com organization plan and are turned on by default. You must be an organization or team admin to view them.
Booking events
Each booking keeps a history of the following events:
If the booking was created through a routing form, the form submission is also shown in the timeline.
Security events
Cal.com also tracks security-related actions for your organization. These events help admins monitor account activity and maintain compliance.Routing form history
Each routing form keeps a history of every change made to its configuration. This helps organization admins audit who edited a form, when the change happened, and exactly what was updated. The following changes are recorded:
Each entry shows the actor who made the change, when it happened, and a structured diff of what was updated — including field additions and renames, route condition changes, and updates to attribute mappings or team members in
sendUpdatesTo.
How to view routing form history
1
Open the routing form
Go to Routing from the main navigation and open the form you want to review.
2
Open the actions menu
In the form editor, open the actions dropdown menu.
3
Select Form history
Choose Form history to open the history sheet and view the timeline of changes.
How to view booking audit logs
1
Open the bookings page
Go to Bookings from the main navigation.
2
Select a booking
Click any booking to open the booking details panel.
3
Switch to the history tab
Select the History tab at the top of the panel to view the audit log timeline.
Reading the timeline
The timeline displays events in reverse chronological order (newest first). Each entry shows:- Action icon — a visual indicator of the event type
- Description — what happened (for example, “Booking rescheduled from Jan 10 to Jan 15”)
- Who made the change — the person’s name and role (such as guest or attendee)
- When it happened — a relative timestamp (for example, “2 hours ago”), with the exact date and time available on hover
- Source — whether the change was made from the web app, an API call, a webhook, or the system
- Impersonation info — if someone performed the action on behalf of another user
- Raw data — the full event data in JSON format
Filtering audit logs
Two filters are available above the timeline:- Search — filter entries by keyword across action names, actor names, and event details
- Actor — filter by the person who made the change using the dropdown menu
Who can access audit logs
Audit log access is controlled by your organization’s permission settings. Booking audit logs and routing form history are gated independently, so an admin can grant one without the other.- Organization admins and owners can view audit logs for all bookings, routing forms, and security events in the organization by default.
- Team admins and owners can view audit logs for bookings and routing forms owned by their team.
- Regular members do not have access to audit logs by default.
- View team routing form audit logs — history for forms owned by teams the member belongs to.
- View organization routing form audit logs — history for every routing form in the organization.
Frequently asked questions
Can I export audit logs?
Can I export audit logs?
Audit logs are currently viewable within Cal.com. Export functionality is not available at this time.
How far back do audit logs go?
How far back do audit logs go?
Audit logs are recorded from the point your organization was created or the feature became available. Changes made before audit logging was active are not tracked.
Are audit logs available for personal bookings?
Are audit logs available for personal bookings?
Yes, as long as the booking owner is a member of your organization and you have the appropriate admin permissions.
What does the 'System' actor mean?
What does the 'System' actor mean?
Actions performed automatically by Cal.com (rather than by a specific person) are attributed to “Cal.com” as the actor.
What are security audit events used for?
What are security audit events used for?
Security events help organization admins monitor sensitive account activity such as email changes, account locks, login attempts (including failed sign-ins), and authentication changes. These events support compliance and security monitoring across your organization.