Security
Review your organisation's security posture through an automated score and recent audit events
See your organisation's security health in one place: an automated score plus the latest audit events. This page is available exclusively to sales-managed (enterprise-tier) organisations and requires the audit_log read permission with the ENTERPRISE_SECURITY_OVERVIEW feature flag enabled.
Security score
An overall score from 0 to 100 and a letter grade from A to F, calculated from a set of automated checks. Each check contributes a weighted number of points.
| Check | What it measures |
|---|---|
| SSO / two-factor adoption | Percentage of members using SSO or 2FA |
| Admins with 2FA | Whether every admin account has two-factor authentication enabled |
| Stale API keys | Number of API keys not used recently |
| Admin count | Whether the number of admin accounts stays within a safe limit |
| Dormant accounts | Number of accounts inactive for an extended period |
| Audit log depth | How far back audit log entries reach |
| Expired invitations | Number of pending invitations that have expired |
Each check is colour-coded: green passed, yellow warning, red failed.
Authentication and access
Shows the current authentication provider (credentials, SAML, Google, Microsoft, or Apple), whether SCIM provisioning is enabled, and since when.
Shared content exposure
Counts your org-wide document folders and shared custom GPTs, so you can spot content that is broadly accessible.
Recent security events
Lists the eight most recent audit log entries with their timestamp, actor, and action. Click View all to open the full audit log.