How is the AskCody platform monitored?
This article explains how AskCody monitors the AskCody Platform, and which Microsoft tools you can use to audit AskCody activity in your own tenant
IT Admins and security teams usually want to know two things: how AskCody watches over its own service, and how they can see what AskCody does inside their Microsoft 365 tenant. Monitoring happens on both sides. AskCody monitors the AskCody Platform. You monitor your Microsoft 365 tenant with the audit tools Microsoft provides. This article covers both.
How AskCody monitors the platform
AskCody monitors the AskCody Platform with Azure system telemetry. Requests to the platform are logged, which gives AskCody an audit trail and early warning of errors or unusual behavior.
What your information security team needs to know:
- Data residency: Logs for European customers are stored in European Azure infrastructure. Logs for North American customers are stored in North American Azure infrastructure.
- Retention: Log data is retained for 90 days.
- No personal data: AskCody does not keep personal data in its logs.
- Response: On-call staff respond to alerts 24/7. You can follow the service status at status.askcody.com.
Note: AskCody's telemetry covers the AskCody Platform. To see the calls AskCody makes to your Microsoft 365 tenant, use the Microsoft logs described below.
How you can audit AskCody activity in your Microsoft 365 tenant
The AskCody integration with Exchange Online runs on Microsoft Graph. Requests come from the AskCody application registered in your Microsoft Entra ID (former Azure AD), so you can trace them with Microsoft's own logging. You find the AskCody application ID in Permissions used and required connecting AskCody with MS Graph and Entra ID.
Note: The Microsoft tools described below are owned and maintained by Microsoft. Features, licensing requirements, and retention periods may change without notice from AskCody. Always refer to the official Microsoft documentation for the latest information.
Microsoft Graph activity logs
Microsoft Graph activity logs give you an audit trail of the HTTP requests Microsoft Graph receives for your tenant, including requests made by applications such as AskCody. Each entry shows which application made the request, what was requested, when, and the result. Filter on the AskCody Application ID to see AskCody activity only.
Note: Microsoft Graph activity logs may require additional Microsoft licenses and some setup in your tenant. Check the Microsoft documentation for current requirements.
Read more: Microsoft Graph activity logs overview
Microsoft Entra sign-in logs
The service principal sign-ins in Microsoft Entra ID show when the AskCody application authenticates against your tenant. This is useful for confirming that AskCody only signs in as expected.
Read more: What are Microsoft Entra sign-in logs?
Microsoft Purview audit log
The unified audit log in Microsoft Purview records user and admin activity across Microsoft 365, including Exchange mailbox activity. Use it to search for activity over a given period.
Note: Microsoft's default mailbox auditing covers user, shared, and Microsoft 365 Group mailboxes. Resource mailboxes (rooms and workspaces) are not part of the default list. Check Manage mailbox auditing for what is logged per mailbox type.
Read more: Search the audit log
If you use Exchange Server (on-premises)
If you run Exchange Server, AskCody connects through Exchange Web Services (EWS). In that case you can use IIS logging on your Exchange servers and Exchange mailbox audit logging to trace AskCody activity.
Read more: Mailbox audit logging in Exchange Server
Related articles
To see exactly which permissions AskCody uses, read Permissions used and required connecting AskCody with MS Graph and Entra ID. If you want to restrict which mailboxes AskCody can reach, read Limit application access when using Application Impersonation.