Audit Log is a list of events: who, when, what they did, and from what origin. Heltio records reads and changes of patient data there, issuing and cancelling an invoice, payments, settings changes, sign-ins and sign-outs, GDPR requests. Entries cannot be edited or deleted from inside the app.
You will find it in the sidebar: Settings → Compliance → Audit Log.
How to do it
Set the date range
The page opens on the last 30 days. In the Date range field pick a ready-made range — Today, Yesterday, Last 7 days, Last 30 days, Last 90 days — or Custom and enter the dates by hand.
Narrow down to what you are after
Four further filters: User, Action type, Entity type and Record ID. They combine. Clear filters returns to the starting state. The filters you set are stored in the page address, so you can paste the link to someone on the team.
Read a row
Above the table six numbers summarise the chosen period: Total Events, Created, Viewed, Updated, Deleted, Exported.
The table shows Timestamp, User, Action, Entity, Record ID and Network fingerprint — a cryptographic fingerprint of where the event came from; the same value on two rows means the same origin, and the address itself cannot be recovered from it. The Expand button on a row reveals Details — exactly what changed — and the Client fingerprint. The list pulls in 50 rows at a time with Load more.
Three things on this screen are read together. 3 is the date range and the four other filters; 2 are the six numbers describing exactly the slice the filters let through; 1 is the Export button, which writes to file exactly those same rows, not the whole history.
Export the result
Export gives you exactly what you see once the filters are applied, as JSON or CSV. Heltio prepares the file in the background — on a larger range you will see Preparing export…, and the file downloads once it is ready. The download link is valid briefly; once it expires, run the export again.
When something does not work
Only clinic owners and admins can view the audit log.
What this means: Your role in this clinic is Practitioner or Assistant / Reception.
No audit events match the selected filters
What this means: The date range or the filters are too narrow, or the event you are after has already fallen outside the retention period.
No records to export
What this means: The current filters return no rows at all, so there is nothing to write to a file.
Export failed
What this means: Preparing the file broke off on Heltio's side.
Not available in demo mode
What this means: You are working in the demo clinic — file export is disabled there.
Who has access
Clinic AdminThe log is seen by the Owner and the Administrator only. A Practitioner and an Assistant / Reception have no way in — even where the event concerns their own work.
Opening the log leaves no entry in it: auditing the reading of the audit would create an avalanche of entries about nothing. Every export, however, is recorded.
Related
- Roles and permissions — who can do what, and where the action names come from.
- The clinic team — who the users in the User column are.
- GDPR in Heltio — the obligations this log serves.
Related features
Roles and permissions
Thirteen roles: four in an ordinary clinic, eight more in a hospital facility and one on the patient side. What each one sees, what it can change, and why a role cannot be overridden with a single permission.
The clinic team
The list of people working in the clinic: who holds which role, how to change it, how to take access away from someone leaving, and what happens to their appointments and notes.
Clinic details — name, contact, time zone
The Clinic Information card holds the name, address, phone, email and time zone. The tax details — NIP and bank account — live somewhere else, and this article says where.