---
title: "Get Audit Log Webhook"
method: GET
path: "/v2/audit-log-webhook"
tags: ["Audit Logs"]
---

# Get Audit Log Webhook

`GET /v2/audit-log-webhook`

Returns configuration for the audit log webhook.

## Response `200`

Get response for audit log webhook

- object
  - `endpoint` string, nullable — The endpoint that will receive audit log messages.
  - `enabled` boolean, nullable — Indicates whether audit data should be sent to the webhook.
  - `log_format` 'cef' | 'json' | 'cps' — The output format of each log messages.
  - `skip_ssl_verification` boolean — Indicates if the SSL certificate verification of the host endpoint should be skipped when delivering payloads.
  - `updated_at` string, date-time — Timestamp when this webhook was last updated. Initial value is 0001-01-01T00:00:0Z.

## Other responses

- `401` — Unauthorized
- `403` — Forbidden

## Changes

> 52 revisions in range; 2 could not be searched.

- **2025-08-22** `96118a9cd7f4` — 6 breaking, 1 info
  - the response property `detail` became nullable for the status `401`
  - the response property `enabled` became nullable for the status `200`
  - the response property `endpoint` became nullable for the status `200`
  - the response property `instance` became nullable for the status `401`
  - …3 more
- **2025-06-27** `9f695af25102` — 1 warning
  - added the new `cps` enum value to the `log_format` response property for the response status `200`
- **2025-06-19** `60ce7598bbd0` — 1 info
  - the `log_format` response's property default value `cef` was added for the status `200`
- **2025-02-10** `d833d4dbb1fa` — 1 info
  - endpoint added

[Change history](https://skmtc.dev/kong/apis/konnect-api/changes/v2/audit-log-webhook/get.md)

---

[API](https://skmtc.dev/kong/apis/konnect-api.md) · [All operations](https://skmtc.dev/kong/apis/konnect-api/llms.txt) · [OpenAPI document](https://skmtc-service-production.skmtc.workers.dev/v1/apis/kong/konnect-api/revisions/72502a676a92/schema)
