Activity log

Last updated: 28 Jun 2026

Optional—Settings → Advanced → Security activity.

Who this is for

Users who want a device-local audit trail of unlock attempts, backups, shares, sync merges, and security setting changes—metadata only, never decrypted field values.

What you need

TierFree
Vault stateUnlocked to view or export
NetworkOffline
Feature toggleSecurity activity under Feature controls

Steps

Enable the log

  1. Open Settings → Preferences → Feature controls (https://se.nt2.me/settings/preferences/featureControls).
  2. Turn on Security activity (hidden from Advanced until enabled).
  3. Open Settings → Advanced → Security activity (https://se.nt2.me/settings/advanced/activityLog).

Review entries

  1. Scroll the chronological list—newest events appear first.
  2. Typical events include: unlock (password or biometric), manual lock, auto-lock, failed unlock, backup export/import, share created/revoked, Travel Mode toggles, master password change, sync merge summaries, enrolled device changes, and digital legacy milestones.
  3. Use Load more when the vault has a long history on this device.

Adjust retention

  1. Choose Keep entries for (day count) on the same page.
  2. Older rows prune automatically after the retention window; pruning is local only.

Export or clear

  1. Export log downloads a JSON file for your records—still metadata only.
  2. Clear log permanently removes entries on this device; other devices keep their own logs.
  3. Clearing does not affect vault items or cloud state.

Tips and common mistakes

  • The log is not synced and not uploaded—each browser or app install maintains its own file.
  • Failed unlock lines help detect typo brute force on a shared laptop; they do not include the attempted password.
  • Enable the toggle before an incident—you cannot retroactively log events that happened while the feature was off.
  • Pair with Security settings review after revoking biometrics or changing duress PIN.