Audit and security posture

Use the VaultPilot Overview screen to turn health signals into a short, owned list of security actions.

Score signals

  • 2FA state.
  • Audit chain verification.
  • License health.
  • Extension pairing state.
  • Update and package health.

Audit chain

Audit events are linked in a tamper-evident chain. If the chain is partial or inconsistent, inspect the relevant events with advanced filters.

  • Enable 2FA for owner and admin accounts.
  • Investigate partial or broken audit chain state.
  • Revoke stale extension devices.
  • Check the Ed25519-signed manifest, allowed release host, SHA-256 hash and file size.

Recovery pointers

If the score drops after license expiry, failed updates, partial audit-chain checks, or lost 2FA devices, keep evidence redacted and use the matching recovery guide before changing records.

Back to Documentation