List recent audit events
audit_recentInspect the newest decision audit events from the kernel, including tool calls, policy allow/deny, and risk tier outcomes. Use to see what the kernel decided, newest first, with an optional limit.
Instructions
Return the newest Decision-System-of-Record audit events (tool calls, policy allow/deny, risk tier, outcome), newest first. Use to inspect what the kernel just decided. Do not use for attestation evidence (attestation_recent) or cache metrics (cache_stats). Read-only. limit caps the list (default 20). Auth: tool policy gate.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| limit | No | Maximum events to return, newest first. Default 20. |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
No arguments | |||