Audit Trail: Tamper-Proof NIS2 & ISO 27001 Compliance Log
by VM Robotika UAB https://longrun.lt$ย 227.38
โ
Works everywhere: Odoo Community and Enterprise. No external dependency required. Optional WORM shipping uses the boto3 package.
Overview
Odoo audit trail | audit log | NIS2 Odoo | ISO 27001 Odoo | tamper-proof log | login history | change tracking | compliance logging | WORM S3 Object Lock
A tamper-evident audit trail for Odoo that records who did what, when and from where. Every change, export, login (including failed logins) and security-configuration edit is written to an immutable, hash-chained log that no user, not even an administrator, can silently alter. Built as compliance evidence for NIS2, ISO 27001, SOC 2, GDPR and DORA.
Key Features
๐ Immutable Hash-Chained Log
Every entry is sealed with a SHA-256 hash and linked into a chain. Any change to a past record breaks the chain and is detected by the built-in integrity check. Entries cannot be edited or deleted through the application.
๐ค Change Tracking with Old and New Values
Create, write and delete are captured on the models you choose, with the previous and new field values. You decide what is audited through simple rules; the rest stays quiet.
๐ Always-On Security Watchlist
Users, groups, access rights, record rules, API keys and system parameters are audited automatically and cannot be switched off. The audit rules themselves are watched too.
๐ Login History and Failed Logins
Successful and failed logins with IP address, logouts, password changes and MFA events, for regular users and administrators alike. Failed attempts are recorded even though the login was rejected.
๐ Retention and Compliance Presets
A configurable retention period with a 90-day minimum aligned with NIS2. Ready-made presets for LT, DE, BE, FR, PL, PCI DSS and HIPAA set the recommended retention in one click.
๐ฆ Immutable WORM Storage (S3 Object Lock)
Ship each export to an S3-compatible bucket with Object Lock. Once written, the log cannot be altered or deleted before retention expires, not even by an administrator. This turns the trail from tamper-evident into truly tamper-proof.
๐ Sensitive Data Protection
Passwords, keys, secrets and tokens are redacted automatically before they reach the log. Optional IP-address anonymization supports GDPR data minimization.
๐ Export and Off-System Anchor
Export the trail as JSONL for auditors and log shippers. A daily chain digest signature can be emailed to an external mailbox as an off-system integrity anchor.
Two Clear Roles
Nobody, in any role, can modify or delete a log entry.
Screenshots
Audit log with user, operation, model, IP and hash chain
Entry detail with old and new values and the entry hash
Audit rules: choose which models are tracked (security models are always on)
Compliance presets, retention, digest email and WORM S3 Object Lock
Daily chain digests: the closing hash anchor for each day
Can't find the Odoo module you need?
Contact us, we'll build it for you!
Nerandate jums reikiamo Odoo modulio? Susisiekite, sukursime!
VM Robotika, UAB ยท Vilnius, Lithuania
| Availability |
Odoo Online
Odoo.sh
On Premise
|
| Odoo Apps Dependencies |
Discuss (mail)
|
| Lines of code | 1719 |
| Technical Name |
lr_audit_trail |
| License | OPL-1 |
| Website | https://longrun.lt |
Odoo Proprietary License v1.0 This software and associated files (the "Software") may only be used (executed, modified, executed after modifications) if you have purchased a valid license from the authors, typically via Odoo Apps, or if you have received a written agreement from the authors of the Software (see the COPYRIGHT file). You may develop Odoo modules that use the Software as a library (typically by depending on it, importing it and using its resources), but without copying any source code or material from the Software. You may distribute those modules under the license of your choice, provided that this license is compatible with the terms of the Odoo Proprietary License (For example: LGPL, MIT, or proprietary licenses similar to this one). It is forbidden to publish, distribute, sublicense, or sell copies of the Software or modified copies of the Software. The above copyright notice and this permission notice must be included in all copies or substantial portions of the Software. THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.
Please log in to comment on this module