---
isPrivate: true
title: Google Cloud Audit
description: Learn more about the Google Cloud Audit pack.
breadcrumbs: Docs > Observability Pipelines > Packs > Google Cloud Audit
---

> For the complete documentation index, see [llms.txt](https://docs.datadoghq.com/llms.txt).

# Google Cloud Audit

{% callout %}
# Important note for users on the following Datadog sites: app.ddog-gov.com, us2.ddog-gov.com

{% alert level="danger" %}
This product is not supported for your selected [Datadog site](https://docs.datadoghq.com/getting_started/site.md). ({% placeholder "user-datadog-site-name" /%}).
{% /alert %}

{% /callout %}

## Overview{% #overview %}

{% image
   source="https://docs.dd-static.net/images/observability_pipelines/packs/google_cloud_audit.4bbbecda2861db057aca50bd3b703215.png?auto=format&fit=max&w=850 1x, https://docs.dd-static.net/images/observability_pipelines/packs/google_cloud_audit.4bbbecda2861db057aca50bd3b703215.png?auto=format&fit=max&w=850&dpr=2 2x"
   alt="The Google Cloud Audit pack" /%}

Google Cloud Audit logs capture admin activity and policy violations.

What this pack does:

- Extracts principal, caller IP, and API method
- Tags IAM, secret, and firewall changes as high-risk
- Samples routine read-only operations
