{"component": "clause", "props": {"groups": [{"snippet_links": [{"key": "the-system", "type": "definition", "offset": [0, 10]}, {"key": "automated-audit-trail", "type": "clause", "offset": [28, 49]}, {"key": "the-user", "type": "definition", "offset": [69, 77]}, {"key": "request-for", "type": "definition", "offset": [114, 125]}, {"key": "the-audit", "type": "clause", "offset": [174, 183]}, {"key": "date-and-time", "type": "clause", "offset": [198, 211]}, {"key": "read-only", "type": "definition", "offset": [275, 284]}, {"key": "authorized-users", "type": "definition", "offset": [312, 328]}], "samples": [{"hash": "dXINGLKtoBw", "uri": "/contracts/dXINGLKtoBw#system-logging", "label": "Participation Agreement", "score": 35.6633338928, "published": true}, {"hash": "avifs6Fydd3", "uri": "/contracts/avifs6Fydd3#system-logging", "label": "Participation Agreement", "score": 35.6080169678, "published": true}, {"hash": "9ijBMgGbLsq", "uri": "/contracts/9ijBMgGbLsq#system-logging", "label": "Memorandum of Understanding", "score": 35.4696807861, "published": true}], "size": 52, "snippet": "The system must maintain an automated audit trail which can identify the user or system process which initiates a request for DHCS PHI or PI, or which alters DHCS PHI or PI. The audit trail must be date and time stamped, must log both successful and failed accesses, must be read only, and must be restricted to authorized users. If DHCS PHI or PI is stored in a database, database logging functionality must be enabled. Audit trail data must be archived for at least 3 years after occurrence.", "hash": "cf8fdae6697cb3729ee4a71326cbb182", "id": 3}, {"snippet_links": [{"key": "the-system", "type": "definition", "offset": [0, 10]}, {"key": "automated-audit-trail", "type": "clause", "offset": [28, 49]}, {"key": "the-user", "type": "definition", "offset": [72, 80]}, {"key": "request-for", "type": "definition", "offset": [117, 128]}, {"key": "of-county", "type": "clause", "offset": [234, 243]}, {"key": "the-audit", "type": "clause", "offset": [274, 283]}, {"key": "date-and-time", "type": "clause", "offset": [298, 311]}, {"key": "read-only", "type": "definition", "offset": [378, 387]}, {"key": "authorized-users", "type": "definition", "offset": [415, 431]}], "samples": [{"hash": "ifQaDHBN3it", "uri": "/contracts/ifQaDHBN3it#system-logging", "label": "Contract for Provision of Services", "score": 33.2096748352, "published": true}, {"hash": "NCx1RueUS8", "uri": "/contracts/NCx1RueUS8#system-logging", "label": "Contract for Provision of Services", "score": 32.2981300354, "published": true}, {"hash": "cv7gfYWWOF8", "uri": "/contracts/cv7gfYWWOF8#system-logging", "label": "Contract for Provision of in Custody Substance Use Disorder Treatment Services", "score": 32.1174659729, "published": true}], "size": 311, "snippet": "The system must maintain an automated audit trail which can 20 identify the user or system process which initiates a request for PHI COUNTY discloses to 21 CONTRACTOR or CONTRACTOR creates, receives, maintains, or transmits on behalf of COUNTY, 22 or which alters such PHI. The audit trail must be date and time stamped, must log both successful and 23 failed accesses, must be read only, and must be restricted to authorized users. If such PHI is stored in a 24 database, database logging functionality must be enabled. Audit trail data must be archived for at least 3 25 years after occurrence.", "hash": "16a019d7738f67993c30a7e89ca17eb9", "id": 1}, {"snippet_links": [{"key": "the-system", "type": "definition", "offset": [0, 10]}, {"key": "automated-audit-trail", "type": "clause", "offset": [28, 49]}, {"key": "the-user", "type": "definition", "offset": [69, 77]}, {"key": "county-phi", "type": "definition", "offset": [126, 136]}, {"key": "the-audit", "type": "clause", "offset": [178, 187]}, {"key": "date-and-time", "type": "clause", "offset": [202, 215]}, {"key": "read-only", "type": "definition", "offset": [279, 288]}, {"key": "authorized-users", "type": "definition", "offset": [316, 332]}], "samples": [{"hash": "A8Z2DruOfA", "uri": "/contracts/A8Z2DruOfA#system-logging", "label": "Agreement for Special Services", "score": 36.5167694092, "published": true}, {"hash": "g35dmch1iEF", "uri": "/contracts/g35dmch1iEF#system-logging", "label": "Agreement for Special Services", "score": 36.4552307129, "published": true}, {"hash": "hOOj5zXQ3av", "uri": "/contracts/hOOj5zXQ3av#system-logging", "label": "Contract No. 2020243", "score": 36.4019546509, "published": true}], "size": 89, "snippet": "The system must maintain an automated audit trail which can identify the user or system process which initiates a request for County PHI or PI, or which alters County PHI or PI. The audit trail must be date and time stamped, must log both successful and failed accesses, must be read only, and must be restricted to authorized users. If County PHI or PI is stored in a database, database logging functionality must be enabled. Audit trail data must be archived for at least three (3) years after occurrence.", "hash": "302463cca8c6f9c6a0d8e204a6b932d7", "id": 2}, {"snippet_links": [{"key": "the-systems", "type": "clause", "offset": [3, 14]}, {"key": "access-to-pii", "type": "clause", "offset": [29, 42]}, {"key": "automated-audit-trail", "type": "clause", "offset": [60, 81]}, {"key": "the-user", "type": "definition", "offset": [100, 108]}, {"key": "request-for", "type": "definition", "offset": [145, 156]}, {"key": "the-audit", "type": "clause", "offset": [180, 189]}, {"key": "date-and-time", "type": "clause", "offset": [209, 222]}, {"key": "access-only", "type": "definition", "offset": [287, 298]}, {"key": "authorized-users", "type": "definition", "offset": [324, 340]}], "samples": [{"hash": "fWksrVFLk8j", "uri": "/contracts/fWksrVFLk8j#system-logging", "label": "Contract for Family Resource Center Services", "score": 36.2044639587, "published": true}, {"hash": "4WFFZrUHaLj", "uri": "/contracts/4WFFZrUHaLj#system-logging", "label": "Contract for the Provision of Bringing Families Home Services", "score": 36.1462593079, "published": true}, {"hash": "lCt47oxUe5k", "uri": "/contracts/lCt47oxUe5k#system-logging", "label": "Contract for the Provision of Bridge Program Child Care Navigator, Trauma Informed Training and Coaching, and Emergency Child Care Voucher Services", "score": 36.1309661865, "published": true}], "size": 31, "snippet": "i. The systems which provide access to PII must maintain an automated audit trail that can identify the user or system process which initiates a request for PII or alters PII.\nii. The audit trail shall:\nA. Be date and time stamped;\nB. Log both successful and failed accesses;\nC. Be read-access only; and\nD. Be restricted to authorized users.\niii. If PII is stored in a database, database logging functionality shall be enabled.\niv. Audit trail data shall be archived for at least three (3) years from the occurrence.", "hash": "2dd28879fc9860c53201b691bcae4952", "id": 4}, {"snippet_links": [{"key": "the-system", "type": "definition", "offset": [0, 10]}, {"key": "automated-audit-trail", "type": "clause", "offset": [28, 49]}], "samples": [{"hash": "e0ZOX87ruB", "uri": "/contracts/e0ZOX87ruB#system-logging", "label": "Agreement for Provision of Services", "score": 25.7968845367, "published": true}, {"hash": "eEUuCjd0cSD", "uri": "/contracts/eEUuCjd0cSD#system-logging", "label": "Agreement for Provision of Mental Health Psychiatric Services", "score": 25.1539096832, "published": true}, {"hash": "3Ujp2I10qES", "uri": "/contracts/3Ujp2I10qES#system-logging", "label": "Agreement for Provision of Hiv Prevention Services", "score": 24.7968845367, "published": true}], "size": 28, "snippet": "The system must maintain an automated audit trail which can identify", "hash": "56dfc9412e0278301e3db948f168bfe7", "id": 5}, {"snippet_links": [{"key": "the-system", "type": "definition", "offset": [0, 10]}, {"key": "automated-audit-trail", "type": "clause", "offset": [28, 49]}, {"key": "the-user", "type": "definition", "offset": [69, 77]}, {"key": "request-for", "type": "definition", "offset": [114, 125]}, {"key": "the-audit", "type": "clause", "offset": [162, 171]}, {"key": "date-and-time", "type": "clause", "offset": [186, 199]}, {"key": "read-only", "type": "definition", "offset": [263, 272]}, {"key": "authorized-users", "type": "definition", "offset": [300, 316]}, {"key": "not-limited", "type": "clause", "offset": [392, 403]}], "samples": [{"hash": "G5pgAwJI89", "uri": "/contracts/G5pgAwJI89#system-logging", "label": "Grant Agreement", "score": 34.3090820312, "published": true}, {"hash": "kMD2zpY7R5i", "uri": "/contracts/kMD2zpY7R5i#system-logging", "label": "Grant Agreement", "score": 33.7150726318, "published": true}, {"hash": "jhVoY8F33JH", "uri": "/contracts/jhVoY8F33JH#system-logging", "label": "Grant Agreement", "score": 32.8747024536, "published": true}], "size": 19, "snippet": "The system must maintain an automated audit trail which can identify the user or system process which initiates a request for CDPH PCI, or which alters CDPH PCI. The audit trail must be date and time stamped, must log both successful and failed accesses, must be read only, and must be restricted to authorized users This logging must be included for all user privilege levels including, but not limited to, systems administrators. If CDPH PCI is stored in a database, database logging functionality must be enabled. Audit trail data must be archived for at least 3 years after occurrence.", "hash": "75e19ce04d79383993f00fbf73062745", "id": 6}, {"snippet_links": [{"key": "the-system", "type": "definition", "offset": [0, 10]}, {"key": "automated-audit-trail", "type": "clause", "offset": [28, 49]}, {"key": "for-county", "type": "definition", "offset": [125, 135]}, {"key": "date-and-time", "type": "clause", "offset": [196, 209]}, {"key": "not-limited", "type": "clause", "offset": [303, 314]}], "samples": [{"hash": "9yeGlSVCHZK", "uri": "/contracts/9yeGlSVCHZK#system-logging", "label": "Contract for Provision of Services", "score": 32.1412391663, "published": true}, {"hash": "b8Q2XxPbH4E", "uri": "/contracts/b8Q2XxPbH4E#system-logging", "label": "Contract for Provision of Physical Examination Services", "score": 31.9705085754, "published": true}, {"hash": "lakXTyFiig3", "uri": "/contracts/lakXTyFiig3#system-logging", "label": "Agreement for the Provision of on Site Psychiatry and Telepsychiatry Services", "score": 27.4560909271, "published": true}], "size": 13, "snippet": "The system must maintain an automated audit trail which can identify the 30 user or system process which initiates a request for COUNTY PCI, or which alters COUNTY PCI. The 31 audit trail must be date and time stamped, must log both successful and failed accesses, must be read 33 levels including, but not limited to, systems administrators. If COUNTY PCI is stored in a database, 34 database logging functionality must be enabled. Audit trail data must be archived for at least three (3) 35 years after occurrence.", "hash": "bb6733d2bd4b33676442ca613a873987", "id": 7}, {"snippet_links": [{"key": "the-system", "type": "definition", "offset": [0, 10]}, {"key": "automated-audit-trail", "type": "clause", "offset": [28, 49]}, {"key": "the-user", "type": "definition", "offset": [69, 77]}, {"key": "request-for", "type": "definition", "offset": [114, 125]}, {"key": "the-audit", "type": "clause", "offset": [172, 181]}, {"key": "date-and-time", "type": "clause", "offset": [196, 209]}, {"key": "read-only", "type": "definition", "offset": [273, 282]}, {"key": "authorized-users", "type": "definition", "offset": [310, 326]}, {"key": "the-contract-period", "type": "clause", "offset": [503, 522]}, {"key": "completion-of", "type": "definition", "offset": [543, 556]}], "samples": [{"hash": "eMSrvyZk5om", "uri": "/contracts/eMSrvyZk5om#system-logging", "label": "Contract", "score": 33.8576126099, "published": true}, {"hash": "iRfMijDVeMB", "uri": "/contracts/iRfMijDVeMB#system-logging", "label": "Contract for Mental Health Services", "score": 32.6107025146, "published": true}, {"hash": "YrrPVWV86R", "uri": "/contracts/YrrPVWV86R#system-logging", "label": "Contract", "score": 31.4741840363, "published": true}], "size": 9, "snippet": "The system must maintain an automated audit trail which can identify the user or system process which initiates a request for DBH PHI or PI, or which alters DBH PHI or PI. The audit trail must be date and time stamped, must log both successful and failed accesses, must be read only, and must be restricted to authorized users. If DBH PHI or PI is stored in a database, database logging functionality must be enabled. Audit trail data must be archived for at least ten (10) years from the final date of the contract period or from the date of completion of any audit, whichever is later.", "hash": "b2befeee7e90acb4938f9f6c72e671f2", "id": 8}, {"snippet_links": [{"key": "access-to", "type": "definition", "offset": [30, 39]}, {"key": "automated-audit-trail", "type": "clause", "offset": [69, 90]}, {"key": "the-audit", "type": "clause", "offset": [166, 175]}, {"key": "date-and-time", "type": "clause", "offset": [190, 203]}, {"key": "read-only", "type": "definition", "offset": [257, 266]}, {"key": "authorized-users", "type": "definition", "offset": [285, 301]}], "samples": [{"hash": "hPs7OUZAuwX", "uri": "/contracts/hPs7OUZAuwX#system-logging", "label": "Local Implementation Agreement", "score": 36.0119667053, "published": true}, {"hash": "6xp3u0Hl0KA", "uri": "/contracts/6xp3u0Hl0KA#system-logging", "label": "Professional Services", "score": 35.0558853149, "published": true}, {"hash": "9xQbm43pAaV", "uri": "/contracts/9xQbm43pAaV#system-logging", "label": "Local Implementation Agreement", "score": 34.8319168091, "published": true}], "size": 8, "snippet": "Any and all systems providing access to PSEI or PHI must maintain an automated audit trail that can be used to identify any user or process which alters PSEI or PHI. The audit trail must be date and time stamped, log both successful and failed accesses, be read only and restricted to authorized users. If PSEI or PHI is stored in a database, logging functionality must be enabled. Audit trail data must be archived for at least ten (10) years after occurrence.", "hash": "dec85742cfaee89dc0340b9ebe80c923", "id": 9}, {"snippet_links": [{"key": "the-system", "type": "definition", "offset": [0, 10]}, {"key": "automated-audit-trail", "type": "clause", "offset": [28, 49]}, {"key": "the-user", "type": "definition", "offset": [69, 77]}, {"key": "request-for", "type": "definition", "offset": [114, 125]}, {"key": "the-audit", "type": "clause", "offset": [174, 183]}, {"key": "date-and-time", "type": "clause", "offset": [198, 211]}, {"key": "read-only", "type": "definition", "offset": [275, 284]}, {"key": "authorized-users", "type": "definition", "offset": [312, 328]}], "samples": [{"hash": "iuySm9n0iRj", "uri": "/contracts/iuySm9n0iRj#system-logging", "label": "Standard Agreement Amendment", "score": 29.3390369415, "published": true}, {"hash": "d931va9zLq7", "uri": "/contracts/d931va9zLq7#system-logging", "label": "Standard Agreement Amendment", "score": 27.0834465027, "published": true}, {"hash": "lkZoBEDEnaK", "uri": "/contracts/lkZoBEDEnaK#system-logging", "label": "Service Agreement", "score": 24.4811763763, "published": true}], "size": 8, "snippet": "The system must maintain an automated audit trail which can identify the user or system process which initiates a request for CDPH PHI or PI, or which alters CDPH PHI or PI. The audit trail must be date and time stamped, must log both successful and failed accesses, must be read only, and must be restricted to authorized users. If CDPH PHI or PI is stored in a database, database logging functionality must be enabled. Audit trail data must be archived for at least 3 years after occurrence.", "hash": "8dab45b564f513f4738a014cb7b12827", "id": 10}], "next_curs": "ClcSUWoVc35sYXdpbnNpZGVyY29udHJhY3RzcjMLEhZDbGF1c2VTbmlwcGV0R3JvdXBfdjU2IhdzeXN0ZW0tbG9nZ2luZyMwMDAwMDAwYQyiAQJlbhgAIAA=", "clause": {"children": [["", ""], ["personal-information-privacy-and-security-contract", "PERSONAL INFORMATION PRIVACY AND SECURITY CONTRACT"], ["definitions", "Definitions"], ["obligations-of-county", "OBLIGATIONS OF COUNTY"], ["security", "Security"]], "size": 631, "parents": [["technical-security-controls", "Technical Security Controls"], ["business-associate-contract", "Business Associate Contract"], ["business-associate-data-security-requirements", "Business Associate Data Security Requirements"], ["data-security-requirements", "Data Security Requirements"], ["system-security-controls", "System Security Controls"]], "title": "System Logging", "id": "system-logging", "related": [["logging", "Logging", "Logging"], ["system-use", "System Use", "System Use"], ["system-upgrades", "System Upgrades", "System Upgrades"], ["system-access", "System Access", "System Access"], ["access-toll-connecting-trunk-group-architecture", "Access Toll Connecting Trunk Group Architecture", "Access Toll Connecting Trunk Group Architecture"]], "related_snippets": [], "updated": "2025-07-24T04:27:51+00:00", "also_ask": ["What minimum logging standards and retention periods should be mandated for compliance and risk mitigation?", "How can the clause allocate responsibility for log integrity, access, and breach notification?", "What are the key negotiation points regarding audit rights and third-party access to logs?", "How does this clause compare to industry best practices and relevant data protection laws?", "What are the main enforceability challenges if log data is incomplete or tampered with in litigation?"], "drafting_tip": "Specify required log data and retention periods to ensure compliance; mandate access controls to protect sensitive information; require regular log reviews to detect security incidents.", "explanation": "The System Logging clause establishes requirements for recording and maintaining logs of system activities and events. Typically, it mandates that the system automatically capture details such as user access, changes to data, and security incidents, and may specify retention periods or access controls for these logs. This clause is essential for ensuring accountability, supporting audits, and enabling the detection and investigation of unauthorized or suspicious activities within the system."}, "json": true, "cursor": ""}}