Skip to main content
Many logs in Auth0 tenant logs can contain personally identifiable information (PII). Authentication events trigger log entries that can include users’ PII. And if you use the Auth0 or the Dashboard to add users, Auth0 logs the user account details. These fields in log entries can contain PII:
  • Name
  • Phone number (used for )
  • Email address
  • IP address (which can reveal location)
  • Any custom user information you define
Tenant logs exclude core authentication secrets, like OTP codes, OTP seeds, biometric data, and private keys. At no point does Auth0 log from Auth0 or any . When authorization code exchanges occur, the logs show only a partial code (for example: code: 31XXXXX).

Learn more