> ## Documentation Index
> Fetch the complete documentation index at: https://docs.hq.zone/llms.txt
> Use this file to discover all available pages before exploring further.

# Verify audit chain

> Re-walks the workspace's tamper-evident audit hash chain and reports whether it is
intact. Admin only. Checks the most recent entries (the limit query parameter
defaults to 10000 and is clamped to 1-100000), recomputing each entry's hash and
verifying it links to its predecessor. Returns whether the chain is ok, how many
entries were checked, the first and last sequence numbers covered, and, if broken,
the sequence number where it first fails and whether the break is a content or
linkage mismatch.



## OpenAPI

````yaml GET /v1/admin/audit/verify
openapi: 3.1.0
info:
  title: HQ API
  description: >-
    Public HTTP API for HQ. Authenticate with a Personal Access Token
    (`Authorization: Bearer hq_pat_...`) for server-side integrations, or an
    OAuth 2.1 authorization-code + PKCE flow for browser apps acting on a user's
    behalf. Both grant from the same resource:action scope vocabulary; an
    endpoint's required scope is listed under its `security`.
  license:
    name: Apache-2.0
    identifier: Apache-2.0
  version: 1.0.0
servers:
  - url: https://api.hq.zone
    description: HQ API (production)
security: []
tags:
  - name: me
    description: The signed-in user's own account
  - name: conversations
    description: Conversations and their messages
  - name: documents
    description: The content-addressed documents library
  - name: schedules
    description: Scheduled prompts and recurring tasks
  - name: agents
    description: Agents, their skills and integrations
  - name: memory
    description: What the assistant remembers (L5 governance)
  - name: tokens
    description: Personal Access Token management
  - name: billing
    description: Usage and billing
  - name: notifications
    description: In-app notification center
  - name: admin
    description: Workspace administration
  - name: integrations
    description: Workspace integrations (Slack, MCP, skills)
  - name: onboarding
    description: New-workspace onboarding wizard
  - name: auth
    description: Sign-in, sessions, and OAuth
paths:
  /v1/admin/audit/verify:
    get:
      tags:
        - admin
      summary: Verify audit chain
      description: >-
        Re-walks the workspace's tamper-evident audit hash chain and reports
        whether it is

        intact. Admin only. Checks the most recent entries (the limit query
        parameter

        defaults to 10000 and is clamped to 1-100000), recomputing each entry's
        hash and

        verifying it links to its predecessor. Returns whether the chain is ok,
        how many

        entries were checked, the first and last sequence numbers covered, and,
        if broken,

        the sequence number where it first fails and whether the break is a
        content or

        linkage mismatch.
      operationId: verify_audit
      parameters:
        - name: limit
          in: query
          description: |-
            Verify the most recent `limit` entries by `seq` (default 10000, max
            100000). The chain is walked in ascending `seq` order; the entry at
            `min_seq - 1` is fetched as the linkage anchor.
          required: false
          schema:
            type:
              - integer
              - 'null'
            format: int64
      responses:
        '200':
          description: Chain verification result
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/VerifyResp'
        '403':
          description: Admin role required
      security:
        - bearer_pat:
            - admin
        - oauth2:
            - admin
components:
  schemas:
    VerifyResp:
      type: object
      required:
        - ok
        - checked
      properties:
        broken_at_seq:
          type:
            - integer
            - 'null'
          format: int64
          description: The `seq` where the chain first breaks (None when `ok`).
        broken_reason:
          type:
            - string
            - 'null'
          description: |-
            `"content"` (entry hash doesn't recompute) or `"linkage"` (prev_hash
            doesn't match the predecessor's entry hash).
        checked:
          type: integer
          format: int64
          description: How many entries were walked.
        first_seq:
          type:
            - integer
            - 'null'
          format: int64
        last_seq:
          type:
            - integer
            - 'null'
          format: int64
        ok:
          type: boolean
          description: >-
            True iff every checked entry's hash recomputes AND links to its

            predecessor. A single edited/inserted/removed/reordered row flips
            this.
  securitySchemes:
    bearer_pat:
      type: http
      scheme: bearer
      bearerFormat: hq_pat
      description: 'Personal Access Token. Send as `Authorization: Bearer hq_pat_...`.'
    oauth2:
      type: oauth2
      flows:
        authorizationCode:
          authorizationUrl: https://app.hq.zone/v1/oauth/authorize
          tokenUrl: https://api.hq.zone/v1/oauth/token
          refreshUrl: https://api.hq.zone/v1/oauth/token
          scopes:
            admin: Administer the workspace (users, settings, integrations)
            agents:read: View the agents in your workspace
            agents:write: Create and configure agents
            billing:read: View usage and billing information
            conversations:read: Read your conversations and their messages
            conversations:write: Start conversations and send messages on your behalf
            documents:read: Read your documents library
            documents:write: Upload and manage documents in your library
            memory:read: Read what the assistant remembers about you
            memory:write: Correct or delete what the assistant remembers
            schedules:read: View your scheduled tasks
            schedules:write: Create and manage scheduled tasks
            tables:read: Read your tables and their rows
            tables:write: Create tables and add, edit, or delete rows

````