Summarize Access Observer logs agentic workflow
Use the summarize Access Observer logs agentic workflow to review and summarize access logs for a specific field, identifying access sources, users, and their roles.
Summarize Access Observer logs agentic workflow overview
Generate a summary of the user, role, and caller types that attempted to access a table column configured in Access Observer. For example, ask the agentic workflow to summarize access logs to view users who accessed a field, along with their roles and how they accessed the data.
When you install Now Assist for Vault, this agentic workflow is turned on by default.
To modify the agentic workflow, duplicate it, and adjust the settings according to your requirements.
Summarize Access Observer logs
Generate a summary of all Access Observer logs. The workflow requires that you have the following roles and elevate to them:
- sn_vault_console.vault_console_admin
- security_admin
To access and configure the agentic workflow:
- Navigate to All > AI Agent Studio > Create and manage.
- Select Summarize Access Observer logs.
Note: The summarize Access Observer logs agentic workflow is triggered automatically when you secure custom applications using ServiceNow Vault console dashboard. You can also invoke the agentic workflow manually in the Now Assist panel.
AI agents used in the summarize Access Observer logs agentic workflow
| Name | Description |
|---|---|
| Access Observer log analyzer agent | Uses various tools to generate a summary of the user, role, and caller types that attempted to access a table column configured in Access Observer. |
There might be AI agents installed with the Now Assist application that are not used in agentic workflows. To learn how to see all agents that are available to you, see Find AI agents.
Parent Topic:Use agentic AI in Now Assist for Vault