Skip to support content

Flare Support

Get your audit source connected.

Get help with GCP, AWS, Workspace or GitHub audit connections, source availability and analysis results.

Source availability

Know what each source covers.

All connectors use read-only access. Flare analyzes audit activity on demand, then retains findings and selected supporting event excerpts rather than complete raw log files. The GitHub App report uses deterministic rules, does not send audit events to an AI provider, and does not save its findings or raw events.

W
Available now

Google Workspace · Early access

Login, admin and OAuth-token activities

Access
Read-only administrator OAuth
Coverage
One verified customer; excludes message and file contents
Analysis
Manual analysis; check account availability in Connectors
GH
Early access

GitHub Enterprise Cloud

Organization web audit events

Access
GitHub App organization Administration read; organization-owner verification
Coverage
Excludes Git operations, repository contents and Enterprise Server
Analysis
On-demand deterministic reports; completed windows up to 24 hours, three pages or 300 events; no saved reports
G
Available now

Google Cloud Platform

Cloud Audit Logs

Access
Read-only OAuth
Coverage
Admin Activity and System Event logs; optional Data Access with additional access
Analysis
Live analysis or JSON, NDJSON, and CSV upload
A
Available now

Amazon Web Services

CloudTrail event history

Access
Read-only IAM role with ExternalId
Coverage
Recent regional management events through LookupEvents
Analysis
Live analysis of up to 200 events or file upload

Help Center

Start with the exact problem.

Use a focused guide for setup or investigation. If the steps do not resolve the issue, send support the exact error message and connector scope.

Credential safety

No long-lived AWS access keys.

AWS connections use a customer-created IAM role, an ExternalId, and short-lived role credentials. GCP access can be revoked from Flare or your Google Cloud account at any time.