## GET /api/v2/domains/{id}/dns/audit

**List domain DNS audit events**

Return DNS-specific change events for one owned domain. This endpoint is optimized for support and AI triage: it exposes who/what changed DNS records or nameservers, the before/after rrset values, and a human-readable summary. It does not require clients to parse the generic audit-log endpoint.

### Related Endpoints

- `GET /api/v2/domains/{id}/dns`: Get domain DNS records
- `GET /api/v2/domains/{id}/dns/history`: List filtered DNS history
- `GET /api/v2/domains/{id}/dns/snapshots`: List domain DNS snapshots

### Headers

- `Accept`: application/json
- `Authorization`: Bearer YOUR_API_KEY
- Required API scopes: `read:dns`, `read:domains`

### Parameters

- `id` (path, string, required): Public domain ID from `GET /api/v2/domains`. Do not invent this value; use the exact ID returned by the referenced API response. Example: `dom_01hxa3b4c5d6e7f8g9h0j1k2m3`
- `limit` (query, integer): Page size from 1 to 100.
- `cursor` (query, string): Cursor returned by the previous page.

### Request Example

```bash
curl -X GET "https://cloud.hostup.se/api/v2/domains/dom_01hxa3b4c5d6e7f8g9h0j1k2m3/dns/audit" \
  -H "Authorization: Bearer YOUR_API_KEY" \
  -H "Accept: application/json"
```

### Response Schema

- `data` (array<object>, required)
- `data[].eventId` (string, required)
- `data[].domainId` (string,null, required)
- `data[].domain` (string, required)
- `data[].actorType` (string, required)
  Allowed values: customer, staff, system, api, smartcopy
- `data[].actorId` (string,null, required)
- `data[].requestId` (string,null, required)
- `data[].orderId` (string,null, required)
- `data[].ticketId` (string,null, required)
- `data[].createdAt` (string, required)
- `data[].changeType` (string, required)
  Allowed values: create, update, delete, import, replace_zone, nameserver_change
- `data[].sourceFlow` (string, required)
- `data[].summary` (string, required)
- `data[].beforeRrset` (null, required)
- `data[].afterRrset` (null, required)
- `data[].beforeNameservers` (array,null, required)
- `data[].afterNameservers` (array,null, required)
- `hasMore` (boolean, required)
- `nextCursor` (string,null, required)

### Responses

#### 200 - Paginated DNS audit events.
```json
{
  "data": [
    {
      "eventId": "dnsevt_01hxa3b4c5d6e7f8g9h0j1k2m3",
      "domainId": "dom_01hxa3b4c5d6e7f8g9h0j1k2m3",
      "domain": "example.com",
      "actorType": "customer",
      "actorId": "acct_01hxa3b4c5d6e7f8g9h0j1k2m5",
      "requestId": "8e5c98d2-46f9-4bc4-86c3-72a6f4c7fd0f",
      "orderId": null,
      "ticketId": null,
      "createdAt": "2026-05-19T09:55:00.000Z",
      "changeType": "update",
      "sourceFlow": "dns_record_update",
      "summary": "Changed A record @ -> 203.0.113.10 for example.com.",
      "beforeRrset": {
        "name": "@",
        "type": "A",
        "values": [
          "198.51.100.10"
        ],
        "ttl": 3600
      },
      "afterRrset": {
        "name": "@",
        "type": "A",
        "values": [
          "203.0.113.10"
        ],
        "ttl": 3600
      },
      "beforeNameservers": null,
      "afterNameservers": null
    }
  ],
  "hasMore": false,
  "nextCursor": null
}
```

#### 400 - Invalid request. The response body is an RFC 7807 Problem Details document.
```json
{
  "type": "https://developer.hostup.se/errors/invalid_request",
  "title": "Invalid request",
  "status": 400,
  "detail": "The request body failed validation.",
  "code": "invalid_request",
  "instance": "/api/v2/resource",
  "requestId": "req_01hxa3b4c5d6e7f8g9h0j1k2m3",
  "timestamp": "2026-04-27T12:34:56.000Z",
  "errors": [
    {
      "pointer": "/items/0/domainName",
      "detail": "`domainName` is required.",
      "code": "invalid_request"
    }
  ]
}
```

#### 401 - Unauthorized. Authentication is required.
```json
{
  "type": "https://developer.hostup.se/errors/unauthorized",
  "title": "Unauthorized",
  "status": 401,
  "detail": "Authentication is required.",
  "code": "unauthorized",
  "instance": "/api/v2/resource",
  "requestId": "req_01hxa3b4c5d6e7f8g9h0j1k2m3",
  "timestamp": "2026-04-27T12:34:56.000Z"
}
```

#### 403 - Forbidden. The caller lacks a required scope or does not own the resource.
```json
{
  "type": "https://developer.hostup.se/errors/forbidden",
  "title": "Forbidden",
  "status": 403,
  "detail": "The caller lacks a required scope or does not own the resource.",
  "code": "forbidden",
  "instance": "/api/v2/resource",
  "requestId": "req_01hxa3b4c5d6e7f8g9h0j1k2m3",
  "timestamp": "2026-04-27T12:34:56.000Z"
}
```

#### 404 - Not found. The resource does not exist or is not owned by the caller.
```json
{
  "type": "https://developer.hostup.se/errors/not_found",
  "title": "Not found",
  "status": 404,
  "detail": "The requested resource could not be found.",
  "code": "not_found",
  "instance": "/api/v2/resource",
  "requestId": "req_01hxa3b4c5d6e7f8g9h0j1k2m3",
  "timestamp": "2026-04-27T12:34:56.000Z"
}
```

#### 429 - Rate limited. Retry after the limit resets. 429 responses include `Retry-After` seconds plus `X-RateLimit-*` headers.
```json
{
  "type": "https://developer.hostup.se/errors/rate_limit_exceeded",
  "title": "Too many requests",
  "status": 429,
  "detail": "Too many requests. Retry after the limit resets.",
  "code": "rate_limit_exceeded",
  "instance": "/api/v2/resource",
  "requestId": "req_01hxa3b4c5d6e7f8g9h0j1k2m3",
  "timestamp": "2026-04-27T12:34:56.000Z"
}
```

#### 500 - Internal error. Retry later or contact support if the issue persists.
```json
{
  "type": "https://developer.hostup.se/errors/internal_error",
  "title": "Internal server error",
  "status": 500,
  "detail": "An unexpected error occurred. Retry later or contact support if the issue persists.",
  "code": "internal_error",
  "instance": "/api/v2/resource",
  "requestId": "req_01hxa3b4c5d6e7f8g9h0j1k2m3",
  "timestamp": "2026-04-27T12:34:56.000Z"
}
```
