Change Intelligence is Coming.

What is 
Audit Evidence
?

Definition

Where an audit trail is primarily the log of what happened, audit evidence is the fuller package an auditor actually needs: the change itself, the approval behind it, the policy checks it passed or failed, and enough context to confirm the process was followed, not just that something occurred. A log entry showing a change ran is a start; evidence showing that change was reviewed, approved, and compliant with policy is what actually satisfies an audit. Assembling this after the fact, across every change made over a review period, is typically the most time-consuming part of preparing for an audit, especially when the underlying records are scattered across multiple tools.

Why audit evidence matters

An auditor doesn't just want to know that a change happened; they want proof that it happened through an approved process. That distinction is why a raw log isn't usually sufficient on its own. That gap between a log and real evidence is exactly what turns a routine audit into a multi-week project instead of a same-day request. Organizations facing frequent audits, particularly in regulated industries, often spend significant time each cycle reconstructing this proof from tickets, approval emails, and deployment logs that were never designed to be pulled together this way.

What counts as audit evidence

Solid audit evidence for a database change typically includes the change itself, who proposed it, who approved it and when, which policies it was checked against and the result, where and when it was deployed, and whether it succeeded or was rolled back. The strongest evidence is generated automatically as part of the process, since anything assembled manually afterward is more prone to gaps, and harder to defend if an auditor asks how the evidence was compiled. The absence of any one of these pieces, an approval with no record of who gave it, or a policy check with no logged result, tends to be exactly what an auditor flags first.

How Liquibase helps

Liquibase Change Intelligence is built to centralize audit evidence automatically: what changed, who approved it, where it ran, and what happened, captured as changes are deployed rather than reconstructed later. That evidence spans every database platform Liquibase Secure governs, which matters for organizations managing several database types, since it replaces stitching together evidence from multiple disconnected logging systems with one consistent record, and because it's captured continuously rather than assembled before a scheduled review, teams are never caught needing evidence for a change nobody thought to document at the time.