Test in this order:
-
Module health.
-
Controlled session observation.
-
Controlled project-change observation.
-
Privilege detection in Notify only mode.
-
Report/notification delivery to a non-production destination.
-
Retention/archive behavior with approved test data.
Diagnostics
Use the visible health and pruning status in Security Auditor > Configuration, the relevant report tab, and standard Gateway logs. For security reasons, do not include secrets, credentials, session data, exported personal data, or environment-specific addresses in support requests.
Logging
Gateway logs are the primary diagnostic source for module startup, monitoring, policy actions, delivery, and retention processing. Use the Gateway's normal log filtering/search tools and correlate entries with the time of the observed issue.