Audit Engine: Step-by-step guide
How to Set Up the HubSpot Audit Engine
Generate a professional HubSpot portal audit report to share with your clients during a Pitstop review.
Navigation: Supered Card > Audit Engine Tool
WHAT IT IS
- The HubSpot Audit Engine is a tool that scans a client's HubSpot portal and generates a detailed audit report.
- It connects to HubSpot using a private app service key, which gives it read-only access to the portal's data.
- Once the audit runs, it produces both an Excel file and a PDF you can share directly with your client.
- You access the tool through your Supered card, where you'll also find the access code needed to log in.
HOW TO SET UP AND RUN THE AUDIT
Part 1: Access the Tool
1. Open your Supered card - locate the Audit Engine link and the access code on the card
2. Navigate to the Audit Engine site - use the link provided on the Supered card
3. Enter the access code - type in the code from your Supered card and continue
Part 2: Create a HubSpot Private App Service Key
4. Log in to the client's HubSpot portal - you need admin access to create a private app
5. Click the settings gear icon - this opens the HubSpot Settings panel
6. In the left sidebar, scroll down to Integrations - then click on Private Apps
7. Click 'Create a private app' - this starts the service key setup
8. Name the app after the client's company name - for example: Acme Corp
9. Go to the Scopes tab - this is where you grant the tool permission to read portal data
10. Search for 'read' - this filters the available scopes to only read permissions
11. Add the following scopes - check each of these in the scopes list:
- crm.objects.contacts.read
- crm.objects.companies.read
- crm.objects.deals.read
- crm.objects.tickets.read
- crm.objects.leads.read
- crm.objects.calls.read
- crm.objects.meetings.read
- crm.objects.tasks.read
- crm.objects.goals.read
- crm.objects.forecasts.read
- crm.schemas.contacts.read
- crm.schemas.companies.read
- crm.schemas.deals.read
- crm.schemas.tickets.read
- crm.lists.read
- automation
- account-info.security.read
- settings.users.read
- content
- forms
- marketing.campaigns.read
- scheduler.read
12. Click 'Create app' - HubSpot will generate the service key token
13. Click 'Copy' next to the token - save this token - you'll paste it into the audit tool in the next step
Part 3: Run the Audit
14. Go back to the Audit Engine site - the tab should still be open from Step 2
15. Type the client's company name - for example: Acme Corp
16. Paste the service key token - click into the token field and paste the key you copied from HubSpot
17. Click 'Start Your Engines' - the tool will begin scanning the HubSpot portal
18. Wait for the audit to complete - the tool will generate both an Excel file and a PDF when done
19. Download the Excel and PDF files - these are your deliverables to share with the client
KEY OUTPUT TYPES
▸ Excel File - A structured spreadsheet version of the audit data, useful for deeper analysis or sharing internally.
▸ PDF Report - A formatted, client-ready version of the audit findings - ideal for sharing in a Pitstop review.
WHEN TO USE IT
- Running a Pitstop review with a client and need a snapshot of their portal health.
- Onboarding a new client and want to document the current state of their HubSpot setup before making changes.
- A client asks what's in their portal and you need a structured answer fast.
- Preparing a roadmap or recommendations and need data to back up your suggestions.
💡 Pro Tip
- Check the Audit Engine scopes list inside the tool before creating your private app - it shows exactly which read permissions are required so you don't miss any.
- Name the private app after the client's company so it's easy to identify later in their HubSpot integrations list.
- You only need to create the service key once per portal - once it's set up, you can re-run audits anytime without going back through the HubSpot settings.
⚠️ Heads Up
- Only add read scopes - never add write permissions to the audit app. This keeps the tool safe and prevents accidental changes to client data.
- Copy the service key token immediately after creating the app. HubSpot only shows it once, and if you navigate away, you'll need to rotate the token to get a new one.
- If you have questions or run into issues, tag Vanessa or Matt in Slack rather than troubleshooting on your own.
📋 Real-World Example
You're preparing for a Pitstop review with a client named Acme Corp and want to walk them through the health of their HubSpot portal.
- Open the Audit Engine from your Supered card and enter the access code.
- The access code is on the card - no need to memorize it.
- Log in to Acme Corp's HubSpot portal, go to Settings > Integrations > Private Apps, and create a new app named 'Acme Corp'.
- Add all required read scopes (contacts, companies, deals, tickets, schemas, lists), then click Create and copy the token.
- Back in the Audit Engine, type 'Acme Corp', paste the token, and click Start Your Engines.
- Download the PDF when it's ready and open it in your Pitstop review call.
Result: You walk into the client meeting with a polished, data-backed audit report - no manual digging required.