Skip to content
  • There are no suggestions because the search field is empty.

Audit Engine: Step-by-step guide

How to Set Up the HubSpot Audit Engine

Generate a professional HubSpot portal audit report to share with your clients during a Pitstop review.

Navigation: Supered Card > Audit Engine Tool

 

WHAT IT IS

  • The HubSpot Audit Engine is a tool that scans a client's HubSpot portal and generates a detailed audit report.
  • It connects to HubSpot using a private app service key, which gives it read-only access to the portal's data.
  • Once the audit runs, it produces both an Excel file and a PDF you can share directly with your client.
  • You access the tool through your Supered card, where you'll also find the access code needed to log in.

 

HOW TO SET UP AND RUN THE AUDIT

Part 1: Access the Tool

1. Open your Supered card - locate the Audit Engine link and the access code on the card

2. Navigate to the Audit Engine site - use the link provided on the Supered card

3. Enter the access code - type in the code from your Supered card and continue


Part 2: Create a HubSpot Private App Service Key

4. Log in to the client's HubSpot portal - you need admin access to create a private app

5. Click the settings gear icon - this opens the HubSpot Settings panel

6. In the left sidebar, scroll down to Integrations - then click on Private Apps

7. Click 'Create a private app' - this starts the service key setup

8. Name the app after the client's company name - for example: Acme Corp

9. Go to the Scopes tab - this is where you grant the tool permission to read portal data

10. Search for 'read' - this filters the available scopes to only read permissions

11. Add the following scopes - check each of these in the scopes list:

  • crm.objects.contacts.read
  • crm.objects.companies.read
  • crm.objects.deals.read
  • crm.objects.tickets.read
  • crm.objects.leads.read
  • crm.objects.calls.read
  • crm.objects.meetings.read
  • crm.objects.tasks.read
  • crm.objects.goals.read
  • crm.objects.forecasts.read
  • crm.schemas.contacts.read
  • crm.schemas.companies.read
  • crm.schemas.deals.read
  • crm.schemas.tickets.read
  • crm.lists.read
  • automation
  • account-info.security.read
  • settings.users.read
  • content
  • forms
  • marketing.campaigns.read
  • scheduler.read

12. Click 'Create app' - HubSpot will generate the service key token

13. Click 'Copy' next to the token - save this token - you'll paste it into the audit tool in the next step


Part 3: Run the Audit

14. Go back to the Audit Engine site - the tab should still be open from Step 2

15. Type the client's company name - for example: Acme Corp

16. Paste the service key token - click into the token field and paste the key you copied from HubSpot

17. Click 'Start Your Engines' - the tool will begin scanning the HubSpot portal

18. Wait for the audit to complete - the tool will generate both an Excel file and a PDF when done

19. Download the Excel and PDF files - these are your deliverables to share with the client


 

KEY OUTPUT TYPES

▸ Excel File - A structured spreadsheet version of the audit data, useful for deeper analysis or sharing internally.

▸ PDF Report - A formatted, client-ready version of the audit findings - ideal for sharing in a Pitstop review.


 

WHEN TO USE IT

  • Running a Pitstop review with a client and need a snapshot of their portal health.
  • Onboarding a new client and want to document the current state of their HubSpot setup before making changes.
  • A client asks what's in their portal and you need a structured answer fast.
  • Preparing a roadmap or recommendations and need data to back up your suggestions.

 

💡 Pro Tip

  • Check the Audit Engine scopes list inside the tool before creating your private app - it shows exactly which read permissions are required so you don't miss any.
  • Name the private app after the client's company so it's easy to identify later in their HubSpot integrations list.
  • You only need to create the service key once per portal - once it's set up, you can re-run audits anytime without going back through the HubSpot settings.

 

⚠️ Heads Up

  • Only add read scopes - never add write permissions to the audit app. This keeps the tool safe and prevents accidental changes to client data.
  • Copy the service key token immediately after creating the app. HubSpot only shows it once, and if you navigate away, you'll need to rotate the token to get a new one.
  • If you have questions or run into issues, tag Vanessa or Matt in Slack rather than troubleshooting on your own.

 

📋 Real-World Example

You're preparing for a Pitstop review with a client named Acme Corp and want to walk them through the health of their HubSpot portal.

  • Open the Audit Engine from your Supered card and enter the access code.
  • The access code is on the card - no need to memorize it.
  • Log in to Acme Corp's HubSpot portal, go to Settings > Integrations > Private Apps, and create a new app named 'Acme Corp'.
  • Add all required read scopes (contacts, companies, deals, tickets, schemas, lists), then click Create and copy the token.
  • Back in the Audit Engine, type 'Acme Corp', paste the token, and click Start Your Engines.
  • Download the PDF when it's ready and open it in your Pitstop review call.

Result: You walk into the client meeting with a polished, data-backed audit report - no manual digging required.