What I found most valuable in AWS CloudTrail is that it provides a good context of what's happening in the environment, so it's an excellent way to baseline what's occurring.
I also like that AWS CloudTrail helps with audits.
AWS CloudTrail is an excellent central logging platform for cloud events, providing valuable context for auditing and monitoring the AWS environment. Its integration with AWS Config enhances auditing capabilities, while users appreciate tracking API calls and employee activities. Although it lacks features like direct queries without Athena, multiple filtering, and capturing non-API calls, it remains stable and scalable. Users note the need for more controls to reduce unnecessary data and costs.