# The other columns

## When

Request time. The feed is newest-first.

## Developer

Who sent it, and which tool. A dash with a tooltip means the request arrived with a device
token issued before attribution was in place — the developer should reconnect the tool in
the Endpoint Suite, after which their name appears.

## Model

The model actually used, which is not always the one the developer thinks they selected.

## Mode

**Subscription** or **API key** — whose money paid. See [Connection modes](/books/policy-and-risk-detection/page/connection-modes).

## Outcome

**OK**, **Blocked**, or an upstream error passed through from the provider. Blocked rows
are tinted and carry a red rail down the left edge, so a scan of the screen finds them
without reading.

## Tokens and duration

Size and latency. Useful for spotting the agent loop that is quietly burning ten times
more tokens than anybody expected.

## Opening a row

Clicking a row opens its captured conversation — but only when there is one. That requires
**prompt capture** to have been on at the time. Without it, the row is the record.