Account Audit Log

Skip to end of metadata
Go to start of metadata

 

Description

The Account Audit Log is a tool that allows site administrators, customer service representatives, security officers, legal counsel, etc., with the appropriate permissions, to easily view actions performed on end-users accounts using the end-user's UID in a user friendly and non-technical manner. This will display any audited changes, whether made by the user or an API (admin) that affects the user's account.

The Account Audit Log is a sub-set of the more powerful Audit Log, so only APIs that are tracked in the Audit Log are available within the Account Audit Log.

Actions that are audited include the following:

  • accounts.addConnection
  • accounts.deleteAccount
  • accounts.linkAccounts
  • accounts.login
  • accounts.logout
  • accounts.notifyLogin
  • accounts.register
  • accounts.removeConnection
  • accounts.resetPassword
  • accounts.setAccountInfo (changes to data, profile, subscriptions, and/or preferences objects or when a password is changed/updated)
  • accounts.setPassword
  • accounts.socialLogin
  • socialize.addConnection
  • socialize.deleteAccount
  • socialize.login
  • socialize.logout
  • socialize.removeConnection
  • socialize.setUID
  • All other audited APIs that return a UID (APIs not listed above are not uniquely identifiable and fall under the category "Audited Event", see below for more information)

Audited events are stored for one year from the date they occurred.

  

Using the Account Audit Log

You can locate the Account Audit Log under the Admin tab of your Gigya Console.

 

Simply enter a user's UID into the field and press the magnifying glass icon to begin your search.

The default results are for the last 30 days, however, you can customize the time period to the maximum available.

You can find a user's UID by looking them up by name or email address using the Identity Query Tool, the Identity Access section of the Gigya Console or various REST APIs.

Learn more about Identity Access | Learn more about the Identity Query Tool

 

If the UID exists under the currently selected API key, you will see results similar to the following.

 

If there are no results for the API key, or the UID does not exist for the current site, you will receive a notice.

 

 

Filtering Results

You can filter the results by selecting one or more of the available Filters.

 

The available filtering options are:

  • Date Range (above the filters)
  • Account Created/Deleted
  • Login
  • Logout
  • Password Change
  • Data Update
  • Social Activity

By selecting any of the available filters you will see only the relevant results.

 

Once you have the results you need, you can see more details by opening the event panel of the specific event.

 

Getting Additional Data

If you need detailed information about the event you can copy the Call ID from the event details pane and use it within a full Audit Log query to get the event's complete details.

An example query:

callID = "eaf2000f405444efaddd2fc2ccff84f7"

 

The Audited Event Category

When an audited event occurs that does not specifically fall into one of the currently defined categories, for instance, accounts.notifyLogin., it will be logged as Audited event.

 

Event Errors

Occasionally an API call may fail for whatever reason. In cases where this happens, you will see a record of the event in red, and a description of the error that occured.

 

You can open the Event's details panel for additional information.

 

Additional Information

audit.search

accounts.search

Identity Access

 

 

 

 

 

  • No labels