This module is part of the Advanced Edition of ActivityTimeline.
Overview
The Security Log gives administrators a complete record of administrative changes made in ActivityTimeline. It tracks who did what and when across users, teams, settings, and synchronization, so you can answer questions like "who changed this holiday scheme?" or "when was this team's manager updated?" without having to dig through individual configuration screens.
Every entry records the timestamp, the person who made the change, the action performed, and the specific item affected — with a details view showing exactly what changed.
Accessing the Security Log
The Security Log is available to Admin users only.
-
Go to Configuration in the top navigation.
-
Select Security Log from the left-hand menu.
If you're not on Advanced Edition yet, you'll see the menu item with a small lock icon. Hovering over it shows an Unlock in Advanced prompt where you can view upgrade details.
What gets logged
The Security Log captures administrative and configuration-level actions across the following entity types:
|
Entity Type |
Examples of tracked changes |
|---|---|
|
User |
Changes to roles, skills, positions, holiday schemes, workload schemes, and other user profile details. |
|
Team |
Adding or removing team members, changing team managers, other team updates. |
|
Settings |
Changes to ActivityTimeline configuration — Jira Integration, Issue Appearance, Work hours in the day, Holiday Schemes, and other general settings. |
|
Event |
Changes to the configuration of ActivityTimeline custom event types — creating, updating, or deleting an event type and its settings (e.g., enabling/disabling it). |
|
Issue |
Logged only when a Jira issue or worklog is deleted from the Maintenance page in ActivityTimeline Configuration. This does not track the issue's own Jira field values (assignee, estimate, due date, status, etc.) — those live in Jira's own history. |
|
Sync |
Synchronization-related actions with Jira. |
|
Dashboard |
Changes related to dashboards. |
Each entry is also tagged with one of the following actions:
-
Created — a new item was added
-
Updated — an existing item was changed
-
Deleted — an item was removed
-
Exported — data was exported out of ActivityTimeline
-
Executed — an action or process was run
Reading the log
Each row in the Security Log shows:
-
Timestamp — when the change occurred (UTC)
-
Author — the user who made the change (or
systemfor automated actions) -
Action — Created, Updated, Deleted, Exported, or Executed
-
Entity Type — the category of item affected (User, Team, Settings, Event, Issue, Sync, Dashboard)
-
Entity — the specific item affected (e.g., a user's name, a team name, or a setting)
-
Details — click Show more to see the full before/after values for that change
Filtering and searching
Use the controls above the table to narrow down results:
-
Search — free-text search across log entries.
-
Date range — filter to a specific period (defaults to the last 7 days).
-
Author — filter by one or more users who made changes; supports multi-select and search within the list.
-
Action — filter by action type (Created, Updated, Deleted, Exported, Executed).
-
Entity Type — filter by the category of item changed (User, Team, Settings, Event, Issue, Sync, Dashboard).
Filters can be combined — for example, filter to a specific admin, a specific date range, and only Updated actions on User entities.
Exporting the log
Click Export CSV in the top-right corner of the Security Log to download the currently filtered results as a CSV file for offline review, auditing, or archiving.
Data retention
By default, Security Log entries are retained for 30 days. Entries older than the retention period are automatically removed.
Permissions
-
The Security Log is visible and accessible only to users with the Admin role.
-
Log entries cannot be edited or deleted manually, ensuring the log remains a reliable audit trail.