Activity logs

Restriction: This feature is inactive by default. Ask your Medallia expert to file a Feature activation request with Medallia Support.

Use the filters to identify and download relevant activity logs in CSV file format. The Activity Log combines Change Log and Security Log data into a single CSV export.

Layer 1 1 2 3

  1. Time and user filters

  2. Security event filters

  3. Change log event filters

Accessing activity logs

To access activity log tools, click the Security tile under the Administration Tools section, and select either Activity Logs, or Activity Log Exports.

Restriction: Activity logs are only available for roles with Do anything capabilities. For information, see Capabilities.

Administration tools

Time period and user filters

Use the Activity Log to view security events and change log activity.

Restriction: Multiple entity, security event, and user filters selection is restricted to to a maximum total limit of 5 selections per type: When you apply filters for Activity log exports, selection is restricted to 5 items maximum for the Users filter, 5 items maximum for the Entity Type filter, and 5 items maximum for the Security Event filter.

Use the filters below to sort entries:

  • Time Period — Filter results by the specified date and time range. Select one of the preconfigured time periods available on the dropdown list, or select Custom and use the date range boxes: use the calendars to find and click the beginning and end dates. Times are based on your browser's timezone.

    Restriction: By default, when you apply no filters the maximum export window is one week. Note that different types of data retention conditions apply depending on the log type. For reference, see the below table.

    FilterDate range
    No filters1 week
    Users filterUp to 6 months
    All filters appliedUp to 6 months
    Users filter not applied:
    • Include security events active.

    • No security event type selected (Include change logs not active, or Include change logs active with selected entity type).

    1 week
    Users filter not applied:
    • Include change logs active.

    • No entity type selected (Include security events not active, or Include security events active with selected security event type).

    1 week
    Users filter not applied:
    • Include security events and Include change logs active.

    • Neither security event type nor entity type selected.

    1 week
  • Users — Select one or more users to view their associated security and change log events.

Security event filters

To fetch security events, select Include Security Events, and select one or more security event types to view specific authentication, access, role, permission, and system administration activities.

Tip: You can retrieve security events from up to 6 months prior to the current date.

Security event filters showing available event types

To select filter attributes , click Add icon. Add on the corresponding filter and select an attribute from the list, or click Search icon. Search to find the desired one.

The available security events are:

  • Bifrost

    • Grant manager

    • Grant user

    • Revoke manager

    • Revoke user

    • Update role

  • Command Center

    • Action

    • Command

    • Grant permission to role

    • Grant role to user

    • Revoke role to user

  • System Connections

    • create

    • Delete

    • List

    • Read

    • Update

  • User

    • Login

    • Logout

    • Switch back

  • Tenant key change

Change log event filters

To fetch configuration activity, select Include Change Logs, and select one or more change-log event types to filter events by action performed.

Change log filters showing available event types and entity types

To select filter attributes , click Add icon. Add on the corresponding filter and select an attribute from the list, or click Search icon. Search to find the desired one.

Available event types are:

  • Create

  • Update

  • Delete

Optionally, select one or more entities to view changes made to specific asset and configuration categories, such as:

  • Account

  • Action plans

  • Ad hoc

  • Alerts

  • Alternative groups

  • Analytics reports

  • Anonymous surveys

  • Ask Now

  • Athena Studio

  • Athena Themes

  • Attribute rating

  • Rules

    • Auto-exclude rules

    • Auto opt-out rules

  • Availability window configurations

Activity log exports

Once you have selected the necessary filters, click Download CSV.

Restriction: Each export type enforces its own configurable row limit set by default to 1 million rows. When the total number of rows exceeds this limit, Medallia Experience Cloud injects a truncation metadata warning line into the export file (e.g., "This export was truncated to the first 1 million rows per log type. Narrow your filters to retrieve the full result set". Change log and security events can have different limit configuration values.

When a download is triggered, a new tracking window displays the progress in real-time, allowing navigation away from the page without interrupting the process.

Image showing "Export in progress" message

You can track the download process in the Exports queue section.

Exports queue showing an activity log file being downloaded

Once the download process is complete, the files are securely stored and accessible at any time within the Exports section.

Exports Queue showing a file ready for download

On the Exports Queue, select the file and click Download.

Tip: Only the user who initiated the export can see and download the file.

Open the downloaded file in a spreadsheet editor.

Spreadsheet with downloaded data

Exported file

The downloaded file is in RFC-4180-compliant CSV file format. Each row in the spreadsheet represents a log event. Key columns are:

  • Timestamp (in ISO-8601 format: YYYY-MM-DDTHH:mm:ss.SSSZ)

  • Event type

  • Event sub-type

  • User name

  • Extra details (in JSON format)