Theme
Activity
Activity is the append only record of everything that happened on your account: you, your team, Syncplify support, and the platform itself.
Every member of your team can read it, whatever their role. That is deliberate: a log only one person can see is not much of a check on anybody.
What it records
| Kind | Examples |
|---|---|
| Sign in security | An authenticator enrolled or reset, a passkey added or removed, a password changed |
| Team | Invitations sent and revoked, members joining, role changes, members removed |
| Site configuration | Configuration changes, custom domains added, verified and removed |
| Transfer users | Users created, updated, enabled, disabled, removed, second factors reset, folders removed when their storage was disconnected |
| Storage enrollment | Enrollment codes created, revoked and redeemed |
| Storage connectors | Connectors disconnected |
| Plan and billing | Checkouts started, plan upgrades, scheduled changes, expansions, cancellations, credits granted, trials extended |
| Platform lifecycle | Restrictions, suspensions, reclamations and closures for nonpayment |
| Support access | Grants created, approved, revoked and expired, and every action taken under one |
| Support tickets | Tickets you opened |
What it does not record
File operations. Who downloaded which file is not here, and never travels to SFTP.cloud at all. That record lives on your Connector, on your own hardware. See Connector activity.
Reading an entry
Each entry names four things:
- When it happened.
- Who did it: a member of your team, a Syncplify operator, Syncplify support acting under your grant, or the platform itself.
- What they did.
- What they did it to.
An entry marked support access carries the id of the grant it happened under. Cross reference it with Getting help to see which grant that was and when you issued it.
Filtering
Filter by site, by kind, and by date range. Older pages load on demand with Load older activity.
What to look for
Three patterns are worth a second look:
- A sign in security change you do not recognize. An authenticator reset or a passkey added on an account whose owner did not do it.
- Support activity you did not expect. Support can only act under a grant you or a colleague issued. An entry marked support access with no grant you remember means asking a colleague.
- An enrollment code you did not mint. A code is a bearer credential; whoever holds it can attach a Connector to your site.
Retention
Entries are kept. They are not deleted on a schedule, and they outlive your account.
Every entry is also written into a signed chain that is witnessed outside this platform, and that pair proves something only for as long as both halves agree. Removing entries from one of them is the exact pattern the chain exists to expose, so we do not remove them.
If you ask us to erase your data when you close your account, the entries stay and the identities go: what is left refers to internal identifiers that no longer resolve to a person.
For a record you keep yourself, and that nobody including Syncplify can revise afterwards, see Tamper evidence.