Audit & Activity
Audit & Activity brings recorded actions into one read-only workspace view. It is a read model over authoritative domain records: opening the page never changes payroll, advances, leave, accounting or payments. There is no edit or delete action for audit records.
Filters and pages
Section titled “Filters and pages”Open Audit & Activity from the navigation or mobile More menu. The default window is the last 90 days, with the newest event first. Times are UTC.
Use date from/to, domain, action, actor ID, subject type/ID or search, then Apply filters. Search matches safe action/domain strings, current actor names or subject UUIDs. Copy the actor or subject UUID from event detail for an exact match. IDs from another workspace never reveal activity there.
The maximum date window is 366 days and search allows 100 characters. Pages contain 25 events; Next page and Previous page preserve the filters. Reset filters restores defaults. Refresh activity starts a fresh feed. If a large query reaches the 50,000-source-row ceiling, narrow dates or domain.
Event detail and related areas
Section titled “Event detail and related areas”Select an activity summary to open detail below the feed. Detail shows UTC timestamp, actor, domain/action, subject, safe metadata and source reference. Use Close detail to return to the feed. A related link either opens the subject (payment instruction/batch) or its authorized area; it does not claim to select an employee/run when that area has no subject deep link.
Actor names reflect current account names because the existing sources do not snapshot them. Actor not recorded means the authoritative source stored no actor; it does not identify the action as automatic.
Roles and privacy
Section titled “Roles and privacy”Administrators see all covered domains, including access administration. Payroll Operators see imports and operational domains. Approvers see operational domains but not employee import or access administration records. Reporters see non-monetary leave and their permitted report export activity. Payment Reviewers see payment/reconciliation and payment report exports. Audit exports themselves are visible to their creator and Administrators.
Every role’s audit view omits monetary values, composition, payment destinations, free-text reasons, source rows, filenames, secrets and raw accounting payloads. Permissions are enforced by the server for feed, detail and export. Switching workspaces clears the prior feed and detail.
Export
Section titled “Export”Export CSV downloads all matching events, up to 5,000 rows, independently of the current page. It applies the same role/workspace privacy policy and uses the existing report spreadsheet sanitizer. A larger result is refused; narrow the filters and retry. A successful file creates an immutable export audit record. The file is not retained by payIQ. XLSX audit export is not offered.
Missing events and troubleshooting
Section titled “Missing events and troubleshooting”No events can mean the date window is empty or your role cannot view that domain. Reset filters, check the active workspace, then widen dates within the limit. An invalid/expired cursor requires a refresh or reset; cursors last 24 hours.
This view cannot recover events that were never recorded. Employee edits, compensation actors, full calculation/recalculation history, draft payroll creation, attendance edits, settings changes, handoff transmission actors and failed exports lack sufficient persistent history. Creation and last calculation appear only once a payroll run is finalized. Leave balance events are separate from request decisions. Current balances/status are not treated as new events.
A missing source or a role/workspace change can make a detail unavailable; the page shows a safe error. Export failures produce no success record. Retry after correcting filters or restoring access.