Testmo's audit log records important changes and security-related actions across your account, such as user sign-ins, configuration changes, project updates, and integration activity.
This page lists all currently available audit events and how they are grouped in the UI.
How audit events are named
Audit events follow a consistent pattern:
<Category>: <Action>
Examples:
- Auth: Login failed (security-related sign-in activity)
- Project: Updated (a project was changed)
- Configuration: API access updated (an account-level setting was changed)
Where these events appear
You'll see these event names in Auditing (Admin > Auditing) along with additional context (such as the user, timestamp, affected object, and details of the change). Filtering by category/action is the fastest way to find a specific activity.
Available audit events
AI features
- AI features: AI service is down — AI service health check was not successful, and the service status changed to down.
- AI features: AI service is up — AI service health check was successful, and service status changed to up.
- AI features: Disabled — AI features were disabled on the Admin > AI Settings page
- AI features: Enabled — AI features were enabled on the Admin > AI Settings page
- AI features: Generate endpoint triggered — the AI generation API endpoint was called
- AI features: Suggestion endpoint triggered — the AI suggestion API endpoint was called
- AI features: Suggestion test case generated — an AI-suggested test case was generated
- AI features: Test cases created —
- AI features: Test cases generated —
- AI features: Workflow completed — an AI generation workflow finished running
Attachment
- Attachment: Avatar created — A new avatar attachment was added for a user profile icon
- Attachment: Created — A new attachment was added to Testmo.
Auditing
- Auditing: Disabled — Auditing disabled in Admin > Auditing
- Auditing: Enabled — Auditing enabled in Admin > Auditing
- Auditing: Log cleared — Logs were manually cleared using the Clear audio log button
- Auditing: Log purged — Audit logs older than 90 days were automatically purged.
Auth
- Auth: Login — Login using email and password
- Auth: Login (2FA) — Login with 2FA
- Auth: Login (2FA) failed — User entered an invalid 2FA code
- Auth: Login failed — User entered an invalid password
- Auth: Login method created — An external (SAML) login method was created
- Auth: Login method deleted — An external (SAML) login method was deleted
- Auth: Login method disabled — An external (SAML) login method was disabled
- Auth: Login method enabled — An external (SAML) login method was enabled
- Auth: Login method updated — An external (SAML) login method was updated
- Auth: Login options updated — The Internal Login options in Admin > Authentication were updated.
- Auth: Login password policy updated — The Password policy was updated
- Auth: Login rules updated — The Login rules were updated
- Auth: Login throttled — Login was rate-limited after too many failed attempts.
- Auth: Logout — User logged out using the Log out button
Automation job
- Automation job: Completed — An automation job was completed
- Automation job: Created — An automation job was created
- Automation job: Deleted — An automation job was deleted
Automation run
- Automation run: Completed — An Automaton run was marked as completed
- Automation run: Created — An Automation run was created
- Automation run: Deleted — An Automation run was deleted
- Automation run: Link created — A link was added to an automation run
- Automation run: Link deleted — A link was deleted from an automation run
- Automation run: Link updated — A link was updated in an automation run
- Automation run: Thread completed — A thread was completed in an automation run
- Automation run: Thread created — A thread was created in an automation run
- Automation run: Thread updated — A thread was updated in an automation run
- Automation run: Updated — An Automation run was updated
Automation source
- Automation source: Created — An automation source was created
- Automation source: Deleted — An automation source was deleted
- Automation source: Reopened — An automation source was reopened
- Automation source: Retired — An automation source was retired
- Automation source: Updated — An automation source was updated
Automation target
- Automation target: Created — An automation job target was created
- Automation target: Deleted — An automation job target was deleted
- Automation target: Disabled — An automation job target was disabled
- Automation target: Enabled — An automation job target was enabled
- Automation target: Updated — An automation job target was updated
Configuration
- Configuration: Created — A configuration was created
- Configuration: Deleted — A configuration was deleted
- Configuration: Disabled — A configuration was disabled
- Configuration: Enabled — A configuration was enabled
- Configuration: Updated — A configuration was updated
Field
- Field: Created — A custom field was created.
- Field: Deleted — A custom field was deleted.
- Field: Disabled — A custom field was disabled.
- Field: Enabled — A custom field was enabled.
- Field: Updated — A custom field was updated.
GitHub
- GitHub: Connection created — A GitHub integration connection was created
- GitHub: Connection deleted — A GitHub integration connection was deleted
- GitHub: Connection disabled — A GitHub integration connection was disabled.
- GitHub: Connection enabled — A GitHub integration connection was enabled.
- GitHub: Connection updated — A GitHub integration connection was updated (e.g., auth/settings).
GitLab
- GitLab: Connection created — A GitLab integration connection was created.
- GitLab: Connection deleted — A GitLab integration connection was deleted.
- GitLab: Connection disabled — A GitLab integration connection was disabled.
- GitLab: Connection enabled — A GitLab integration connection was enabled.
- GitLab: Connection updated — A GitLab integration connection was updated (e.g., auth/settings).
Group
- Group: Created — A user group was created.
- Group: Deleted — A user group was deleted.
- Group: Updated — A user group was updated.
Issue
- Issue: Created — A new issue was created.
- Issue: Tracker created — A new issue tracker integration was created
- Issue: Tracker deleted — An issue tracker integration was deleted.
- Issue: Tracker disabled — An issue tracker integration was disabled.
- Issue: Tracker enabled — An issue tracker integration was enabled.
- Issue: Tracker updated — An issue tracker integration was updated.
Issues
- Issues: Mapping created — A mapping between an issue tracker and Testmo projects was created
- Issues: Mapping deleted — A mapping between an issue tracker and Testmo projects was deleted
- Issues: Mapping disabled — A mapping between an issue tracker and Testmo projects was disabled
- Issues: Mapping enabled — A mapping between an issue tracker and Testmo projects was enabled
- Issues: Mapping updated — A mapping between an issue tracker and Testmo projects was updated
Jira
- Jira: Connection created — A Jira integration connection was created.
- Jira: Connection deleted — A Jira integration connection was deleted.
- Jira: Connection disabled — A Jira integration connection was disabled.
- Jira: Connection enabled — A Jira integration connection was enabled.
- Jira: Connection updated — A Jira integration connection was updated (e.g., auth/settings).
Milestone
- Milestone: Attachment created — An attachment was added to a milestone.
- Milestone: Attachment deleted — An attachment was removed from a milestone.
- Milestone: Attachment updated — A milestone attachment was updated
- Milestone: Completed — A milestone was marked as completed.
- Milestone: Created — A new milestone was created.
- Milestone: Deleted — A milestone was deleted.
- Milestone: Link created — A link was added to a milestone
- Milestone: Link deleted — A link was removed from a milestone
- Milestone: Link updated — A milestone link was updated
- Milestone: Reopened — A completed milestone was reopened.
- Milestone: Started — A milestone was started
- Milestone: Stopped — A milestone was stopped
- Milestone: Type created — A milestone type was created on the Admin > Milestones admin page
- Milestone: Type deleted — A milestone type was deleted
- Milestone: Type set default — The default milestone type was changed
- Milestone: Type updated — A milestone type was updated
- Milestone: Updated — A milestone was updated
Notification
- Notification: Created — Not currently in use
Platform
- Platform: Created — A platform was created on the Admin > Configurations admin page
- Platform: Deleted — A platform was deleted
- Platform: Disabled — A platform was disabled
- Platform: Enabled — A platform was enabled
- Platform: Group created — A platform group was created
- Platform: Group deleted — A platform group was deleted
- Platform: Group updated — A platform group was updated
- Platform: Updated — A platform was updated
Project defaults
- Project defaults: Updated — Default project settings were updated on the Admin > Project admin page
Project
- Project: Access changed — Project access permissions were changed.
- Project: Attachment created — An attachment was added to a project.
- Project: Attachment deleted — An attachment was removed from a project.
- Project: Attachment updated — A project attachment was updated.
- Project: Completed — A project was marked as completed.
- Project: Created — A new project was created.
- Project: Deleted — A project was deleted.
- Project: Docs updated — A project documentation was updated.
- Project: Link created — A link was added to a project.
- Project: Link deleted — A link was removed from a project.
- Project: Link updated — A project link was updated.
- Project: Purged — All project data was purged after the project was deleted in the admin area.
- Project: Relation created — A project relation was added to the project documentation page.
- Project: Relation deleted — A project relation was deleted from the project documentation page.
- Project: Reopened — A project was reopened.
- Project: Updated — A project was updated.
Repository workflow
- Repository workflow: Updated — Repository workflow configuration was updated on Admin > Workflows > Workflow settings
Repository
- Repository: Case comment created — A user added a new comment to an existing case
- Repository: Case comment deleted — A user removed a comment from a case
- Repository: Case comment updated — A user edited or modified an existing comment on a case
- Repository: Case copied — A single case was duplicated within the repository
- Repository: Case created — A new case was added to the repository
- Repository: Case deleted — A case was permanently deleted from the repository
- Repository: Case moved — A case was relocated to a different folder or location
- Repository: Case updated — Changes were made to a case's properties or content
- Repository: Cases copied — Multiple cases were duplicated at once
- Repository: Cases copied to project — Multiple cases were duplicated and added to a specific project
- Repository: Cases created — Multiple new cases were added to the repository in bulk
- Repository: Cases deleted — Multiple cases were permanently deleted from the repository at once
- Repository: Cases imported — Cases were imported into the repository using the import wizard
- Repository: Cases moved — Multiple cases were relocated to a different folder or location
- Repository: Cases updated — Changes were made to multiple cases simultaneously
- Repository: Folder copied — A folder and its contents were duplicated
- Repository: Folder created — A new folder was created in the repository
- Repository: Folder deleted — A folder was removed from the repository
- Repository: Folder moved — A folder was relocated to a different location in the hierarchy
- Repository: Folder updated — Changes were made to a folder's properties or settings
Role
- Role: Created — A role was created.
- Role: Deleted — A role was deleted.
- Role: Permissions changed — Permissions assigned to a role were changed.
- Role: Set default — A role was set as the default role.
- Role: Updated — Role details were updated.
Run workflow
- Run workflow: Updated — Runs workflow configuration was updated in the Admin > Workflows > Runs > Workflow settings page.
Run
- Run: Attachment created — An attachment was added to a run.
- Run: Attachment deleted — An attachment was removed from a run.
- Run: Attachment updated — A run attachment was updated (e.g., name/metadata).
- Run: Closed — A run was closed.
- Run: Created — A new run was created.
- Run: Deleted — A run was deleted.
- Run: Link created
- Run: Link deleted
- Run: Link updated
- Run: Result created — A new test result was created in the run.
- Run: Result deleted — A test result was deleted from the run.
- Run: Result updated — A test result was updated in the run.
- Run: Results created — Multiple new results were added to a test run in bulk.
- Run: Test assigned — A test was assigned to a user.
- Run: Tests assigned — Multiple tests were assigned in bulk.
- Run: Updated — Run details were updated.
Session workflow
- Session workflow: Updated — Sessions workflow configuration was updated in the Admin > Workflows > Sessions > Workflow settings page.
Session
- Session: Assigned — A session was assigned to a user.
- Session: Closed — A session was closed.
- Session: Created — A new session was created.
- Session: Deleted — A session was deleted.
- Session: Result created — A new result was added to a session.
- Session: Result deleted — A result was deleted from a session.
- Session: Result updated — A session result was updated.
- Session: Updated — Session details were updated.
Setting
- Setting: Updated — Settings were changed in the Admin > Settings page.
Status
- Status: Created — A status was created.
- Status: Disabled — A status was disabled.
- Status: Enabled — A status was enabled.
- Status: Updated — A status was updated.
Tag
- Tag: Created — A tag was created.
- Tag: Deleted — A tag was deleted.
- Tag: Updated — A tag was updated.
Template
- Template: Created — A template was created.
- Template: Deleted — A template was deleted.
- Template: Disabled — A template was disabled.
- Template: Enabled — A template was enabled.
- Template: Set default — A template was set as the default template.
- Template: Updated — A template was updated.
User
- User: 2FA cleared — The user's 2FA configuration was reset in the user's profile page.
- User: 2FA disabled — 2FA was disabled in the user's profile page.
- User: 2FA enabled — 2FA was enabled in the user's profile page.
- User: API token created — An API token was created by the user.
- User: API token deleted — An API token was deleted by the user.
- User: API token updated — An API token was updated by the user.
- User: Avatar changed — The user's avatar was changed.
- User: Avatar deleted — The user's avatar was removed.
- User: Created — A new user account was created.
- User: Demoted — The user was demoted.
- User: Disabled — The user account was disabled.
- User: Email changed — The user's email address was changed.
- User: Enabled — The user account was enabled.
- User: Forgotten — The user was marked as forgotten.
- User: Groups changed — The user's groups were changed in the user's access settings.
- User: OAuth token created — An OAuth token was created for the GitHub or GitLab instagrations.
- User: OAuth token updated — An OAuth token was updated for the GitHub or GitLab instagrations.
- User: Password changed — The user's password was changed.
- User: Profile updated — The user profile details were updated.
- User: Promoted — The user was promoted.
- User: Role changed — The user's role was changed.
- User: Unforgotten — The user was restored from a forgotten state.
- User: Updated — User account details were updated.
Workflow state
- Workflow state: Created — A workflow state was created.
- Workflow state: Deleted — A workflow state was deleted.
- Workflow state: Disabled — A workflow state was disabled.
- Workflow state: Enabled — A workflow state was enabled.
- Workflow state: Set default — A workflow state was set as the default state.
- Workflow state: Updated — A workflow state was updated.