Activities changedapi/compliance/activities
Nearest release: v2.1.282, published an hour before this site recorded the change. Shown because the two are within 24 hours of each other. Nothing here says the release caused the edit.
Recorded here
Lines+5,018added
Lines−2,922removed
From line
17
where the diff opens
First seen
14 Aug 2026
this site's first read of the page
Recorded edits15to this page, all time
The whole hunk
from line 17, old and new numbered
/
This page is larger than the 256 KiB this site keeps, so one side of the diff below stops where the stored text does.
from line 17
1717
1818### Query parameters
1919
20- `activity_types: optional array of "abuse_decision_received" or "account_deleted" or "admin_api_key_created" or 507 more`
20- `activity_types: optional array of "abuse_decision_received" or "account_deleted" or "admin_api_key_created" or 511 more`
2121
2222 Filter activities by type. See the response `data` schema for the additional fields each type returns. Cannot be combined with `exclude_activity_types[]`.
2323
from line 249
249249
250250 An organization admin allowed one artifact to be shared outside the organization by link while the organization-wide external sharing setting was off, or revoked that permission.
251251
252 - `"claude_artifact_invite_accepted"`
253
254 Someone outside the organization signed in with a verified account for the invited address and accepted an invitation to an artifact, and can now open it; recorded in the artifact owner's organization. The person who accepted is identified by `invitee_email` and `invitee_user_id`.
255
256 - `"claude_artifact_invite_created"`
257
258 A member invited (or re-invited) an email address outside the organization to an artifact; recorded in the artifact owner's organization with the inviting member as the actor.
259
260 - `"claude_artifact_invite_revoked"`
261
262 A member withdrew an invitation to an artifact for someone outside the organization, removing any access that invitation had granted; recorded in the artifact owner's organization with that member as the actor.
263
264 - `"claude_artifact_invite_role_updated"`
265
266 A member changed the access level of an email invitation to an artifact for someone outside the organization, whether the invitation was still pending or had been accepted; recorded in the artifact owner's organization with that member as the actor.
267
252268 - `"claude_artifact_published"`
253269
254270 A new version of an artifact was published — for an artifact created in a chat this is the action that made it publicly viewable; for an artifact created outside a chat it is recorded when the artifact is saved, including saves of private artifacts, except that automatic saves made while a person keeps editing may be recorded periodically for that person rather than once per save; changes to who can access the artifact are recorded separately as claude_artifact_sharing_updated.
from line 1019
10031019
10041020 - `"mcp_server_managed_auth_token_exchanged"`
10051021
1006 A user attempted to obtain an access token for an MCP server via enterprise managed authorization. This event reports the outcomes of attempted token exchanges. Repeated failures with the same cause may be reported once until the cause changes, and requests denied by organization policy before a token exchange is attempted are not reported, with the exception of the "connector_scope_not_granted" failures described under error_type.
1022 A user attempted to obtain an access token for an MCP server via enterprise managed authorization. This event reports the outcomes of attempted token exchanges. Repeated failures with the same cause may be reported once until the cause changes, and requests refused before a token exchange is attempted are not reported, except the "connector_scope_not_granted" and "identity_assertion_refused" failures described under error_type.
10071023
10081024 - `"mcp_server_managed_auth_updated"`
10091025
from line 2132
21162132
21172133 format: date-time
21182134
2119- `exclude_activity_types: optional array of "abuse_decision_received" or "account_deleted" or "admin_api_key_created" or 507 more`
2135- `exclude_activity_types: optional array of "abuse_decision_received" or "account_deleted" or "admin_api_key_created" or 511 more`
21202136
21212137 Exclude activities of these types. Cannot be combined with `activity_types[]`.
21222138
from line 2364
23482364
23492365 An organization admin allowed one artifact to be shared outside the organization by link while the organization-wide external sharing setting was off, or revoked that permission.
23502366
2367 - `"claude_artifact_invite_accepted"`
2368
2369 Someone outside the organization signed in with a verified account for the invited address and accepted an invitation to an artifact, and can now open it; recorded in the artifact owner's organization. The person who accepted is identified by `invitee_email` and `invitee_user_id`.
2370
2371 - `"claude_artifact_invite_created"`
2372
2373 A member invited (or re-invited) an email address outside the organization to an artifact; recorded in the artifact owner's organization with the inviting member as the actor.
2374
2375 - `"claude_artifact_invite_revoked"`
2376
2377 A member withdrew an invitation to an artifact for someone outside the organization, removing any access that invitation had granted; recorded in the artifact owner's organization with that member as the actor.
2378
2379 - `"claude_artifact_invite_role_updated"`
2380
2381 A member changed the access level of an email invitation to an artifact for someone outside the organization, whether the invitation was still pending or had been accepted; recorded in the artifact owner's organization with that member as the actor.
2382
23512383 - `"claude_artifact_published"`
23522384
23532385 A new version of an artifact was published — for an artifact created in a chat this is the action that made it publicly viewable; for an artifact created outside a chat it is recorded when the artifact is saved, including saves of private artifacts, except that automatic saves made while a person keeps editing may be recorded periodically for that person rather than once per save; changes to who can access the artifact are recorded separately as claude_artifact_sharing_updated.
from line 3134
31023134
31033135 - `"mcp_server_managed_auth_token_exchanged"`
31043136
3105 A user attempted to obtain an access token for an MCP server via enterprise managed authorization. This event reports the outcomes of attempted token exchanges. Repeated failures with the same cause may be reported once until the cause changes, and requests denied by organization policy before a token exchange is attempted are not reported, with the exception of the "connector_scope_not_granted" failures described under error_type.
3137 A user attempted to obtain an access token for an MCP server via enterprise managed authorization. This event reports the outcomes of attempted token exchanges. Repeated failures with the same cause may be reported once until the cause changes, and requests refused before a token exchange is attempted are not reported, except the "connector_scope_not_granted" and "identity_assertion_refused" failures described under error_type.
31063138
31073139 - `"mcp_server_managed_auth_updated"`
31083140
from line 4239
42074239
42084240### Returns
42094241
4210- `data: optional array of AbuseDecisionReceived or AccountDeleted or AdminAPIKeyCreated or 507 more`
4242- `data: optional array of AbuseDecisionReceived or AccountDeleted or AdminAPIKeyCreated or 511 more`
42114243
42124244 List of activity records. Each element's `type` field identifies which activity it is and which additional fields are present.
42134245
from line 7615
75837615
75847616 Unique identifier for the activity e.g. 'activity_abcd1234'
75857617
7618 - `actor_outside_organization: optional boolean or null`
7619
7620 True when the person who acted belongs to a different organization than the artifact's owner organization, such as someone invited by email who accepted commenter or editor access. Absent on older events; treat absence as false.
7621
75867622 - `claude_artifact_comment_id: optional string or null`
75877623
75887624 The comment's identifier. Present when the activity relates to a specific comment, for example a new comment, an author's edit of one, or an existing comment sent to Claude or withdrawn from Claude; absent for thread-level actions performed without a comment, such as resolve, reopen, deletion, an activation change, or a resolve by a Claude session.
from line 8587
85518587
85528588 Unique identifier for the activity e.g. 'activity_abcd1234'
85538589
8590 - `actor_outside_organization: optional boolean or null`
8591
8592 True when the person who published belongs to a different organization than the artifact's owner organization, such as someone invited by email who accepted editor access. Absent on older events; treat absence as false.
8593
85548594 - `claude_artifact_version_id: optional string or null`
85558595
85568596 The version identifier recorded as live by this publish.
from line 9767
97279767 gateway or a customer-registered federation issuer — acting without an
97289768 Anthropic-provisioned account or service account.
97299769
9730 - `type: optional "federated_actor"`
9731
9732 default: federated_actor
9733
9734 - `provider: FederatedActorAwsProvider or FederatedActorAzureProvider or FederatedActorGcpProvider or FederatedActorOidcProvider`
9735
9736 - `FederatedActorAwsProvider object`
9737
9738 Asserting party: the AWS account the organization is bound to.
9739
9740 - `type: optional "aws"`
9741
9742 default: aws
9743
9744 - `account_id: string`
9745
9746 - `signed_principal: string`
9747
9748 The AWS-signed ARN of the IAM principal that requested the token.
9749
9750 - `FederatedActorAzureProvider object`
9751
9752 Asserting party: the Azure subscription the organization is bound to.
9753
9754 - `type: optional "azure"`
9755
9756 default: azure
9757
9758 - `subscription_id: string`
9759
9760 - `FederatedActorGcpProvider object`
9761
9762 Asserting party: the GCP project the organization is bound to.
9763
9764 - `type: optional "gcp"`
9765
9766 default: gcp
9767
9768 - `project_number: string`
9769
9770 - `FederatedActorOidcProvider object`
9771
9772 Asserting party: a customer-registered OIDC federation issuer.
9773
9774 - `type: optional "oidc"`
9775
9776 default: oidc
9777
9778 - `issuer: optional string or null`
9779
9780 The federation issuer's URL. Null when the presented credential failed verification.
9781
9782 - `ip_address: optional string or null`
9783
9784 - `subject: optional string or null`
9785
9786 The provider's verified identifier for the caller; its form depends on the provider.
9787
9788 - `user_agent: optional string or null`
9789
9790 - `AttestedDeviceActor object`
9791
9792 An attested mobile device authenticated via Apple App Attest.
9793
9794 - `type: optional "attested_device_actor"`
9795
9796 default: attested_device_actor
9797
9798 - `external_client_id: string`
9799
9800 - `kid_hash: string`
9801
9802 - `ip_address: optional string or null`
9803
9804 - `user_agent: optional string or null`
9805
9806 - `id: optional string`
9807
9808 Unique identifier for the activity e.g. 'activity_abcd1234'
9809
9810 - `cc_email_count: optional number or null`
9811
9812 Number of 'cc' email recipients.
9813
9814 - `created_at: optional string`
9815
9816 When this activity occurred.
9817
9818 format: date-time
9819
9820 - `organization_id: optional string or null`
9821
9822 Organization ID this activity is associated with
9823
9824 - `organization_uuid: optional string or null`
9825
9826 Organization UUID where the activity occurred. Null when the activity is not tied to an organization (for example, login and logout events or calls to the Compliance API).
9827
9828 - `primary_email_set: optional boolean or null`
9829
9830 Whether a primary billing email is configured.
9831
9832 - `to_email_count: optional number or null`
9833
9834 Number of 'to' email recipients.
9835
9836 - `CcrAgentCreat
9770 - `type: optional "federated_actor
No line in this hunk matches that.