Query compliance activities changedapi/compliance/activities/list
Nearest release: v2.1.282, published an hour before this site recorded the change. Shown because the two are within 24 hours of each other. Nothing here says the release caused the edit.
Recorded here
Lines+2,527added
Lines−1,463removed
From line
15
where the diff opens
First seen
14 Aug 2026
this site's first read of the page
Recorded edits15to this page, all time
The whole hunk
from line 15, old and new numbered
/
This page is larger than the 256 KiB this site keeps, so one side of the diff below stops where the stored text does.
from line 15
1515
1616## Query parameters
1717
18- `activity_types: optional array of "abuse_decision_received" or "account_deleted" or "admin_api_key_created" or 507 more`
18- `activity_types: optional array of "abuse_decision_received" or "account_deleted" or "admin_api_key_created" or 511 more`
1919
2020 Filter activities by type. See the response `data` schema for the additional fields each type returns. Cannot be combined with `exclude_activity_types[]`.
2121
from line 247
247247
248248 An organization admin allowed one artifact to be shared outside the organization by link while the organization-wide external sharing setting was off, or revoked that permission.
249249
250 - `"claude_artifact_invite_accepted"`
251
252 Someone outside the organization signed in with a verified account for the invited address and accepted an invitation to an artifact, and can now open it; recorded in the artifact owner's organization. The person who accepted is identified by `invitee_email` and `invitee_user_id`.
253
254 - `"claude_artifact_invite_created"`
255
256 A member invited (or re-invited) an email address outside the organization to an artifact; recorded in the artifact owner's organization with the inviting member as the actor.
257
258 - `"claude_artifact_invite_revoked"`
259
260 A member withdrew an invitation to an artifact for someone outside the organization, removing any access that invitation had granted; recorded in the artifact owner's organization with that member as the actor.
261
262 - `"claude_artifact_invite_role_updated"`
263
264 A member changed the access level of an email invitation to an artifact for someone outside the organization, whether the invitation was still pending or had been accepted; recorded in the artifact owner's organization with that member as the actor.
265
250266 - `"claude_artifact_published"`
251267
252268 A new version of an artifact was published — for an artifact created in a chat this is the action that made it publicly viewable; for an artifact created outside a chat it is recorded when the artifact is saved, including saves of private artifacts, except that automatic saves made while a person keeps editing may be recorded periodically for that person rather than once per save; changes to who can access the artifact are recorded separately as claude_artifact_sharing_updated.
from line 1017
10011017
10021018 - `"mcp_server_managed_auth_token_exchanged"`
10031019
1004 A user attempted to obtain an access token for an MCP server via enterprise managed authorization. This event reports the outcomes of attempted token exchanges. Repeated failures with the same cause may be reported once until the cause changes, and requests denied by organization policy before a token exchange is attempted are not reported, with the exception of the "connector_scope_not_granted" failures described under error_type.
1020 A user attempted to obtain an access token for an MCP server via enterprise managed authorization. This event reports the outcomes of attempted token exchanges. Repeated failures with the same cause may be reported once until the cause changes, and requests refused before a token exchange is attempted are not reported, except the "connector_scope_not_granted" and "identity_assertion_refused" failures described under error_type.
10051021
10061022 - `"mcp_server_managed_auth_updated"`
10071023
from line 2130
21142130
21152131 format: date-time
21162132
2117- `exclude_activity_types: optional array of "abuse_decision_received" or "account_deleted" or "admin_api_key_created" or 507 more`
2133- `exclude_activity_types: optional array of "abuse_decision_received" or "account_deleted" or "admin_api_key_created" or 511 more`
21182134
21192135 Exclude activities of these types. Cannot be combined with `activity_types[]`.
21202136
from line 2362
23462362
23472363 An organization admin allowed one artifact to be shared outside the organization by link while the organization-wide external sharing setting was off, or revoked that permission.
23482364
2365 - `"claude_artifact_invite_accepted"`
2366
2367 Someone outside the organization signed in with a verified account for the invited address and accepted an invitation to an artifact, and can now open it; recorded in the artifact owner's organization. The person who accepted is identified by `invitee_email` and `invitee_user_id`.
2368
2369 - `"claude_artifact_invite_created"`
2370
2371 A member invited (or re-invited) an email address outside the organization to an artifact; recorded in the artifact owner's organization with the inviting member as the actor.
2372
2373 - `"claude_artifact_invite_revoked"`
2374
2375 A member withdrew an invitation to an artifact for someone outside the organization, removing any access that invitation had granted; recorded in the artifact owner's organization with that member as the actor.
2376
2377 - `"claude_artifact_invite_role_updated"`
2378
2379 A member changed the access level of an email invitation to an artifact for someone outside the organization, whether the invitation was still pending or had been accepted; recorded in the artifact owner's organization with that member as the actor.
2380
23492381 - `"claude_artifact_published"`
23502382
23512383 A new version of an artifact was published — for an artifact created in a chat this is the action that made it publicly viewable; for an artifact created outside a chat it is recorded when the artifact is saved, including saves of private artifacts, except that automatic saves made while a person keeps editing may be recorded periodically for that person rather than once per save; changes to who can access the artifact are recorded separately as claude_artifact_sharing_updated.
from line 3132
31003132
31013133 - `"mcp_server_managed_auth_token_exchanged"`
31023134
3103 A user attempted to obtain an access token for an MCP server via enterprise managed authorization. This event reports the outcomes of attempted token exchanges. Repeated failures with the same cause may be reported once until the cause changes, and requests denied by organization policy before a token exchange is attempted are not reported, with the exception of the "connector_scope_not_granted" failures described under error_type.
3135 A user attempted to obtain an access token for an MCP server via enterprise managed authorization. This event reports the outcomes of attempted token exchanges. Repeated failures with the same cause may be reported once until the cause changes, and requests refused before a token exchange is attempted are not reported, except the "connector_scope_not_granted" and "identity_assertion_refused" failures described under error_type.
31043136
31053137 - `"mcp_server_managed_auth_updated"`
31063138
from line 4237
42054237
42064238## Returns
42074239
4208- `data: optional array of AbuseDecisionReceived or AccountDeleted or AdminAPIKeyCreated or 507 more`
4240- `data: optional array of AbuseDecisionReceived or AccountDeleted or AdminAPIKeyCreated or 511 more`
42094241
42104242 List of activity records. Each element's `type` field identifies which activity it is and which additional fields are present.
42114243
from line 7613
75817613
75827614 Unique identifier for the activity e.g. 'activity_abcd1234'
75837615
7616 - `actor_outside_organization: optional boolean or null`
7617
7618 True when the person who acted belongs to a different organization than the artifact's owner organization, such as someone invited by email who accepted commenter or editor access. Absent on older events; treat absence as false.
7619
75847620 - `claude_artifact_comment_id: optional string or null`
75857621
75867622 The comment's identifier. Present when the activity relates to a specific comment, for example a new comment, an author's edit of one, or an existing comment sent to Claude or withdrawn from Claude; absent for thread-level actions performed without a comment, such as resolve, reopen, deletion, an activation change, or a resolve by a Claude session.
from line 8585
85498585
85508586 Unique identifier for the activity e.g. 'activity_abcd1234'
85518587
8588 - `actor_outside_organization: optional boolean or null`
8589
8590 True when the person who published belongs to a different organization than the artifact's owner organization, such as someone invited by email who accepted editor access. Absent on older events; treat absence as false.
8591
85528592 - `claude_artifact_version_id: optional string or null`
85538593
85548594 The version identifier recorded as live by this publish.
from line 9765
97259765 gateway or a customer-registered federation issuer — acting without an
97269766 Anthropic-provisioned account or service account.
97279767
9728 - `type: optional "federated_actor"`
9729
9730 default: federated_actor
9731
9732 - `provider: FederatedActorAwsProvider or FederatedActorAzureProvider or FederatedActorGcpProvider or FederatedActorOidcProvider`
9733
9734 - `FederatedActorAwsProvider object`
9735
9736 Asserting party: the AWS account the organization is bound to.
9737
9738 - `type: optional "aws"`
9739
9740 default: aws
9741
9742 - `account_id: string`
9743
9744 - `signed_principal: string`
9745
9746 The AWS-signed ARN of the IAM principal that requested the token.
9747
9748 - `FederatedActorAzureProvider object`
9749
9750 Asserting party: the Azure subscription the organization is bound to.
9751
9752 - `type: optional "azure"`
9753
9754 default: azure
9755
9756 - `subscription_id: string`
9757
9758 - `FederatedActorGcpProvider object`
9759
9760 Asserting party: the GCP project the organization is bound to.
9761
9762 - `type: optional "gcp"`
9763
9764 default: gcp
9765
9766 - `project_number: string`
9767
9768 - `FederatedActorOidcProvider object`
9769
9770 Asserting party: a customer-registered OIDC federation issuer.
9771
9772 - `type: optional "oidc"`
9773
9774 default: oidc
9775
9776 - `issuer: optional string or null`
9777
9778 The federation issuer's URL. Null when the presented credential failed verification.
9779
9780 - `ip_address: optional string or null`
9781
9782 - `subject: optional string or null`
9783
9784 The provider's verified identifier for the caller; its form depends on the provider.
9785
9786 - `user_agent: optional string or null`
9787
9788 - `AttestedDeviceActor object`
9789
9790 An attested mobile device authenticated via Apple App Attest.
9791
9792 - `type: optional "attested_device_actor"`
9793
9794 default: attested_device_actor
9795
9796 - `external_client_id: string`
9797
9798 - `kid_hash: string`
9799
9800 - `ip_address: optional string or null`
9801
9802 - `user_agent: optional string or null`
9803
9804 - `id: optional string`
9805
9806 Unique identifier for the activity e.g. 'activity_abcd1234'
9807
9808 - `cc_email_count: optional number or null`
9809
9810 Number of 'cc' email recipients.
9811
9812 - `created_at: optional string`
9813
9814 When this activity occurred.
9815
9816 format: date-time
9817
9818 - `organization_id: optional string or null`
9819
9820 Organization ID this activity is associated with
9821
9822 - `organization_uuid: optional string or null`
9823
9824 Organization UUID where the activity occurred. Null when the activity is not tied to an organization (for example, login and logout events or calls to the Compliance API).
9825
9826 - `primary_email_set: optional boolean or null`
9827
9828 Whether a primary billing email is configured.
9829
9830 - `to_email_count: optional number or null`
9831
9832 Number of 'to' email recipients.
9833
9834 - `CcrAgentC
9768 - `type: optional "federated_a
No line in this hunk matches that.