Platform & admin

A CRM audit log that settles who changed what, and when

The CRM audit log in DigiPix Flow records what happens in your workspace as it happens: who changed a lead's owner, who moved a deal, who signed in or failed to, and who exported the contact list, with the value before and after each change. Entries are only ever added, never edited or removed, so when a number is questioned you open the log rather than start an argument.

  • Every change kept with its before and after values
  • Search and filter by person, record, category and date
  • Exports recorded, with a reason when you require one
An example of the DigiPix Flow Roles and access settings page for Deepak Kulkarni, listing the Org admin, Sales manager, Sales rep and Finance roles. The Sales rep role is open, and its permissions are shown one per row. Export contacts is turned off, the role's data scope is changed from Everything to Own records, and multi-factor sign-in is then enforced for everyone in the workspace. Each change appears in the append-only audit trail beneath, with who made it and when.
categories, from leads and deals to security
8
the longest window in the main log
2 yrs
minimum for security and sign-in events
7 yrs

What the audit log records

  • Leads and dealsOwner changes, status moves and stage changes
  • Users and rolesInvites, role changes and permission edits
  • Sign-insSuccessful and failed attempts, and lockouts
  • Imports and exportsWho took data in or out, and when
  • FilesUploads and file activity on records
  • SettingsWorkspace configuration and automation changes
THE PROBLEM

What it costs when nobody can prove what changed

See how it's fixed
  1. A deal value nobody admits to changing

    On Monday the pipeline review shows a ₹6 lakh deal at Negotiation. By Friday it reads ₹4 lakh with a different owner, and three people swear they never touched it. Without a record of the change, the meeting becomes a debate about memory instead of a decision about the deal.

  2. A contact list that walked out of the door

    A sales executive resigns, and a week later a competitor seems to know your best accounts. Did anyone download the contact list before leaving? Without an entry for every export, nobody can say, and nobody can show a customer what was done with their details.

  3. An auditor who wants evidence, not screenshots

    A client's procurement team, an investor or your own accountant asks who can see customer data and what changed last quarter. Pulling the answer together from chat messages and memory takes days, and still does not prove anything.

EVERY CHANGE

Each change written down with who did it and what it was before

Changes to leads and deals, user and role changes, sign-ins, imports, exports, files and workspace settings are each written to the log as they happen. An entry names who acted: a person, an API client or the system itself. If a support user ever works in your workspace as one of your people, the entry names both. Opening an event shows the value before and after the change, and every entry says plainly that it cannot be edited or deleted.

  • Before and after values on the change
  • People, API clients and system actions told apart
  • Both names shown when support acts as a user
  • Entries that cannot be edited or deleted
Explore security and access
An example of DigiPix Flow's audit trail filtered to approvals: Neha Patil changed the approval rules, Kavya Iyer requested approval for PROP-00012, Amit Mehta reassigned it to Deepak Kulkarni, Deepak approved it, and Sneha Nair cancelled a request for PROP-00018. The selected decision shows who decided, when, the decision and the comment left with it.
FIND IT FAST

Go straight to the one change you are looking for

Search across events, people and records, then narrow the list by category, by the person who acted and by date: the last 7, 30, 90 or 365 days, or a range you pick. Turn off system activity when you only care about what people did. Separate views gather security events, and exports and access, so the questions asked most often have their own page.

  • Search events, people and records
  • Filters for category, person and date range
  • System activity hidden with one switch
  • Views for security, and for exports and access
An example of a DigiPix Flow follow-up's history: a call with Rahul Kumar scheduled from a Busy call result, rescheduled with a reason, reassigned while the owner was on leave, escalated when it ran an hour late, and completed with the outcome Connected, with the next follow-up — a site visit on Saturday — booked in the same step. A reschedule panel offers Tomorrow, In 3 days and Next week with an optional reason.
ON THE RECORD

A lead's own history, and a person's own activity

The same trail appears where you need it. A lead's History tab lists the changes made to that lead, so a rep can see who reassigned it before calling the buyer. A user's page shows what that person has done in the workspace, which is the first place a manager looks when someone moves on. Both read from the same append-only log, so they always agree with it.

  • A History tab on each lead
  • An activity panel on each user's page
  • Owner and status changes visible to the team
  • One trail behind every view
Explore lead management
An example of the Activity tab on a DigiPix Flow lead record for Priya Sharma: a composer set to log a call with the result Busy, above a timeline grouped into Today, Yesterday and Earlier this week that mixes a logged call, an automatic callback, a WhatsApp message received, a showroom meeting, a note, an email sent and a change of owner.
EXPORT WITH A REASON

Export to CSV, and leave a record of the export itself

Download the events in your current view as a CSV file for an auditor or a customer's review. Exporting is a permission of its own, separate from viewing the log. Admins can require a reason before any export starts, and the server checks it. Each export is then written to the log with the person, the number of rows and the reason. Exports are blocked while a support user is working in your workspace.

  • CSV of exactly the view you filtered
  • Export held as its own permission
  • A required reason, checked by the server
  • Every export recorded with its row count
Explore import and export
An example of exporting from DigiPix Flow: the leads by source report downloaded as a CSV file, and a data export of 2,418 leads as an Excel file, with contacts, companies and deals also available as CSV or Excel.
ALERTS

Hear about failed sign-ins and data exports without opening the log

Switch on alerts and the workspace's owners and admins are told, in the app and by email, when someone enters a wrong password for a real account, when an account is locked, and when someone requests or downloads a data export. Failed sign-ins are announced at most once an hour per person, so one forgetful colleague does not fill your inbox, and up to ten admins receive each alert.

  • Failed sign-ins and account lockouts
  • Data exports requested or downloaded
  • In-app and email, to owners and admins
  • One failed sign-in alert an hour per person
Explore team notifications
An example of pausing all notifications in DigiPix Flow. Pause all notifications is switched on and the settings show an All paused label. In the event list, deal stage changes, customer replies and import finished are paused, while the critical events task due, proposal approval requested, SLA breach and billing and subscription are marked Critical and still delivered.
RETENTION

Keep the log as long as you need, and never lose an entry

Choose how long events stay in the main log: 90 days, 180 days, a year or two years. Each night, older events move to a cold archive, which never deletes them. Security and sign-in events are kept for at least seven years whatever window you pick, and anything under a legal hold is never archived. Changing these settings is recorded in the log too.

  • Windows of 90, 180, 365 or 730 days
  • Older events archived each night, not deleted
  • Security and sign-in events kept seven years
  • Legal holds never archived
An example of privacy requests in DigiPix Flow: a new request raised from Neha Patil's contact page with a choice of erasure, anonymise or access, and a list of requests where an access request is ready to download, an erasure request waits for an approver to approve or reject it, one anonymise request is approved and one erasure request is rejected.
HOW IT WORKS

Setting up the audit log, in five steps

  1. STEP 01

    Decide who may look

    Give viewing, opening an event's detail and exporting to the roles that need each one.

  2. STEP 02

    Set the rules

    Require a reason for exports, choose the retention window and pick the list's defaults.

  3. STEP 03

    Turn on alerts

    Let owners and admins hear about failed sign-ins, lockouts and data exports.

  4. STEP 04

    Find the change

    Search and filter by person, record, category and date when a question comes up.

  5. STEP 05

    Export the evidence

    Download the filtered view as CSV, with the export itself recorded in the log.

THE DIFFERENCE

The audit log vs spreadsheets and shared logins

What it coversSpreadsheets and shared loginsDigiPix Flow
Who changed a recordWhoever last had the file openThe person, API client or system named on the entry
What it was beforeLost when the cell was overwrittenBefore and after values on every change
Editing the historyAnyone can change any rowEntries can only be added, never edited
Data leaving the businessA copy emailed with no traceEvery export recorded, with an alert to admins
Failed sign-insA shared password nobody tracksRecorded, with alerts on failures and lockouts
An auditor's requestScreenshots stitched together over daysA filtered CSV, downloaded from the log
How long it is keptUntil someone deletes the fileA window you choose, then archived, not deleted
INTEGRATIONS

Activity from connected systems, recorded too

Changes made through the API are recorded with the API client that made them, so a connected system is never anonymous, and imports are logged alongside the exports they balance.

Audit log questions, answered

What is a CRM audit log?

It is a dated record of what people and systems did in your CRM: who created or changed a record, what the value was before and after, who signed in, and who exported data. In DigiPix Flow the log is append-only, so entries are added as things happen and can never be edited or removed afterwards.

What does the DigiPix Flow audit log record?

Changes to leads and deals, user, role and permission changes, sign-ins and failed sign-ins, imports and exports, file activity and workspace settings. Each entry carries the time, the actor and a written summary, and opening it shows the value before and after the change.

Can anyone edit or delete an audit entry?

No, not even a workspace owner. There is no edit or delete action for audit entries. When older events pass your retention window they move to a cold archive each night, which keeps them rather than deleting them, and security and sign-in events stay for at least seven years.

Who in my team can see the audit log?

Only roles you give it to. Viewing the log, opening an event's full detail and exporting are three separate permissions, so a manager can review activity without being able to download it. Opening an event's detail is itself recorded in the log.

Can I see the history of a single lead?

Yes. Each lead has a History tab built from the same audit log, listing the changes made to that lead, such as owner and status changes, with who made them and when. A user's page shows that person's own activity in the same way.

How do I export the audit log for an auditor?

Filter the log to the period and events the auditor asked for, then export the view as a CSV file of up to 10,000 events. If your admins require a reason, you enter it before the download starts. The export is recorded in the log with your name, the row count and the reason.

Will I know if someone exports our data?

If export alerts are on, the workspace's owners and admins are told in the app and by email when someone requests or downloads a data export. The person exporting is not alerted about their own export, and every export is in the log whether alerts are on or not.

What happens when DigiPix Flow support works in our workspace?

Anything a support user does while acting as one of your people is recorded with both names, so you can tell their actions apart from your colleague's own. Audit exports are blocked for the whole of that support session.

Something we haven't covered? Talk to an expert

Know who changed what, every time

Talk to an expert. Bring the question your auditor or your team asked last, and see the log answer it.

  • A real person, not a bot
  • Bring a real audit question
  • See the answer in the log
Talk to an expert