Skip to main content

Scope of Audit Trail

Zuora

Scope of Audit Trail

Zuora Audit Trail currently supports the following capabilities:

  • Track, log, and report on a user’s login history
  • Track, log, and report on setting changes. Changes on the following settings can be audited:
    • Billing
      • Define Billing Rules
      • Manage Tax codes
      • Define Discount Settings
      • Manage Revenue Recognition Codes
      • Configure Tax Dates 
      • Payment Terms
    • Payment
      • Configure Application Rules
    • Commerce
      • Synchronize Salesforce.com Data
    • Finance
      • Configure Accounting Codes
      • Configure Accounting Rules
      • Manage Currency Conversion
      • Set Revenue Automation Start Date
      • Configure Revenue Event Types
      • Manage Revenue Recognition Models
      • Configure Segments
      • Configure GL Segmentation Rules
      • Manage Revenue Recognition Rules
      • Manage Chart of Accounts
    • Audit Trail
  • Track, log, and report on activities in user management settings. Changes on the following user management settings can be audited:
    • User
    • Role & Permission
  • Track, log, and report on changes of the following business objects:
    • Account
    • Contact
    • Custom Object (see Data Model of Audit Trail for supported objects)
    • Notification (see Data Model of Audit Trail for supported objects)
    • Order Line Item
    • Product Catalog (see Data Model of Audit Trail for supported objects)
    • Payment
    • Payment Method
    • Payment Gateway (Only available to Chase Orbital payment gateway)
    • Refund
    • Workflow (see Data Model of Audit Trail for supported objects)
    • Google Cloud Enterprise credentials used for Payment Page reCAPTCHA Enterprise configuration (represented as the HpmCaptchaCredential object)

    Audit Trail also supports the Custom Field Definition object, which represents a custom field that has been defined on a business object.

    Administrators can enable or disable auditing the above objects through Manage Audit Trail Settings.

Authorized users can generate the Audit Trail reports through Data Query. The Audit Trail records are stored in the following tables:

  • auditloginevent for login history
  • auditsettingchangeevent for user management and other settings changes
  • auditobjectchangeevent for business object changes

Limitations

The Audit Trail feature has the following limitations:

  • Audit Trail reports are retrieved through Data Query. All the Data Query limitations are applicable when you generate Audit Trail reports. See Data Query Limitations for the details.
  • The Audit Trail data retention period varies according to your Zuora editions. See Zuora Editions for the details.
  • The usage-based charges with the following charge models are not audited even if the Product Catalog auditing is enabled, including:
    • Multi-Attribute Pricing
    • High Water Mark Volume Pricing
    • High Water Mark Tiered Pricing
    • Pre-Rated Pricing
    • Pre-Rated Per Unit Pricing
  • Auditing the changes of business objects has performance impact.
  • To audit custom field changes of a custom object, you must set the custom field as an auditable field. One custom object can have a maximum of five auditable fields. For more information, see Create a new custom object definition.

Delete or anonymize audit log data

According to the applicable privacy laws, if you want any of your audit trail data/records deleted, Zuora recommends you open a ticket with support. We will assist you in logging into AWS and manually deleting it all.