Platform
Login & Security Events
Investigate sign-in outcomes, risk, device, IP, and sanitized event details.
What this menu does
Give authorized operators a read-only security investigation surface without exposing secrets.
Where to find it
Platform Admin navigation: Accounts & Security → Login & Security Events.
When to use it
- Investigate failed or suspicious logins.
- Filter events by type, result, actor, and date.
- Open sanitized metadata for a single event.
Before you begin
- Sign in to Platform Admin.
- The account must be allowed to view this menu.
Page regions
- 01Event/result/actor/date filters
- 02Security event list
- 03Risk, device, and IP columns
- 04Read-only detail drawer
- 05Pagination
Supported operations
Filter security events
- 1
Choose event type and result, and enter an actor ID when known.
- 2
Set a start and end date.
- 3
Review risk, reason code, device, and login IP.
- 4
Move pages or change page size as needed.
Only matching security events remain in the list.
Review event details
- 1
Select Details on the target row.
- 2
Review event type, result, actor, risk, reason, time, device, and IP.
- 3
Inspect sanitized metadata; hidden, circular, or truncated values are labeled.
- 4
Close the drawer and preserve relevant identifiers for incident follow-up.
The event remains unchanged; the operator gains a traceable incident record.
Business rules and fields
- The page is read-only.
- Sensitive metadata is hidden or truncated.
- A payment, error, or single event does not by itself prove the root cause of an incident.
States you may see
What happens next
- Authorized users can document the strongest evidence and the remaining unknowns without mutating the event.
Common problems
The menu or action is missing.
The account does not have the required platform access or the item is not available in the current state.
Ask a platform administrator to verify the account role and the record status.
A save or load action fails.
The session may have expired, validation may have failed, or the service is temporarily unavailable.
Keep the shown request identifier if present, refresh once, correct highlighted fields, and retry. Escalate with the request identifier if it repeats.