Skip to content
API Reference

Activity Events

The registry of events each Activity feed surfaces for Resources, Providers, Applications, Users, and policies.

Each Activity feed in the Console shows the events registered for its entity type, listed below. An event can appear in more than one feed: credentials:issue shows on both the Resource and the Provider it involves. For how to open and read a feed, see Read an Activity Feed.

Action Name Description
credentials:issue Credential issued Keycard issued a credential to an actor for the target Resource.
delegated-grants:create Delegated grant created A delegated grant was created.
delegated-grants:revoke Delegated grant revoked A delegated grant was revoked.
resources:create Resource created The target Resource was created.
resources:create_action Action created A tool was recorded on the target Resource, by Catalog seeding or by hand.
resources:update Resource updated The target Resource was updated.
Action Name Description
credentials:issue Credential issued Keycard issued a credential to an actor for the target Resource.
providers:create Provider created A Provider was created.
providers:update Provider updated A Provider was updated.
providers:validate Provider validated Keycard validated a Provider’s configuration.
users:authenticate User authenticated A User completed authentication against Keycard.
users:authorize User authorized A User was granted or denied authorization to access the target Resource.
Action Name Description
applications:create Application created An Application was created.
applications:update Application updated An Application was updated.
applications:add_curation Curation added An MCP server attached to the target Application moved to Selected actions.
applications:remove_curation Curation removed An MCP server attached to the target Application returned to All actions.
applications:enable_action Action enabled A tool was turned on for the target Application.
applications:disable_action Action disabled A tool was turned off for the target Application.
application-credentials:create Application credential created An Application credential was created.
application-credentials:update Application credential updated An Application credential was updated.

The User feed matches events on two axes: events the person performed (directly or through an Application acting on their behalf) and events affecting their account. Anything the person performed can appear here, including actions from the other feeds; the events below are the ones specific to this feed.

Events from directory sync carry the actor Directory Sync. See SCIM Provisioning.

Action Name Description
credentials:issue Credential issued Keycard issued a credential to an actor for the target Resource.
delegated-grants:create Delegated grant created A delegated grant was created.
delegated-grants:revoke Delegated grant revoked A delegated grant was revoked.
users:authenticate User authenticated A User completed authentication against Keycard.
users:authorize User authorized A User was granted or denied authorization to access the target Resource.
users:create User created A User was created.
users:update User updated A User was updated.
users:enable User enabled A User’s status was set to active.
users:disable User disabled A User’s status was set to disabled and their sessions were revoked.
users:delete User deleted A User was deleted.
Action Name Description
policies:evaluate Policy evaluated Keycard evaluated policy for an actor’s access to the target Resource.
policies:create Policy created A policy was created.
policies:update Policy updated A policy was updated.
policy_versions:create Policy version created A policy version was created.
policy_sets:create Policy set created A policy set was created.
policy_sets:update Policy set updated A policy set was updated.
policy_set_versions:create Policy set version created A policy set version was created.
policy_set_versions:activate Policy set version activated A policy set version was activated.
policy_schema:set_default Policy schema set as default A policy schema was set as the default.
policy_schema:update Policy schema updated A policy schema was updated.