Audit & lifecycle
PlatformTrack tenant provisioning, activation, configuration changes and lifecycle events with immutable audit history.
Isolation
Tenant-scoped by design
Hierarchy
Organizations + sub-organizations
Access
Membership + role context
Configuration
Policies, modules & branding
Overview
Administrative changes to organizations and tenants should remain attributable, timestamped and reviewable.
Tenant lifecycle
| Transition | Typical control |
|---|---|
| requested → provisioning | Organization approval + provisioning request |
| provisioning → active | Required resources and configuration ready |
| active → suspended | Policy, billing or security action |
| suspended → active | Authorized remediation / re-enable |
| active → archived | Controlled decommissioning process |
Audit events
| Event | Example metadata |
|---|---|
| organization.updated | actor, changed_fields, timestamp |
| tenant.created | organization_id, region, requested_by |
| tenant.configuration.updated | version, changed_fields, actor |
| tenant.status.changed | from, to, reason, actor |
| tenant.context.used | request_id, membership_id, resource action |
Lifecycle transitions
Lifecycle endpoints should be idempotent and policy-guarded. Archival is not equivalent to deleting regulated healthcare history.
Retention & traceability
Retention policies are governed by data class, contractual obligations and applicable healthcare regulation; the public API exposes audit contracts without revealing internal security controls.