Mediloop
PlatformOrganizations / TenantsAudit & lifecycle

Audit & lifecycle

Platform

Track tenant provisioning, activation, configuration changes and lifecycle events with immutable audit history.

Isolation

Tenant-scoped by design

Hierarchy

Organizations + sub-organizations

Access

Membership + role context

Configuration

Policies, modules & branding

Overview

Administrative changes to organizations and tenants should remain attributable, timestamped and reviewable.

Tenant lifecycle

TransitionTypical control
requested → provisioningOrganization approval + provisioning request
provisioning → activeRequired resources and configuration ready
active → suspendedPolicy, billing or security action
suspended → activeAuthorized remediation / re-enable
active → archivedControlled decommissioning process

Audit events

EventExample metadata
organization.updatedactor, changed_fields, timestamp
tenant.createdorganization_id, region, requested_by
tenant.configuration.updatedversion, changed_fields, actor
tenant.status.changedfrom, to, reason, actor
tenant.context.usedrequest_id, membership_id, resource action

Lifecycle transitions

Lifecycle endpoints should be idempotent and policy-guarded. Archival is not equivalent to deleting regulated healthcare history.

Retention & traceability

Retention policies are governed by data class, contractual obligations and applicable healthcare regulation; the public API exposes audit contracts without revealing internal security controls.