Feature / Lifecycle Record

Access reviews, daily and automatic.

Who is on which team, with access to what. Tactna keeps that current state up to date every day and records every creation, access change, lock, and deletion with who did it. Audit questions get answered on the spot, without opening a spreadsheet.

  • The current state, always held
  • Every action on a timeline
  • Filter and download as is
admin.tactna.example

System Log

Target Date · 2025/07/09 ▾
Application logDownload
TimestampLevelMessageUser ID
2025-07-09 00:50INFOAppTeam(3f3c97ea-…) status changed to `SUBSCRIBED`ffa0e68c-61b0-…
2025-07-09 00:35INFOAppTeam(a5b3340a-…) status changed to `SUBSCRIBED`ffa0e68c-61b0-…
2025-07-09 00:07WARNprimary payment method not found.ffa0e68c-61b0-…
2025-07-08 23:40INFOUser(010103aa-…) locked: 90 days inactive010103aa-a214-…
Authentication logDownload
TimestampLevelMessageIP AddressClient ID
2025-07-09 01:25INFOUser logged in: 532b718c-ed9d-…56.155.33.108:46512ap-northeast-1_EM…
2025-07-09 01:16INFOUser logged in: 532b718c-ed9d-…15.168.151.237:468…ap-northeast-1_EM…
2025-07-09 01:05INFOUser logged in: 331db828-f534-…106.146.57.128:34…ap-northeast-1_EM…
Access logDownload

Custom Queries

2025/07/01 〜 2025/07/31
Query TitleDescription
Service ContractsOverview of active and past service contractsDownload
Inactive Users (90 days)Users with no login in the last 90 daysDownload
Security AuditsLogin attempts and access changesDownload

Problem

Reviews are manual.

347daysdays since the last access review

To know who can get into what, a once-a-year spreadsheet review. Export a user list from each app, send it to distributors to confirm, and reconcile whatever comes back. If there's no reply, the ID stays.

Every audit costs the business and IT several days. And all you learn is the state on the day of the review; it starts going stale the next day. Being 347 days past the last review is nothing unusual.

Where things stand today

  1. Once a yearExport each app's user list to a spreadsheet, once a year
  2. EmailEmail the distributors to confirm
  3. ReconcileReconcile whatever comes back
  4. No replyRows with no reply stay as they are
  5. Next dayIt starts going stale the next day

Mechanism

Turn the access review from a task into a state.

Tactna doesn't make the access review a once-a-year event. It always holds the current state of users, teams, and access, and records every change. The review stops being something you do and becomes something you can look at any time.

  1. Users

    Team: All ▾
    3,842 users128 teams4 applicationsAs of today
    NameTeamRoleApplications
    TMisaki TanakaACME SalesMemberOrdering · Price list
    YTaro YamadaACME SalesAdminOrdering · Price list · Warranty
    NMakoto NakamuraKitakanto SetsubiMemberOrdering · Price list
    OMai OkadaSunrise TradingAdminOrdering · Warranty
    01Tactna

    Always hold the state

    Who belongs to which team, and which app they can enter with which role. Tactna holds this current state in a single place. No need to gather a list from each app.

  2. Activity Log

    Download CSV
    2026-09-01 〜 2026-09-18Append-only
    DateEventDetailsActor
    09-02 09:14User AddedMisaki Tanaka → Ordering · Price listACME Sales · Yamada
    09-02 08:00Auto-lockHanako Sato (120 days inactive)System
    09-01 10:05Audit Run128 teams · 3,842 IDs confirmedIT · Sasaki
    08-31 02:00Auto Delete37 accounts · removed from every appSystem
    02Tactna

    Record every change

    User creation, role changes, app assignments, locks, deletions. Every action is recorded on a timeline with when and by whom (or that it was automatic). Logins are kept in the authentication log too.

  3. Custom Queries

    2026-07-01 〜 2026-09-18 ▾
    QueryDescriptionSchedule
    Inactive Users (90 days)Users with no login for 90 daysWeeklyDownload
    Service ContractsActive and past contracts per teamMonthlyDownload
    Security AuditsLogin attempts and access changesOn demandDownload
    03Manufacturer

    Answer on the spot

    "Who at this distributor has access right now?" "Which IDs haven't been used in 90 days?" "Who added this person, and when?" Filter by date, distributor, or app and download the list as is.

Record

Three logs, and standard reports ready to use.

TypeWhat is recordedTypical use
Application logUser creation, changes, locks, deletions; changes to team and app assignmentsWho added or removed whom, and when
Authentication logLogin successes and failures, source IP, clientSpotting suspicious access, understanding actual use
Access logWhich user accessed which appUsage and whether access is still appropriate

Standard reports (Custom Queries)

  • Active and past contracts
  • Users with no login for 90 days
  • Login attempts and access changes (for security audits)
  • Pick a period and download in one click
  • Add reports with your own conditions
admin.tactna.example

System Log

Target Date · 2025/07/09 ▾
Application LogsDownload
TimestampLevelMessageUser ID
2025-07-09 00:50INFOAppTeam(3f3c97ea-…) status changed to `SUBSCRIBED`ffa0e68c-61b0-…
2025-07-09 00:35INFOAppTeam(a5b3340a-…) status changed to `SUBSCRIBED`ffa0e68c-61b0-…
2025-07-09 00:07WARNprimary payment method not found.ffa0e68c-61b0-…
2025-07-08 23:40INFOUser(010103aa-…) locked: 90 days inactive010103aa-a214-…
Authentication LogsDownload
TimestampLevelMessageIP AddressClient ID
2025-07-09 01:25INFOUser logged in: 532b718c-ed9d-…56.155.33.108:46512ap-northeast-1_EM…
2025-07-09 01:16INFOUser logged in: 532b718c-ed9d-…15.168.151.237:468…ap-northeast-1_EM…

Features

Hold it, keep it, export it.

  • Current-state list

    See who can get in with which role, by distributor and by app.

  • Change history

    Every creation, change, lock, and deletion is kept on a timeline with who did it (or that it was automatic).

  • Authentication log

    Login records are kept with the source IP.

  • Filtering

    Filter by date range, distributor, app, or user.

  • Download

    Lists and logs can be downloaded as CSV and other formats.

  • Standard reports

    Standard reports such as idle users, contracts, and security audits in one click.

  • Review by the distributor

    Distributor admins can review and tidy their own team's members in Tactna Portal.

Impact

347 days becomes today.

  • 347 days → 0 daysDays "since the last review"
  • Every dayreview frequency (from once a year)
MetricBeforeAfter
Answering an audit questionDaysOn the spot
Gathering the listsExport and reconcile per appNot needed

Case study

At KITZ, with distributor users' state and history consolidated in Tactna, the work of gathering and reconciling per-app lists disappeared. Together with automatic locking of idle IDs, user-management effort is down 70%.

Read the case study

FAQ

Frequently asked questions

Can this replace IGA's audit features?

For external users (distributors, partners, customers), Tactna shows the current state and history of who can get into what. The usual setup keeps employee IDs in IGA and governs only external IDs with Tactna.

Can it export in the format auditors want?

Lists and logs can be downloaded and filtered by period and scope. If you need a specific format, talk to us.

Can distributors review on their side too?

Distributor admins can always review their own team's members in Tactna Portal and remove reps who no longer need access.

Who can see the logs?

The manufacturer's admins. Distributor admins see only their own distributor's scope.

Are records kept for deleted users?

Yes. Even after a user is deleted, the history of who created them and when, how they changed, and when and under which rule they were deleted is kept.

Your next audit, without a spreadsheet.

Tell us how you run reviews today and which lists your audits ask for. In the demo you'll see lists and reports shaped to your distributor structure.