跳至主要内容
产品详细信息以英文显示。翻译即将推出。
Admin Actions / Audit Log — A build-to-order Magento 2 / Adobe Commerce extension that records every backend admin action — l — 1/1示意预览

A build-to-order Magento 2 / Adobe Commerce extension that records every backend admin action

— logins, page visits, entity edits, bulk operations and deletions — with full who/what/when/where context and selective rollback.

什么是 Admin Actions / Audit Log?

A build-to-order Magento 2 / Adobe Commerce extension that records every backend admin action — logins, page visits, entity edits, bulk operations and deletions — with full who/what/when/where context and selective rollback. Built to order by ECOSIRE for Magento 2 / Adobe Commerce (build-to-order) — indicative price from $999.00 USD; request a quote for a scoped proposal.

核心功能

Logs admin logins, failed login attempts, logout and backend page visits via observers on admin_user_authenticate_after and controller_action_predispatch
Captures field-level before/after diffs on entity create, edit and delete using plugins around repository save()/delete() service contracts
Records full context for every action: admin user, role, IP address, request URL/controller, timestamp, object type, object ID and store view scope
Logs bulk and mass actions per affected record (mass status change, mass delete, attribute mass update) rather than as a single opaque event
Selective rollback — restore a logged entity (or single changed field) to its prior serialized value from the audit grid
Dedicated admin grid under System with column filters, date range, user and action-type filters, and a side-by-side diff viewer
Own admin ACL resource (Ecosire_AdminActionsLog::view / ::rollback) so log access and rollback are restricted independently of other backend rights
CSV and XML export of filtered log entries for SIEM/SOC ingestion or auditor handoff
Cron-driven auto-cleanup with configurable retention window to keep the log table bounded
Read-only REST endpoint to pull audit entries into external compliance and monitoring tooling
Append-friendly schema (declarative schema db_schema.xml) with indexed columns for fast filtering on large logs
Configurable capture scope in Stores → Configuration — choose which entity types, controllers and config paths to track to control log volume

按需定制,全程代劳

无需自行搭建——由 ECOSIRE 构建、安装并提供支持的可用应用。

  1. 1

    您下单

    以一次性构建价格开始。我们在启动时与您共同确定范围。

  2. 2

    我们构建与安装

    ECOSIRE 在您的 Magento 2 上构建、配置并安装。

  3. 3

    上线 + 支持

    约一个工作周内上线,并包含两周上线支持。我们交付的代码中的缺陷免费修复。

关于此产品

Admin Actions / Audit Log gives security- and compliance-conscious merchants a complete, tamper-evident record of everything that happens inside the Magento 2 backend. Magento Open Source and Adobe Commerce ship only a thin admin action log (admin_user_session plus the report_event table and, on Commerce, the limited Admin Actions Log under System), which records logins and a handful of events but cannot tell you what field changed from what to what, and offers no rollback.

This extension is a proper module under app/code/Ecosire/AdminActionsLog, wired through di.invoke. It uses plugins (interceptors) around save/delete service contracts and observers on core events such as admin_user_authenticate_after, controller_action_predispatch and model_save_after to capture a before/after snapshot of every entity — products, categories, CMS, customers, orders, prices, configuration. Each record stores the user, role, IP address, request URL, timestamp, store view, object type and object ID, plus a serialized field-level diff. Bulk actions (mass status changes, mass deletes via the grid) are logged per affected record, not as one opaque event.

A dedicated grid under System → ECOSIRE Audit Log (its own ACL resource) lets authorized admins filter, inspect a side-by-side diff, and roll back selected changes to the prior value. Retention is handled by a cron job with configurable auto-cleanup, and you can export to CSV/XML for SIEM ingestion or auditor handoff. Read access is exposed over REST for integration.

Because it is build-to-order, ECOSIRE builds, installs and tests it on your Magento install — matched to your version, custom entities and theme — then supports it. There is no instant Marketplace download; you get a clean, code-reviewed module and a real engineer behind it.

你得到什么

  • Custom Magento 2 module Ecosire/AdminActionsLog installed under app/code (or as a Composer package) on your environment
  • Declarative schema (db_schema.xml) creating the audit and rollback tables with proper indexes and foreign keys
  • Admin grid UI, diff viewer and rollback controller wired through ACL, layout XML and UI components
  • di.xml, events.xml and webapi.xml configuration plus the observers and plugins that capture each action
  • Cron group definition (crontab.xml) for the auto-cleanup/retention job
  • Installation, configuration and rollback runbook, plus a short admin handover walkthrough

这是给谁的

Store Owner with Multiple Staff Admins

Runs a merchant with several backend users and contractors and needs to know exactly who changed a price, disabled a product or edited an order — and to undo a mistake fast without a developer or a database restore.

IT Security / Compliance Officer

Must satisfy PCI-DSS, SOC 2 or internal audit requirements for accountability of privileged backend access, and needs immutable who/what/when/where logs with IP and CSV/XML export into the SIEM.

Magento Agency / Solutions Engineer

Manages client stores and wants a clean, code-reviewed audit module installed per environment with version-matched compatibility, ACL-gated rollback and a documented runbook rather than a black-box marketplace plugin.

Admin Actions / Audit Log 如何比较

标准伊科西尔定制建造竞争对手Magento 2 原生
Field-level before/after diff of every edit包含部分支持部分支持不包括在内
Selective rollback of logged changes包含部分支持不包括在内不包括在内
Per-record logging of bulk/mass actions包含部分支持部分支持不包括在内
Captures user, IP, URL, timestamp, store view包含包含包含部分支持
Built, installed & supported on your install by the vendor包含包含不包括在内不包括在内
CSV/XML export + REST for SIEM/auditor handoff包含部分支持部分支持不包括在内
Dedicated ACL resource to gate rollback separately包含部分支持部分支持不包括在内
Instant self-service download / one-click install不包括在内不包括在内包含包含

关于Admin Actions / Audit Log的常见问题

How long until the extension is delivered and installed?

This is a build-to-order extension, not an instant download. Typical delivery is 5–10 business days depending on your Magento version (Open Source or Adobe Commerce), any custom entities you want tracked, and environment access. After a short scoping call we build and unit-test the module, then install it on your staging environment for sign-off before production. You receive a firm timeline in writing before work starts.

What ongoing support and updates are included?

Every build includes a warranty period for bug fixes, plus optional ongoing support. Because ECOSIRE delivers the source code, you own the module. We provide compatibility updates for Magento minor/security releases on request and can extend the captured entity scope or retention rules as your store evolves. Support is handled directly by the engineers who built it — there is no third-party marketplace queue.

Does it work on both Magento Open Source and Adobe Commerce?

Yes. The module targets the standard Magento 2 framework (DI, plugins, observers, service contracts, declarative schema) so it runs on both Magento Open Source and Adobe Commerce. On Adobe Commerce it complements — rather than conflicts with — the built-in Admin Actions Log by adding field-level diffs and rollback. We confirm your exact version and edition during scoping and test against it.

Will logging every admin action slow down the backend?

No meaningful impact for normal use. Capture happens on the existing save/delete and dispatch flow with indexed inserts; high-volume work like bulk imports can be excluded from capture via configuration so a 50,000-row product import does not bloat the log. The auto-cleanup cron keeps the table bounded, and the schema is indexed for fast filtering even with millions of rows.

How does rollback work and is it safe?

Each change stores a serialized snapshot of the entity (or the specific changed fields) before and after. Rollback re-applies the prior value through the same repository service contracts, so it respects validation and indexing rather than writing raw SQL. Rollback is gated behind its own ACL resource, so you can grant view-only audit access to most admins and restrict rollback to senior staff. The rollback itself is also logged.

Can we feed the logs into our SIEM or hand them to an auditor?

Yes. You can export any filtered view to CSV or XML directly from the admin grid, and there is a read-only REST endpoint to pull entries programmatically into a SIEM/SOC pipeline or scheduled report. Records include user, role, IP, URL, timestamp, store view and object reference, which is typically what auditors expect for privileged-access accountability.

申请报价

Admin Actions / Audit Log

A build-to-order Magento 2 / Adobe Commerce extension that records every backend admin action — logins, page visits, entity edits, bulk operations and deletions — with full who/what/when/where context and selective rollback.

  • Logs admin logins, failed login attempts, logout and backend page visits via observers on admin_user_authenticate_after and controller_action_predispatch
  • Captures field-level before/after diffs on entity create, edit and delete using plugins around repository save()/delete() service contracts
  • Records full context for every action: admin user, role, IP address, request URL/controller, timestamp, object type, object ID and store view scope
  • Logs bulk and mass actions per affected record (mass status change, mass delete, attribute mass update) rather than as a single opaque event

申请报价

告诉我们您对 Admin Actions / Audit Log 的需求,我们将发送价格、许可选项和量身定制的方案,通常在一个工作日内。

现在无需付款。此操作会向我们的团队发送报价请求——我们会通过邮件跟进价格和后续步骤。