---
name: event-notifications-at-events
title: Activity tracking events for Event Notifications
description: IBM Cloud services, such as Event Notifications, generate activity tracking events.
last-updated: 2026-05-11
---

> ## Documentation Index
> The table of contents for this documentation set is at https://cloud.ibm.com/docs/event-notifications?format=markdown
> The index for all IBM Cloud docs is at: https://cloud.ibm.com/docs/llms.txt
> Use these files to discover more information as needed.

_Include your activity tracking events file in an Observability topic group in the How to nav group in your toc.yaml file._



# Activity tracking events for Event Notifications
{: #at_events}



IBM Cloud services, such as Event Notifications, generate activity tracking events.
{: shortdesc}

Activity tracking events report on activities that change the state of a service in IBM Cloud. You can use the events to investigate abnormal activity and critical actions and to comply with regulatory audit requirements.

You can use IBM Cloud Activity Tracker Event Routing, a platform service, to route auditing events in your account to destinations of your choice by configuring targets and routes that define where activity tracking events are sent. For more information, see [About IBM Cloud Activity Tracker Event Routing](https://cloud.ibm.com/docs/atracker?topic=atracker-about&format=markdown).

You can use IBM Cloud Logs to visualize and alert on events that are generated in your account and routed by IBM Cloud Activity Tracker Event Routing to an IBM Cloud Logs instance.



## Locations where activity tracking events are generated
{: #at-locations}



## Locations where activity tracking events are sent by IBM Cloud Activity Tracker Event Routing
{: #atracker-locations}



Event Notifications sends activity tracking events by IBM Cloud Activity Tracker Event Routing in the regions that are indicated in the following table.

| Dallas (`us-south`) | Washington DC (`us-east`)  | Toronto (`ca-tor`) | Sao Paulo (`br-sao`) | Montreal (`ca-mon`) |
|---------------------|-------------------------|-------------------|----------------------|---------------------|
| [Yes]{: tag-green} | [Yes]{: tag-green} | [Yes]{: tag-green} | [Yes]{: tag-green} | [Yes]{: tag-green} |
{: caption="Regions where activity tracking events are sent in Americas locations" caption-side="top"}
{: #atracker-table-1}
{: tab-title="Americas"}
{: tab-group="atracker"}
{: class="simple-tab-table"}
{: row-headers}

| Tokyo (`jp-tok`)    | Sydney (`au-syd`) |  Osaka (`jp-osa`) | Chennai (`in-che`) | Mumbai (`in-mum`) |
|---------------------|------------------|------------------|--------------------|--------------------|
| [Yes]{: tag-green} | [Yes]{: tag-green} | [Yes]{: tag-green} | [Yes]{: tag-green} | [Yes]{: tag-green} |
{: caption="Regions where activity tracking events are sent in Asia Pacific locations" caption-side="top"}
{: #atracker-table-2}
{: tab-title="Asia Pacific"}
{: tab-group="atracker"}
{: class="simple-tab-table"}
{: row-headers}

| Frankfurt (`eu-de`)  | London (`eu-gb`) | Madrid (`eu-es`) |
|----------------------|---------------------|------------------|
| [Yes]{: tag-green} | [Yes]{: tag-green} | [Yes]{: tag-green} |
{: caption="Regions where activity tracking events are sent in Europe locations" caption-side="top"}
{: #atracker-table-3}
{: tab-title="Europe"}
{: tab-group="atracker"}
{: class="simple-tab-table"}
{: row-headers}


## Enabling activity tracking events for Event Notifications
{: #logs-enable}

As a security officer, auditor, or manager, you can use the IBM Cloud Logs service to track how users and applications interact with the Event Notifications service in IBM Cloud.
{: shortdesc}

IBM Cloud Logs records user-initiated activities that change the state of a service in IBM Cloud. Use this service to investigate abnormal activity and critical actions and to comply with regulatory audit requirements. You are also alerted about actions as they happen. The events that are collected comply with the Cloud Auditing Data Federation (CADF) Standard. For more information, see the [getting started tutorial for IBM Cloud Logs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-getting-started&format=markdown).


## Viewing activity tracking events for Event Notifications
{: #logs-viewing}



### Launching IBM Cloud Logs from the Event Notifications dashboard
{: #log-launch-integrated}



### Launching IBM Cloud Logs from the Observability page
{: #logevents-launch-standalone}



For information on launching the IBM Cloud Logs UI, see [Launching the UI in the IBM Cloud Logs documentation.](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-instance-launch&format=markdown)


## List of platform events
{: #at_actions_platform}



The following table lists the activity tracking event actions that the IBM Cloud platform generates Event Notifications instances are processed.

| Action                                   | Description |
|------------------------------------------|---------|
| `event-notifications.instance.create`           | An event is generated when you provision a service instance. |
| `event-notifications.instance.update`           | An event is generated when you rename a service instance or when you change the service plan. |
| `event-notifications.instance.delete`           | An event is generated when a service instance is deleted. |
| `event-notifications.instance.schedule_reclaim` | An event is generated when a service instance is pending_reclamation. |
| `event-notifications.instance.restore`          | An event is generated when a service instance is restored. |
{: caption="Actions that generate platform events" caption-side="bottom"}

The following table lists the actions that generate an event for managing service credentials that are associated with a service instance.

| Action                         | Description |
|--------------------------------|---------|
| `event-notifications.key.create` | An event is generated when an API key is created for a service instance through the *Service credentials* section of the service instance UI. |
| `event-notifications.key.delete` | An event is generated when an API key that is associated with a service instance is deleted from the *Service credentials* section of the service instance UI. |
{: caption="Actions that generate service credentials events" caption-side="bottom"}


## List of management events
{: #at_actions}



| Action             | Description      |
| -------------------| -----------------|
| `event-notifications.topics.read` | An event is generated when a topic is retrieved.|
| `event-notifications.topics.create` | An event is generated when a topic is created. |
| `event-notifications.topics.list` | An event is generated when you retrieve a list of topics.|
| `event-notifications.topics.update` | An event is generated when you update a topic.|
| `event-notifications.topics.delete` | An event is generated when you delete a topic.|
| `event-notifications.destinations.read` | An event is generated when you retrieve a destination.|
| `event-notifications.destinations.create` | An event is generated when you create a destination.|
| `event-notifications.destinations.list` | An event is generated when you retrieve the list of destinations.|
| `event-notifications.destinations.update` | An event is generated when you update a destination.|
| `event-notifications.destinations.delete` | An event is generated when you delete a destination.|
| `event-notifications.sources.read` |An event is generated when you retrieve a source. |
| `event-notifications.sources.create`|An event is generated when you create a source.|
| `event-notifications.sources.list`| An event is generated when you retrieve the list of sources. |
| `event-notifications.sources.update` |An event is generated when you update a source.|
| `event-notifications.sources.delete` | An event is generated when you delete a source. |
| `event-notifications.subscriptions.read` | An event is generated when you retrieve a subscription. |
| `event-notifications.subscriptions.create` | An event is generated when you create a subscription.|
| `event-notifications.subscriptions.list` | An event is generated when you retrieved the list of subscriptions.|
| `event-notifications.subscriptions.update` | An event is generated when you update a subscription.|
| `event-notifications.subscriptions.delete` | An event is generated when you delete a subscription.|
| `event-notifications.smtp_ibm.invite` | An event is generated when an invite is sent for Email subscription.|
| `event-notifications.sms_ibm.invite` | An event is generated when an invite is sent for SMS subscription.|
| `event-notifications.integrations.list` | List all the Key Management Services integrations. |
| `event-notifications.integrations.read` | Get a single Key Management Services integration. |
| `event-notifications.integrations.update` | Update an existing Key Management Services integration. |
| `event-notifications.pre-prod-destination-billing.set` | Set the billing unit for pre-prod destination after crossing the usage in the current unit. |
| `event-notifications.templates.create` | An event is generated when you create a template. |
| `event-notifications.templates.list` | An event is generated when you retrieve the list of templates. |
| `event-notifications.templates.update` | An event is generated when you update a template. |
| `event-notifications.templates.delete` | An event is generated when you delete a template. |
| `event-notifications.templates.read` | An event is generated when you get details of a template. |
{: caption="Actions that generate management events" caption-side="bottom"}


## Viewing events
{: #logs_ui}

Events that are generated by Event Notifications are automatically forwarded to the IBM Cloud Logs service instance available in the same location.

IBM Cloud Logs can have only one instance per location. To view events, you must access the web UI of the IBM Cloud Logs service in the same location where your service instance is available.

1. Create a service instance of [IBM Cloud Logs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-getting-started&format=markdown).
2. [Start the IBM Cloud Logs web console](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-instance-launch&format=markdown) to access your events.

## Event Notifications resources that are deleted or updated as a result of user actions
{: #at_en_del}

Deleting some Event Notifications resources causes associated resources to get deleted. A list of all such actions is as follows:

| EN-resource | Action | Associated resource | Comments |
|------------ |--------|---------------------|----------|
| Source | DELETE | Topics | Topics are updated and filters configured on them deleted. |
| Destination | DELETE | Subscription | All subscriptions that are associated with the deleted destination are deleted |
| Topic | DELETE | Subscription | All subscriptions that are associated with the deleted topic are deleted. |
{: caption="User action initiated update and delete" caption-side="top"}