Login Activity
- How to review recent sign-ins and security events on your account
- What each activity row tells you (event, device, IP address, location, time)
- How to see which devices are currently signed in and sign them out remotely
- How to spot a sign-in you don't recognize and what to do about it
Your Login Activity is a record of the most recent security events on your AutoTalk account: sign-ins, session renewals, and password changes. Reviewing it regularly helps you catch unauthorized access early.
Accessing your login activity
- Open the account menu (your avatar at the bottom of the sidebar) and choose User settings.
- Switch to the Activities tab.
You can also open this tab directly at /user/profile?tab=activities.
The list shows your 10 most recent events, newest first.
What each row shows
Every event row includes:
| Detail | Description |
|---|---|
| Event | What happened, shown as a short label -- for example Signed in or Password changed (see the table below). An icon to the left of each row matches the event type, and the most recent row is marked Current session. |
| IP address | The network address the request came from, shown next to the event label. |
| Device | The browser, device, and operating system the event came from -- for example "Chrome · Mac · macOS". |
| Location | The approximate location (city and country) the request came from, when available. |
| Method | How the request was authenticated -- for example Email and password or Google. |
| Time | How long ago the event happened, alongside the exact date and time. |
Rows are tinted by event type: account creation and enabling 2FA are green, sign-ins are indigo, password changes and disabling 2FA are amber, and sign-outs are grey.
Event types
The events below are the most common ones; the feed may show additional event types as your account uses more features.
| Event | Meaning |
|---|---|
| Account created | Your account was first registered. |
| Signed in | A successful login to your account. |
| Session refreshed | Your existing session was renewed automatically (no new login was required). This is normal and happens periodically while you stay logged in. |
| Password changed | Your account password was updated. |
| 2FA enabled | Two-factor authentication was turned on. |
| 2FA disabled | Two-factor authentication was turned off. |
| Signed out | You logged out of a session. |
| Session revoked | A specific device's session was signed out remotely. |
| All sessions revoked | Every other session was signed out at once. |
| Recovery codes regenerated | Your two-factor recovery codes were regenerated. |
| 2FA setup started | You began enrolling in two-factor authentication. |
| Account locked | Your account was temporarily locked after too many failed attempts. |
| Email verified | Your email address was verified. |
| Account linked | An external sign-in provider (OAuth) was linked to your account. |
Active sessions
Below your recent activity, the same Activities tab shows an Active sessions card: the devices currently signed in to your account, one entry per device.
- Your current session is highlighted at the top, with its browser and operating system, IP address, and an approximate location map.
- Every other device is listed with its browser and operating system, IP address, approximate location, and when it was last active.
From this card you can sign devices out remotely:
- Click Revoke next to any session to sign that device out immediately.
- Click Log out of all other sessions (top right of the card) to sign out every device except the one you are using.
If no other devices are signed in, the card shows This is your only active session.
Using login activity to stay secure
Scan the list for anything you don't recognize -- especially a Signed in event from an unfamiliar IP address, device, location, or time.
If you see activity you can't account for:
- Change your password right away (see Security).
- In Active sessions, click Log out of all other sessions -- or Revoke any device you don't recognize.
- Enable two-factor authentication if you haven't already, so a leaked password alone is not enough to sign in.
- Notify your account administrator.
Session refreshed events are routine -- they keep you logged in without re-entering your password and do not mean someone else accessed your account. Pay closest attention to Signed in events, since those represent a fresh authentication.