Reference

User Activity

Details when a Microsoft 365 service has been used the last time by a specific user

Part of the Microsoft 365 inventory.

Scan settings

Default scanning intervalAllowed scanning intervalsData removal during incremental scan
DailyDaily, Weekly, Bi-Weekly, Monthly, Never, InitialNo

Properties

Property Type Description Automation placeholder
Initially Scanned DateTime Shows when this object was initially found in a scan. {{UserActivity.CreatedTime}}
Display Name String {{UserActivity.DisplayName}}
Last Activity Date DateTime Last activity reported date {{UserActivity.LastActivityDate}}
Last scan update DateTime Shows when this object was last updated in a scan. If an object is found during a scan but no property has been changed this date will not change. {{UserActivity.LastModifiedTime}}
License Assigned Date DateTime License assigned date {{UserActivity.LicenseAssignedDate}}
Report Refresh DateTime Report refresh date {{UserActivity.ReportRefreshDate}}
Risk Score Int32 Stores risk score {{UserActivity.RiskScore}}
Risk Score Update DateTime Stores risk score update {{UserActivity.RiskScoreLastUpdate}}
Risk Score Value String Stores risk score value like Low_Low {{UserActivity.RiskScoreValue}}
Service String The name of related service {{UserActivity.Service}}
User User Reported activity of the user {{UserActivity.User}}
User Has License Boolean State of service`s license {{UserActivity.UserHasLicense}}
User Name String The name displayed in the address book for the user {{UserActivity.UserName}}

Relations

Relation Service Description
Subscription Microsoft 365 Microsoft 365 subscriptions licensed to the user
User Microsoft 365 All users registered in your tenant (internal, external)

Segments

This object does currently not have any segments.

Actions

This object does currently not have any actions.

Last updated: 7/19/2026