Skip to main content

4. Setup

logologo

Part of the Access Transparencyaccesstransparency manual — see also 1. Introduction, 2. What's New, 3. Scope, 5. Usage, 6. Troubleshooting.

4.1 Installation

4.2 Configuration

4.2.1 Automatic actions

ThePurge cronold taskinteraction PurgeInteractionLogslogs (classSetup PluginAccesstransparencyUserinteractions,→ methodAutomatic PurgeInteractionLogs)actions) runsautomatically deletes old document-open records once they're older than the retention period configured on the schedule"Access definedTransparency" atconfiguration registration timepage (default:Setup hourly)→ General → "Access Transparency" → "Log retention"):

  • IfKeep retentionall — nothing is setever todeleted.
"keepDelete all"all (DELETE_ALL— inevery PluginAccesstransparencyConfig),document-open record is removed each time the task skips any deletion.runs. If retention is set to "delete all" (KEEP_ALL), every row in glpi_plugin_accesstransparency_userinteractions is deleted. If retention is set to aA number of months (e.g.— "12only months"), rowsrecords older than current_timethat - (months * 30.44 * 24 * 3600) secondscutoff are deleted.removed; recent ones stay.

The task is called via Session::addMessageAfterRedirect() logging the number of deleted rows.


4.3 Permissions

The plugin enforces one right, checked at two points:

    Tab visibility — Session::haveRight('profile', READ) gatesSeeing the Profile"Access tab;Transparency" Session::haveRight('plugin_accesstransparency_view',tab READ)on gates the User and Document tabs. Both checks live in the respective class's displayTabContentForItem() method. CSV export — both export routes (front/export_user_csv.php and front/export_document_csv.php) check Session::haveRight('plugin_accesstransparency_view', READ) before serving the file.

    Additionally, the CSV export routes respect standard GLPI visibility rules for thea User or Document page requires the Historical permission on the logged-in questionuser's profile (Administration → Profiles → profile → "Access Transparency" tab). It's Read-only — athere's usernothing to grant beyond "can see it or can't." CSV export uses the same permission: if you can onlysee the tab, you can export historyit, and only for itemsUsers/Documents they wouldyou're otherwise be allowed to view.

    Generated for Access Transparencyaccesstransparency 1.2.0-beta2 on GLPI 11.0.80 — 2026-08-24.