IP Library › Granted Patent US 11,886,608
Granted Patent B2
US 11,886,608 · App. 17/469,675 · Granted Jan 30, 2024

Subject logging

Inventors: Katherine Sue Hansen (Clayton, CA); Suma Handalagere (San Ramon, CA); Sanyukta Inamdar (Berkeley, CA); Vamsi Thummala (Pleasanton, CA)
Assignee: Workday, Inc.
G06F21/6227G06F2221/2101G06F2221/2135
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,886,608
App. No.
17/469,675
Granted
Jan 30, 2024
Kind
B2
Abstract

The present application discloses a method, system, and computer system for monitoring tasks with respect to information stored in a database system. The method includes receiving a request to execute a task with respect to a database, wherein the request is associated with an identifier corresponding to a user that inputs a query for the request; determining whether the task is authorized for the user; in response to a determination that the task is authorized for the user, obtaining a set of information that is to be returned for the task; determining a subset of the set of information, wherein the subset of the set of information comprises one or more parts of the set of information for which the user has access permission; and storing a record of the request to execute the task, wherein the record comprises an indication of the user, and an indication of subset of the set of information.

Claims (46)

1. A system, comprising:

a storage; and

one or more processors configured to:

receive a request to execute a task with respect to a database of a database system, wherein the request is associated with an identifier corresponding to a user of the database system associated with the request, wherein the task comprises obtaining a report including compensation information with respect to an employee of an organization associated with the database system;

determine whether the task is authorized for the user;

in response to a determination that the task is authorized for the user, obtain a set of information from the storage that is to be returned for the task;

determine a subset of the set of information, wherein the subset of the set of information comprises one or more parts of the set of information for which the user has access permission; and

store a record of the request to execute the task, wherein the record comprises an indication of the user, and an indication of subset of the set of information.

2. The system of claim 1 , wherein the record further comprises one or more of a time or a date when the request to execute the task is received or the set of information for which the user is permitted to access is provided to the user.

3. The system of claim 1 , wherein storing the record comprises:

storing information pertaining to the record in a logging queue, wherein the logging queue comprises record information for a plurality of records respectively corresponding to a plurality of requests to execute tasks; and

determining that one or more batching criteria associated with committing records is satisfied; and

in response to determining that the one or more batching criteria associated with committing the records is satisfied, committing record information to a log pertaining to the record in the logging queue.

4. The system of claim 3 , wherein the log is searchable by another user of the database system that has permissions to view or use the log.

5. The system of claim 4 , wherein the log is searchable by the another user based at least in part on one or more of a type of information that was returned with respect to one or more tasks for which the record is stored in the log.

6. The system of claim 3 , wherein the log is searchable by another user of the database system to obtain the subset of the set of information returned to the user in response to the request to execute the task with respect to the database.

7. The system of claim 6 , wherein the one or more processors are further configured to provide at least part of the log to the another user, the at least part of the log being provided in a manner that provides a selectable link to at least part of the subset of the set of information.

8. The system of claim 3 , wherein the identifier is a first identifier, and wherein the log is searchable based at least in part on a second identifier, the second identifier being associated with the set of information returned with respect to the tasks for which the record is stored in the log.

9. The system of claim 3 , wherein:

the log is searchable by a permitted user of the database system based at least in part on a type of the set of information returned to the user in response to the request to execute the task.

10. The system of claim 3 , wherein the one or more batching criteria includes a number of records for which information is stored in the logging queue.

11. The system of claim 3 , wherein the one or more processors are further configured to:

apply a machine learning process to analyze the log to detect an anomaly with respect to the task; and

in response to detecting the anomaly, perform an active measure.

12. The system of claim 11 , wherein the machine learning process is trained using historical information pertaining to a plurality of tasks requested by a plurality of users of the database system.

13. The system of claim 1 , wherein the set of information comprises user or employee information pertaining to one or more users or employees of a tenant associated with a database system.

14. The system of claim 1 , wherein determining the subset of information comprises determining whether the user has access permissions associated with a piece of information of the set of information.

15. The system of claim 14 , wherein:

determining whether the user has access permissions associated with a piece of information of the set of information comprises determining an access permission associated with one or more of an object or an attribute of the object;

wherein the database is an object-oriented database; and

wherein the object is comprised in the object-oriented database.

16. The system of claim 1 , wherein:

the request to execute the task is automatically initiated on behalf of the user in response to the system determining to provide to the user information responsive to the task; and

the system determines providing to the user information responsive to the task based at least in part on a context of the user, the system, or information responsive to the task.

17. A method, comprising:

receiving, by one or more processors, a request to execute a task with respect to a database of a database system, wherein the request is associated with an identifier corresponding to a user of the database system associated with the request, wherein the task comprises obtaining a report including compensation information with respect to an employee of an organization associated with the database system;

determining whether the task is authorized for the user;

in response to a determination that the task is authorized for the user, obtaining a set of information from a storage that is to be returned for the task;

determining a subset of the set of information, wherein the subset of the set of information comprises one or more parts of the set of information for which the user has access permission; and

storing a record of the request to execute the task, wherein the record comprises an indication of the user, and an indication of subset of the set of information.

18. A non-transitory computer program product storing computer instructions executed by a processor for:

receiving, by one or more processors, a request to execute a task with respect to a database of a database system, wherein the request is associated with an identifier corresponding to a user of the database system associated with the request, wherein the task comprises obtaining a report including compensation information with respect to an employee of an organization associated with the database system;

determining whether the task is authorized for the user;

in response to a determination that the task is authorized for the user, obtaining a set of information from a storage that is to be returned for the task;

determining a subset of the set of information, wherein the subset of the set of information comprises one or more parts of the set of information for which the user has access permission; and

storing a record of the request to execute the task, wherein the record comprises an indication of the user, and an indication of subset of the set of information.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 11, 2022
From: HANSEN, KATHERINE SUE; HANDALAGERE, SUMA; INAMDAR, SANYUKTA; THUMMALA, VAMSI
To: WORKDAY, INC.
Reel/Frame 058994/0494 →
Continuity (1)
Related Publication 20230073476A1 · Mar 9, 2023