Determining Change Documents
You can determine all changes to the following objects:
● A user (RSUSR100N)
● A role (RSSCD100_PFCG)
● A profile (RSUSR101)
● An authorization (RSUSR102)
1. Start the user information system (transaction SUIM).
2. Expand the Change Documents node.
3. Choose the Execute option next to For Users.
4. Specify the user and other restricting values, if necessary, on multiple tab pages, and choose Execute.
The result list Change Documents for Users appears.
...
1. Start the user information system (transaction SUIM).
2. Expand the Change Documents node.
3. Choose the Execute option next to For Roles.
4. Enter the required details and then choose Execute.
You can select an individual role or a particular change document with the fields Name of the Role and Change Number of the Document. You can use the fields Changed By and To Date or To Time to further restrict the selection. You can use the button next to Changed By to enter your user name in the input field.
You can also choose the following document types under Change Documents, where an additional input field is displayed at the end of the list for some document types:
○ Overview of change documents
○ Creating and deleting roles
○ Role description
○ Single roles in composite roles
○ Transactions in the role menu
○ Other objects in the role menu
○ Authorization data
○ Org. level value
○ Authorization profile
○ Attributes
○ MiniApps
○ Composite role home page
○ User assignment

With the User Assignment option, you can use the input field Assigned User to display the changes to role assignments for individual users.
You can use the option All Change Documents (Technical View) to display the contents of the key fields of the table entered in the field Change Document Table. If you enter an asterisk (*) as a placeholder or leave the field empty, all tables are used in the evaluation.
...
1. Start the user information system (transaction SUIM).
2. Expand the Change Documents node.
3. Choose the Execute option next to For Profiles (or For Authorizations).
4. Specify the profile (or the authorization) and other restricting values, and choose Execute.
The result list Change Documents for Users appears.
Initial entries for role data are differentiated from empty entries in the result list by the comment “unknown”.
You can also create user-specific ALV list variants in the result list.