Updates:
- Assessment Renewal Support (11813):
- Enhanced support for renewing assessments.
- Global Delete Modal Customization (12098):
- Users can now customize the title of the Global Delete Modal.
- Corporate AI Usage (12127):
- Introduction of a new request type that sends the organization’s AI usage policy to the requester.
- Risk Register Phase II (12134):
- Phase II implementation of the Risk Register, allowing the addition of assessment questions with a dialog box for additional information. Updated landing page.
- AI Governance Module :
- Survey, scan and analyze AI usage within the organization.
- Consent Module Update (12253):
- Renamed “Documents” tab to “Policies” in the consent module.
- Consent Privacy Plugin Center Improvement (12256):
- Improved topic selection in the Consent Privacy Plugin Center, including the removal of topic selection in Step 3 and the change of “custom js” to “Tag Manager” in Step 9 of the cookie plugin.
- Scramble Job Summary for Failed Pre-Check (12181):
- Introduction of a scramble job summary for the failed pre-check report and process.
- Owner Concept for Quiklinks (12267):
- Implementation of an owner concept for Quiklinks to enable responses to issues.
- Scramble Jobs Configuration for Owner Email (12268):
- Configuration option for owner email in Scramble jobs.
- Scramble Job Notification for Configuration Issues (12269):
- Notification for configuration issues during the verification pre-check in Scramble jobs.
- Pre-Check Verification in Scramble Job Creation (12284):
- Verification pre-check during the creation of a Scramble job in Step one.
- Preview Data When Applying Rules (10893):
- Users can now preview data before applying rules, enhancing accuracy and control in the data management process.
- Enhanced UI for Scramble Job Completion Percentage (11260):
- The user interface has been updated to display the completion percentage of a scramble job, providing users with real-time insights into job progress.
Security Updates:
- Rate Limits for Password Reset (11892):
- Rate limits added to password reset functionality.
Security Patch:
- No security patches are included in this release.
Infrastructure Update:
- Cassandra Support Upgrade (12263):
- Support for the latest version of Cassandra in APIs and Quiklinks.
Bug Fixes:
- Disabled regulations with underlying enabled request types still appearing in all configuration pages (12038)
- Access Requests completed with no data getting two completion emails (12095)
- Consumer only requests show “All Brands” in the brands field (12117)
- Azure monitor alert MySQL production query alert (12130)
- “Add your first vendor” not showing up in the correct location (12157)
- Verification questions are displaying on the request details page after the request creation when they are in disabled mode for the organization (12160)
- Client favicon is replaced with the Truyo default when logged into the portal (12167)
- Cookie name selection showing it is selectable when it is not on the topic page (12204)
- View Assessment link showing internal server error (12207)
- Compliance report misspellings (12299)
- Requesters able to submit requests with an invalid email addresses format (12300)
- New Zealand misspelled in the default regulation summary (12303)
- Secure Vendors cannot see verification questions/answers for requests with portal accounts (12304)
- Org users are not shown verification questions when submitting a request on behalf of a customer (12345)
Hot Fixes (Version 6.11.0):
- Getting an error in Truyo when trying to make an extension (12228)
- Prod download request report not sent out (12251)
- Support not receiving email alerts/tickets for SMTP errors (12260)
- Errors when sending test emails while the emails have actually been sent (12262)
- Hide/Accept only necessary button showing multiple times on step 4 in the consent workflow (12265)
- Unable to delete erroneous conditional output rule and create a new one (12266)
Upcoming Features:
- Infrastructure Upgrade: Upcoming upgrades for components such as Spring Cloud, Spring Boot, JDK, Swagger/JUNIT, and related elements are set to improve performance and security.
- Assessment Improvements:
- SSP Generation for CMMC (Cybersecurity Maturity Model Certification).
- DOD Scoring for CMMC Assessments.
- Data Mapping Enhancements.
- Email Template Editor: An advanced template editing and viewing feature for email templates will be introduced, enabling tailored communications.
- Verification Questions Enhancement: The verification question system will be fortified, offering different questions based on request type, origin, and attributes. Support for conditional questions, answer formatting, and required fields will be included.
- Data Privacy Assessment Editor: Organizations will gain the ability to customize assessment questions within the Data Privacy Assessment module, enabling tailored evaluations.
- Enabling AI governance feature to scan source code repositories, structured content, unstructured content and emails for presence of AI