Release notes for the October 12, 2025 update
Update Version 4.1.202510101641
New Features
Added support to mask passwords captured as keyboard session events.
The option improves security of Session Events report as well as sessions video recording playback in the situations when a user types passwords to 3rd party systems captured by the session event recording.
Added the option to share data with unauthenticated users using unique temporary links.
Safe link option allows to quickly share secret information with unauthenticated users using messaging applications in a secure way instead of sending sensitive information directly.
Safe links protect sensitive information from being pre-loaded by the messaging applications but require human interaction to access instead. Unique safe links expiration is based on time or number of views. Safe links management and access is audited. Sharing sensitive asset data using safe links could optionally require multi-level approval process.
Added the option to pin assets and containers for quick access.
The option improves asset database navigation by allowing users to select frequently used assets to view them in the designated Pinned Assets area.
Security
-
Updated application client side WEB framework to the latest version.
-
Updated application WEB Container to the latest version.
-
Updated database access component to the latest version.
-
Updated build time project consistency checker to the latest version.
Extensions
-
Added the explicit logic of modifying secret fields on the asset editing screen for clear state designation to preserve the existing value, to edit and to clear the field.
-
Added support for TOTP MFA tokens bypassed to the remote applications.
-
Added remote application for AWS WEB Console using two authentication factors.
-
Added support to display authentication or authorization errors on the login screen in case of failed login.
Fixes
-
Fixed the issue with PuTTY remote app typing the password in the previously opened application.
-
Fixed the issue with bypassing custom asset fields to the remote application.
-
Fixed the issue with missing context help for RDP and HTTP Proxy configuration pages.