Single sign-on, plus attack-surface and findings improvements
This release adds single sign-on to Business and Enterprise plans, plus Azure DevOps PR review configuration. We've also sharpened the attack-surface map, added manual PR linking to findings, included finding identifiers in synced titles, and fixed several display issues across the product.
New
Single sign-on (SSO)
Set up SSO for your organisation with verified domains and connections, then let your team sign in through your own identity provider. (available on Business and Enterprise plans)
Azure DevOps PR reviews
You can now configure PR reviews for Azure DevOps, with reviews dispatched automatically via webhooks when pull requests are opened. (for teams using PR reviews)
Improved
- Sharper attack-surface map: the map now follows the underlying graph layout more closely for a clearer view of your attack surface.
- Manual PR linking: you can now link a pull request to a finding directly from the UI, and the search now includes older pull requests when you do.
- Finding identifiers in synced titles: findings synced to your issue tracker now include the finding identifier in the title, so they're easier to match up.
- Easier changelog access: the changelog is simpler to find once you're signed in.
Fixed
- Findings now show counts for the selected pentest rather than org-wide totals.
- Finding activity now renders as Markdown with clearer spacing.
- IP asset rows and the attack-surface map now show open ports.