CLI 6.42.0
August 26th, 2026
[6.42.0] - 2026-08-26
Added
- jcam position-to-role name mapping override, and a dry run that reports positions whose people would not be imported at all
- Splunk evidence owner and approver settings, and a
splunkSidssetting for offline evidence backfill runs - Opt-in Wiz incremental pulls that fetch only the inventory, issues, and vulnerabilities changed since the last successful sync
- New jcam preview_poc_roles command reports which points of contact would import as system roles, how many people would be assigned as users versus held as stakeholders, and which positions have no matching role, without writing anything
- JCAM points of contact are imported into RegScale system roles of the same name where one exists, alongside the existing custom fields, so repeated approver and reviewer positions no longer need a custom field each
- New jcam check_custom_fields command reports every custom field the import needs that a tenant is missing, grouped by module and tab, in one pass instead of one failed import at a time
- Prisma Cloud CSPM asset and vulnerability sync
- Palo Alto Networks SCM Compliance Center integration with control assessments, control tests, evidence collection, and POA&M creation
- FIPS-validated cryptographic modules in FedRAMP OSCAL SSPs are now imported into the RegScale Cryptography module
Changed
- Splunk evidence ingestion now refreshes the owner, approver and description on evidence it reuses across runs
- Scheduled automation guidance now covers CRON and Kubernetes CronJobs in place of Airflow DAGs
- Retired Airflow support: the Airflow container image, DAGs, and the airflow install extras are no longer published
- Stakeholder and system role external assignment records are no longer duplicated when an import is re-run
Fixed
- AWS ECR evidence collection now scopes Inspector V2 vulnerability findings by account ID and tags
- AWS findings evidence generation and OCSF export runs now honor account ID and tag filters instead of ingesting every finding in the region
- AWS findings runs scoped by account ID or tags no longer close existing issues that belong to accounts or tags outside the requested scope
- AWS Security Hub findings sync now honors account ID and tag scoping instead of returning findings for the entire region
- JCAM import now reports how many points of contact were imported and skipped instead of dropping unmatched people silently, and fails with an actionable message when required custom fields are missing
- QRadar event sync now scopes queries to the configured lookback window, which previously failed against the QRadar API
- FedRAMP OSCAL import now reads component types and property values from Rev4-era (OSCAL 1.0-Milestone2) documents in addition to Rev5
- FedRAMP SSP import now creates interconnection records and preserves connection security, data direction, information transmitted, and external point of contact details
