[6.20.9.1] - 2025-07-31

Fixed

  • Issue during secret decryption

[6.22.4.0] - 2025-07-31

Added

  • The API endpoint api/vulnerability/groupByCve now supports components

Changed

  • The FedRAMP POA&M Export now includes a Configuration Findings tab

Fixed

  • eMASS POA&M Exports in .xlsm format sometimes hang on generation
  • eMASS POA&M Exports contain an extraneous ".1" in Column D (Controls)
  • Access codes not accepted for completing questionnaires

[6.22.3.0] - 2025-07-29

Added

  • Charts in Report Builder can be grouped by week, month, quarter, or year when grouping a date field.

[6.22.2.0] - 2025-07-29

Changed

  • Added end-to-end encryption for all communication involving secrets

Fixed

  • Importing an exported Form Builder module no longer creates duplicate values or fails to import
  • Tabs render correctly on RegML Auditor Completeness page

[6.20.9.0] - 2025-07-28

Added

  • End-to-end encryption for all communication involving secrets

[6.20.8.0] - 2025-07-28

Added

  • Support for component level to the Veracode, Qualys, and Snyk integrations
  • Control implementation mapping functions
    • get_control_label_map_by_parent to map control names to implementation IDs by parent
    • get_control_id_map_by_parent to map control IDs to implementation IDs by parent

Changed

  • GraphQL query in get_open_issues_ids_by_implementation_id function to support components
  • Error handling during Wiz graphQL calls
  • Logic in Parameter.merge_parameters method to map controlImplementation to the required controlImplementationId

Fixed

  • Error during Qualys import_total_cloud integration and sync_qualys commands
  • ScannerIntegration trying to get control and issue mappings by plan while using a component

[6.22.1.0] - 2025-07-25

Changed

  • Added user experience enhancements through additional contextual options across the platform to provide more direct navigation options
  • Improved visual consistency of tabbed views throughout the platform
  • Updated how modules are loaded to improve performance

[6.20.7.0] - 2025-07-22

Added

  • .xlsx file support for Qualys import_scans integration

[6.22.0.0] - 2025-07-22

Added

  • Launched RegML Response Automation
    • Response Automation automatically extracts the questions from uploaded vendor questionnaires and then, using existing information in RegScale as context, the RegML AI language model drafts recommended answers to the questions
    • Currently SSPs are available for use as context for response drafting
    • Additional details can be found here: https://regscale.readme.io/docs/response-automation

[6.20.6.0] - 2025-07-22

Added

  • Wiz vulnerabilities command:
    • Parsing IP v4, v6, Serial Number from Wiz inventory into RegScale assets
    • Parsing Comments into RegScale Issue Module
    • Vulnerability Description population to populate data during POA&M Export
  • set_permissions command to set permissions on a RegScale objects via excel workbook
  • Prompting user when required secrets were missing in init.yaml and environment variables during Wiz sync_compliance command

Fixed

  • Chance of logging error during Wiz sync_compliance command
  • Wiz sync_compliance:
    • Honoring wizReportAge value and rerunning report
    • Setting status for control implementations

Removed

  • Deprecated functions in the regscale_utils module