The number of websites and web services being monitored by Tracker is increasing. This increase is expected to impact your organization's summary scores for Hypertext Transfer Protocol Secure (HTTPS) and Domain-based Message Authentication, Reporting & Conformance (DMARC).
The Tracker’s primary account is being designated to the Designated Official for Cyber Security (DOCS) of each organization. This will provide DOCS visibility into changes affecting their organization’s digital security.
Other Changes:
- Get notified when your digital footprint changes. Daily email notification when changes occur to your organization's digital footprint
- Monitor changes to your organization using the audit logs. Improved logging to understand changes to your digital footprint
- Request affiliation with organizations. Users can request affiliation with your organization
- New SSL/TLS scanning capabilities. Can analyze the SSL/TLS configuration of all servers behind a domain
- New dashboard metrics. Access to your September 2023 score is available for your organization
- Tag the domains that matter. Help calibrate your score by tagging production systems
- myTracker. Track what matters to you
Other changes, bug fixes, and security updates have been applied.
What's Changed
- Handle improper max_age directive by @FestiveKyle in #4478
- Getting started documentation by @lcampbell2 in #4435
- Make scanner service sleep at beginning of handler - hopefully fix async by @FestiveKyle in #4494
- Fix info button styling by @lcampbell2 in #4497
- Add certificates to filters by @lcampbell2 in #4464
- Separate connect and read timeouts for http requests by @FestiveKyle in #4500
- Only create affiliation on invite if not already affiliated by @FestiveKyle in #4505
- Added protection in useDebouncedFunction by @lcampbell2 in #4502
- Send bilingual org invite/create account email by @FestiveKyle in #4513
- Add script to downgrade list of affiliations to the "USER" level by @FestiveKyle in #4508
- Add script for mass inviting users by @FestiveKyle in #4506
- Use the invited user's preferred language in email by @FestiveKyle in #4516
- Bring B features over to A stream by @lcampbell2 in #4432
- Users can request invites to organizations by @lcampbell2 in #4507
- New summary charts by @lcampbell2 in #4498
- add new api secrets to cloudbuild by @lcampbell2 in #4526
- Change insider wording by @lcampbell2 in #4148
- change feature preview banner wording by @lcampbell2 in #4529
- Update connection chain results display by @lcampbell2 in #4530
- Bump requests from 2.28.0 to 2.31.0 in /scanners/web-processor by @dependabot in #4539
- Bump requests from 2.28.1 to 2.31.0 in /scanners/dns-scanner by @dependabot in #4540
- Bump requests from 2.28.1 to 2.31.0 in /scanners/web-scanner by @dependabot in #4541
- Bump requests from 2.28.2 to 2.31.0 in /services/summaries by @dependabot in #4542
- Bump requests from 2.26.0 to 2.31.0 in /scanners/log4shell-scanner by @dependabot in #4538
- Archive organization mutation by @lcampbell2 in #4544
- Fix tiered summary chart text by @lcampbell2 in #4546
- Find my orgs filter verified by @lcampbell2 in #4548
- Filter domains by rcode blocked pending status by @lcampbell2 in #4550
- Alert org admins of recent activity by @lcampbell2 in #4524
- Bump requests from 2.26.0 to 2.31.0 in /scanners/log4shell-scanner by @dependabot in #4554
- Upgrade base image by @FestiveKyle in #4559
- Update base image summaries by @FestiveKyle in #4560
- Pin cloudbuild arango version by @FestiveKyle in #4562
- Reveal hidden domains to admins by @lcampbell2 in #4553
- Redirect org footprint emails to tracker by @lcampbell2 in #4564
- Allow removal of nxdomains by @lcampbell2 in #4565
- use ignore_domain func to exclude domains from summaries by @lcampbell2 in #4566
- Optimize domain connections by user id loader by @FestiveKyle in #4575
- Clean up transaction calls by @FestiveKyle in #4578
- Fix collected domains query for myTracker by @FestiveKyle in #4579
- Return domain object for collected domains in myTracker view by @FestiveKyle in #4581
- Update k8s cronjob versions by @FestiveKyle in #4580
- Ac update by @FestiveKyle in #4561
- Remove istio injection from db namespace by @FestiveKyle in #4584
- add services dir to image path in org-footprint cloudbuild by @lcampbell2 in #4585
- Bump cryptography from 39.0.1 to 41.0.0 in /scanners/web-scanner by @dependabot in #4569
- add flag to tag domains as staging in bulk add by @lcampbell2 in #4587
- change RoleEnum to InvitationRoleEnums in InviteUserToOrg mutation by @lcampbell2 in #4590
- Reveal 2.1615 features by @lcampbell2 in #4589
Full Changelog: 2.1.0-beta...2.1615