Skip to main content

Change Log

March 10, 2026

  • Added Linear issue triage status display on report pages. Triage labels are fetched from the configured label group and shown inline.
  • Added Slack Web API integration with bot token support. Messages include permalinks when using the Web API path, with webhook as fallback.
  • Added deep link support through persona selection flow. Clicking a link from Slack preserves the destination URL through login and persona selection.

March 9, 2026

  • Added app-level sidebar navigation for organization members with collapsible toggle.
  • Replaced top nav gear icon and email with user avatar dropdown menu.
  • Split organization settings into separate pages: Organization, Reporter Guidance, Assets, Integrations.
  • Added VDP policy versioning with publish workflow and version history.
  • Added public VDP policy URLs using organization slugs.
  • Compliance proofs now generate as Markdown with SHA-256 document hash verification.
  • Added framework selection for compliance proof generation (NIST, ISO 27001, SOC 2, GDPR, and more).
  • Added Markdown and CSV download links on compliance proofs.
  • Added report severity tracking fields (triage date, remediation date, CVE/CWE, org severity).
  • Added organization asset management for in-scope systems.
  • Added language cleanup: "bug bounty" renamed to "reward program" throughout.
  • Added timestamps with time display across the application.

March 5, 2026

  • Added optional Impact field to reports for describing the potential impact of an issue.

March 4, 2026

  • Consecutive views and updates by the same person in the activity timeline are now collapsed into a single summary line with an expandable detail section.
  • Added per-organization sequential report numbers, displayed for org members in dashboards and report views.
  • Added inline image uploads in Markdown fields.
  • Added Invalid and Duplicate report statuses for org members.
  • Added Help and Change Log pages.