# Changelog

Every change we ship, in plain language.

All Access ReviewDocumentsIAMCompliance PortalGovernanceCookie BannerRisk ManagementTPRMIntegrationsAuditsDevicesAssetsInternationalizationInfraPrivacy 
## September 2026
8 changes [Sep 9 
### Search Documents by Title

The document list now has a search box. Type part of a title and the list filters as you go, and the query stays in the URL so a shared link opens the same view.
Documents](/changelog/2026-09-09-search-documents-by-title)[Sep 8 
### Identity Avatars for People

Anyone in the organization can upload a profile photo. It replaces the initials placeholder on people lists, owner cells, and the account menu.
IAM](/changelog/2026-09-08-identity-avatars)[Sep 7 
### GCP Access Review Connector

Access Review now supports Google Cloud Platform as a connector, listing project IAM principals and service accounts with best-effort MFA and last-activity signals from a dedicated setup page in the console.
Access Review](/changelog/2026-09-07-gcp-access-review-connector)[Sep 7 
### Rich Text for Task Descriptions and Comments

Task descriptions and comments now use the same editor as documents. You can format text, add lists, and structure updates instead of writing everything as a flat string.
Governance](/changelog/2026-09-07-task-rich-text-editor)[Sep 3 
### Personal API Keys Retired

Personal API keys and their creation UI are gone. Use scoped OAuth access tokens instead, which limit exactly what a token can do rather than acting with a user's full permissions.
IAM](/changelog/2026-09-03-personal-api-keys-retired)[Sep 2 
### Comments on Tasks

Tasks can now hold a running conversation. Add a comment, see who said what and when, and keep the discussion attached to the work instead of scattered across Slack or email threads.
Governance](/changelog/2026-09-02-task-comments)[Sep 1 
### AWS Access Review Setup Gets Easier

Connecting AWS to Access Review used to mean hand rolling an IAM role. Now Probo hands you the exact Terraform snippet or CloudFormation link, and the review picks up MFA status and last login automatically.
Access Review](/changelog/2026-09-01-aws-access-review-setup)[Sep 1 
### Rewind Risk Analyses to Any Date

Risk analyses change over time as treatments get applied and scores move. The new as-of view reconstructs the heatmap, plan table, and measures exactly as they looked on any past date, not just today.
Risk Management](/changelog/2026-09-01-risk-analysis-as-of-view)
## August 2026
29 changes [Aug 28 
### Device Enrollment Moves to the Employee Portal

Employees can now see their registered devices and enroll new ones from the employee portal, with a three-step wizard and a manual one-time token option for devices that can't run the agent.
Devices](/changelog/2026-08-28-employee-portal-device-enrollment)[Aug 28 
### Employee Portal: Signing and Approvals Get a New Home

A dedicated employee portal replaces the console's employee pages, with independent signature and approval queues, document viewers with version history, and a dashboard that surfaces what's pending.
Documents](/changelog/2026-08-28-employee-portal-signing-approvals)[Aug 27 
### Fork a Risk Analysis

Forking a risk analysis copies its diagrams, treatment plans, and their relations into a fresh analysis, so a new review period starts from the same graph instead of a blank page.
Risk Management](/changelog/2026-08-27-fork-a-risk-analysis)[Aug 26 
### Visitors Page for the Compliance Portal

Manage compliance portal visitors in the visitors page with document access managed as a real table, multi-select bulk actions, and search by name or email instead of a single edit dialog.
Compliance Portal](/changelog/2026-08-26-compliance-portal-visitors-page)[Aug 26 
### NDA Uploads via PDF Drop

The compliance portal's NDA card now accepts a PDF dropped straight onto it, with download and delete controls up top and the full signature history behind an activity popover.
Compliance Portal](/changelog/2026-08-26-nda-pdf-upload)[Aug 26 
### Treatment Plans for Risk Analyses

Risk analyses now hold a dedicated treatment plan for each risk with its own score, treatment choice, and owner, and linked measures move it from inherent toward residual automatically.
Risk Management](/changelog/2026-08-26-treatment-plans-risk-analyses)[Aug 25 
### ChatGPT and Codex Can Now Log In to Probo's MCP

ChatGPT and Codex can connect to Probo over MCP with a real OAuth login instead of a workaround, using resource bound tokens so each connection is scoped to your Probo organization.
Integrations](/changelog/2026-08-25-chatgpt-codex-mcp-oauth)[Aug 25 
### Attribution Labels on Tracker Pages

Tracker pages in the console now show whether a script is a known vendor, first party code, or still being identified, even when the underlying catalog entry has no vendor name of its own.
Cookie Banner](/changelog/2026-08-25-tracker-catalog-attribution)[Aug 24 
### New Access Review Connectors

Access Review now connects to GitHub App installations and Resend, so you can pull in access data from two more tools without setting up a workaround or a manual import.
Access Review](/changelog/2026-08-24-new-access-review-connectors)[Aug 21 
### More Access Review Connectors

Access Reviews now connect to Calendly and Cal.com over OAuth, including Cal.com team accounts, so scheduling tool access shows up alongside every other connector in the same review.
Access Review](/changelog/2026-08-21-access-review-calendly-cal-com)[Aug 20 
### Webhook Deliveries Now Retry Automatically

Outbound webhooks are now durable delivery jobs with automatic retries, exponential backoff, Retry-After support, and stable idempotency headers so a timeout or 5xx no longer drops the event after one attempt.
Integrations](/changelog/2026-08-20-webhook-delivery-retries)[Aug 18 
### authentik as an Access Review Source

Access Review can now pull user and MFA data straight from authentik, so teams running their own identity provider don't need a manual export to run a review.
Access Review](/changelog/2026-08-18-authentik-access-review-source)[Aug 18 
### Probot: Compliance Notifications in Slack

Employees can link their Slack identity to their Probo account with /probot login, then get compliance review and approval notifications right in Slack, complete with action buttons for each request.
Integrations](/changelog/2026-08-18-probot-slack-bot)[Aug 14 
### A Clearer Path to Install the Probo Agent

Device enrollment now walks people through installing the Probo agent before they pick an organization, and skips the step if it's already installed.
Devices](/changelog/2026-08-14-clearer-path-to-install-the-probo-agent)[Aug 14 
### More Control Over Risk Analysis

Set a review period with start and end dates and pick the right matrix size, 3x3, 4x4, or 5x5, for each risk analysis so every assessment reflects the scale your team actually uses.
Risk Management](/changelog/2026-08-14-more-control-over-risk-analyses)[Aug 13 
### AI Systems Register

Keep a complete inventory of every AI system in use across your organization, with owner, purpose, and status details ready to share in audits and compliance reviews.
Governance](/changelog/2026-08-13-ai-systems-register)[Aug 13 
### Compliance Portal Manager Roles

Delegate day-to-day compliance portal work with two focused roles, so teammates can manage portal content or approve visitor access requests without full organization admin access.
Compliance Portal](/changelog/2026-08-13-compliance-portal-manager-roles)[Aug 13 
### Disable Resource Detection on the Cookie Banner

Turn off script and iframe scanning per banner when you only need cookie consent, so the SDK skips resource detection while cookies and storage keep reporting to you as usual.
Cookie Banner](/changelog/2026-08-13-disable-resource-detection-cookie-banner)[Aug 11 
### Nuki joins Access Reviews

Nuki smart locks now join Access Reviews, so you can see who can open which office doors. This connector was built by a customer.
Access Review](/changelog/2026-08-11-new-access-review-connector)[Aug 10 
### Full SCIM Audit Detail

SCIM provisioning events now store the full request and response body, so admins can see exactly what the identity provider sent and received.
IAM](/changelog/2026-08-10-full-scim-audit-detail)[Aug 8 
### Compliance Portal Requests Toggle

Admins can now turn the public Requests surface on a compliance portal on or off, so visitors only see it when you want them filing requests.
Compliance Portal](/changelog/2026-08-08-compliance-portal-requests-toggle)[Aug 8 
### Custom Watermark Text on Exports

Document export watermarks can now say whatever you want, up to 64 characters, instead of being locked to the downloader's email.
Documents](/changelog/2026-08-08-custom-watermark-text-on-exports)[Aug 8 
### More Access Review Entry Filters

Filter access review campaign entries by authentication method and account status, sitting next to the MFA filter already in the toolbar.
Access Review](/changelog/2026-08-08-more-access-review-entry-filters)[Aug 8 
### Simpler Way to Build Compliance Portals

Adding documents, audits, and subprocessors to a compliance portal is now a checkbox list instead of jumping through separate add dialogs.
Compliance Portal](/changelog/2026-08-08-simpler-way-to-build-compliance-portals)[Aug 5 
### DORA Business Functions Register

Track DORA Critical ICT Functions in a dedicated register and link each one to the assets, third parties, and people that keep it running.
Assets](/changelog/2026-08-05-dora-business-functions-register)[Aug 5 
### Smarter Privacy Law Detection

Cookie consent now resolves geolocation to the state or province, so US and Canadian visitors get the privacy law that actually applies.
Cookie Banner](/changelog/2026-08-05-smarter-privacy-law-detection)[Aug 4 
### CCPA Privacy Choices Panel

California visitors get a Your Privacy Choices panel to opt out of data sale and sharing, plus a notice-only banner where no consent law applies.
Cookie Banner](/changelog/2026-08-04-ccpa-privacy-choices-panel)[Aug 4 
### Dutch Language Support

Dutch is now supported across the console, compliance portal, and cookie banner—including documents, NDA flows, access requests, and Privacy Choices panel copy.
Internationalization](/changelog/2026-08-04-dutch-language-support)[Aug 3 
### Multiple Compliance Portals

Run multiple compliance portals from one organization, each with its own catalog, visitor experience, and publication controls for different products.
Compliance Portal](/changelog/2026-08-03-multiple-compliance-portals)
## July 2026
17 changes [Jul 29 
### Log Exports for Audits

Export audit logs or SCIM events as a CSV from the console, Connect, MCP, or CLI when auditors or your SIEM need the raw history.
IAM](/changelog/2026-07-29-audit-and-scim-log-exports)[Jul 28 
### Audit Start and End Dates

Audits now track a start and end date, so review windows show up as sortable columns without opening each audit to check.
Audits](/changelog/2026-07-28-audit-start-and-end-dates)[Jul 27 
### Bulk Document Access Requests

Portal visitors can request access to several locked documents at once instead of filing a separate request for each one.
Compliance Portal](/changelog/2026-07-27-bulk-document-access-requests)[Jul 27 
### French Language Support

Probo speaks French now, in the console and in the compliance portal your customers see, its first shipped language besides English.
Internationalization](/changelog/2026-07-27-french-language-support)[Jul 27 
### More Access Review Connectors

Access Reviews now cover five more platforms, from web analytics to payments infrastructure, including Google Analytics and Segment.
Access Review](/changelog/2026-07-27-more-access-review-connectors)[Jul 25 
### Employee Device Management

Admins get a full view of employee device posture in the console, and employees can self-serve enrollment confirmation without an assumed session.
Devices](/changelog/2026-07-25-employee-device-management)[Jul 22 
### Updates Feed for Your Compliance Portal

Visitors can now browse your compliance portal updates as a real feed, and subscribe by email to hear about changes automatically.
Compliance Portal](/changelog/2026-07-22-compliance-portal-updates-feed)[Jul 22 
### Filter subprocessors on your Compliance Portal

Visitors can now narrow down your subprocessor list by facet instead of scrolling through everything on the public trust page.
Compliance Portal](/changelog/2026-07-22-filter-subprocessors-compliance-portal)[Jul 20 
### Compliance Portal Replaces Trust Center

Trust Center is now the Compliance Portal, live in production with its own branded sign-in, custom domain, and document library.
Compliance Portal](/changelog/2026-07-20-compliance-portal-replaces-trust-center)[Jul 20 
### Data Subject Rights Requests

Visitors can now file GDPR and CCPA rights requests directly from the Compliance Portal and track their status without an email chain.
Privacy](/changelog/2026-07-20-data-subject-rights-requests)[Jul 15 
### Webhooks Now Show What Changed

Update events now include the entity's prior state, so you can diff old vs new values without making a separate lookup call.
Integrations](/changelog/2026-07-15-webhook-updated-from-snapshots)[Jul 13 
### More Access Review Connectors

Four new managed connectors mean fewer manual access reviews. Provider logos and ownership checks ship before a connection goes live.
Access Review](/changelog/2026-07-13-access-review-scaleway-yousign-railway-crisp)[Jul 13 
### Risk Assessments now has its own tab

Jump straight from a risk to its assessments without leaving the risks list, saving clicks every time you review your risk register.
Risk Management](/changelog/2026-07-13-risk-assessments-tab-risks-page)[Jul 9 
### Edit Draft Documents via n8n

The document.update node action now edits body, title, classification, and type, and creates a draft automatically when none exists.
Documents](/changelog/2026-07-09-2026-07-09-edit-draft-documents-n8n)[Jul 9 
### FERPA and PCI DSS Frameworks

Import FERPA and PCI DSS controls straight into your compliance program, no manual setup needed for student or payment card data.
Governance](/changelog/2026-07-09-2026-07-09-ferpa-pci-dss-frameworks)[Jul 2 
### Document Lifecycle Webhooks

Subscribe to document created, updated, signed, and approved events instead of polling the API and diffing the result yourself.
Documents](/changelog/2026-07-02-document-lifecycle-webhooks)[Jul 2 
### n8n: Trigger Workflows from Probo Events

A new Probo Trigger node starts your n8n workflow the moment a document event happens, with HMAC verification and no polling node.
Integrations](/changelog/2026-07-02-n8n-trigger-workflows-from-probo-events)
## June 2026
19 changes [Jun 30 
### Deeper Third-Party Vetting Reports

Third-party vetting now keeps the full structured analysis, not just a short summary, covering risk, privacy, and AI governance.
TPRM](/changelog/2026-06-30-deeper-third-party-vetting-reports)[Jun 25 
### Four More Access Review Connectors

Support, AI routing, incident response, and email marketing join the access review connector list with Pylon and three more tools.
Access Review](/changelog/2026-06-25-four-more-access-review-connectors-pylon-openrouter)[Jun 24 
### DocuSign Signing Integration

Connect DocuSign with a full OAuth2 flow and pick which account to use, no manual API key wrangling or copy-pasting required.
Documents](/changelog/2026-06-24-docusign-signing-integration)[Jun 24 
### Five New Access Review Connectors

Cover banking, sales tooling, and AI infrastructure in your next access review campaign with Mercury, Apollo.io, and three more tools.
Access Review](/changelog/2026-06-24-five-new-access-review-connectors-mercury-apollo-deepgram)[Jun 22 
### Custom URL Slugs for the Compliance Portal

Give Compliance Portal pages a memorable custom URL slug instead of a generated ID, perfect for links in a sales deck or email.
Compliance Portal](/changelog/2026-06-22-custom-url-slugs-trust-center)[Jun 19 
### Connect AI Agents via OAuth2 (CIMD)

MCP clients like Claude and ChatGPT can now register with Probo through a standard OAuth2 client metadata document instead of a pre-provisioned client ID.
Integrations](/changelog/2026-06-19-connect-ai-agents-oauth2-cimd)[Jun 19 
### Personal API Tokens

Create, list, and revoke your own bearer tokens for scripting against the Probo API, without sharing a service account with your team.
IAM](/changelog/2026-06-19-personal-api-tokens)[Jun 16 
### Electronic Signatures for Employee Documents

Employee document signings now generate a real signed PDF and an esign record, the same way document approvals already did.
Documents](/changelog/2026-06-16-electronic-signatures-employee-documents)[Jun 12 
### Auto-Enriched Vendor Catalog

Import vendors from a shared, auto-enriched catalog instead of typing in the same third-party details your peers already found.
TPRM](/changelog/2026-06-12-auto-enriched-vendor-catalog)[Jun 10 
### 5 New Access Review Connectors

Pull user access straight from five more infrastructure and observability tools: Better Stack, SigNoz, Neon, Render, and Qovery.
Access Review](/changelog/2026-06-10-5-new-access-review-connectors-june-2026)[Jun 10 
### Nested Third-Party Relationships

Third parties can now nest to any depth, not just one level of sub-vendor, so subprocessors of subprocessors are representable.
TPRM](/changelog/2026-06-10-nested-third-party-relationships)[Jun 9 
### Risk Assessment Boundaries

Group risk assessment nodes into named, nestable boundaries so large Mermaid diagrams stay readable as your system map grows.
Risk Management](/changelog/2026-06-09-risk-assessment-boundaries)[Jun 7 
### Cookie Banner Now Supports 9 More Languages

The Probo cookie consent banner adds 9 languages — bringing the total to 13 — and adapts to a visitor's browser language with no extra configuration.
Cookie Banner](/changelog/2026-06-07-cookie-banner-new-languages)[Jun 6 
### Archive Documents

Archive documents you no longer need active from the row action menu — non-destructive and consistent with archiving elsewhere in Probo.
Documents](/changelog/2026-06-06-archive-document)[Jun 6 
### Five New Access Review Connectors

Probo adds access review connectors for Zendesk, Okta, Clerk, SendGrid, and Datadog — each pulling your user list so reviewers see who has access to what.
Access Review](/changelog/2026-06-06-five-access-review-connectors)[Jun 5 
### Tracker Type Now Visible in the Cookie Banner SDK

@probo/cookie-banner 0.8.0 exposes trackerType on every CookieItem, so the headless cookie list and themed banner can render what kind of tracker each entry is.
Cookie Banner](/changelog/2026-06-05-cookie-banner-sdk-tracker-type)[Jun 4 
### Automatic Tracker Policy

Publishing your cookie banner now generates a tracker policy document automatically, listing every detected tracker and its vendor.
Cookie Banner](/changelog/2026-06-04-tracker-policy)[Jun 3 
### Async Third-Party Vetting Now Available in n8n

The thirdParty vet operation is now available in the Probo n8n node, queueing a vetting job that runs asynchronously without blocking your workflow.
TPRM](/changelog/2026-06-03-third-party-vetting-n8n)[Jun 2 
### Filter and Identify Trackers by Vendor

See the vendor behind each tracker on the banner trackers page, and filter the entire list by third party to audit everything a given vendor places.
Cookie Banner](/changelog/2026-06-02-tracker-by-vendor)
## May 2026
14 changes [May 28 
### Archive Users and Link Third Parties in n8n

Three new capabilities land in the n8n node: archive users, link measures to third parties, and model self-referential third-party relations.
TPRM](/changelog/2026-05-28-archive-users-link-third-parties-n8n)[May 28 
### Seven New Access Review Connectors

Seven new access review connectors land in Probo, plus HTTP Basic auth support and automatic signature request cancellation.
Access Review](/changelog/2026-05-28-posthog-metabase-grafana-cursor-access-reviews)[May 27 
### Archive Users

Deactivate a user with the new archiveUser operation — removed from active workflows but kept in the org for audit trail purposes.
IAM](/changelog/2026-05-27-archive-user)[May 27 
### Link Measures to Third Parties

Measures and third parties can now be linked many-to-many, third parties support self-referential relations, and measure state moves to a header badge.
TPRM](/changelog/2026-05-27-link-measure-to-third-parties)[May 27 
### SCIM Bridge Errors Now Visible in the UI

Sync errors from the SCIM bridge are now exposed in the API and surfaced on the Google Workspace and Microsoft 365 connector cards in the console.
IAM](/changelog/2026-05-27-scim-bridge-errors-in-ui)[May 26 
### Official Helm Chart for Kubernetes

Self-hosting Probo on Kubernetes now has a proper path with an official Helm chart that deploys the full stack in one command.
Infra](/changelog/2026-05-26-helm-chart)[May 23 
### Risk Assessment in n8n

The riskAssessment resource is live in n8n, covering the entire risk assessment hierarchy with full CRUD operations for automation.
Risk Management](/changelog/2026-05-23-risk-assessment-n8n)[May 15 
### Vendors Are Now Third Parties

Vendor is now Third Party across the API, CLI, webhooks, and console — a breaking rename that better matches compliance terminology.
TPRM](/changelog/2026-05-15-rename-vendors-third-parties)[May 10 
### Cookie banner jurisdiction from geolocation

Every cookie banner interaction is mapped to country and privacy regulation automatically — consent records, APIs, and the banner UI stay aligned.
Cookie Banner](/changelog/2026-05-10-cookie-banner-jurisdiction-geolocation)[May 10 
### Google Cloud Identity Now Supported in SCIM Bridge

The SCIM bridge syncs Google Cloud Identity directories the same way as Google Workspace — automate provisioning without a Workspace license.
IAM](/changelog/2026-05-10-google-cloud-identity-scim-bridge)[May 6 
### Microsoft 365 in Access Reviews

Run access reviews against your Microsoft 365 users and groups directly from Probo, pulling decisions straight from Entra ID.
Access Review](/changelog/2026-05-06-microsoft365-access-review)[May 6 
### Microsoft 365 SCIM Bridge

Sync users and groups from Microsoft Entra ID into Probo automatically, closing the identity sync gap for Microsoft 365 shops.
IAM](/changelog/2026-05-06-microsoft365-scim-bridge)[May 5 
### SCIM via MCP and CLI

Probo's SCIM management is now reachable from your AI agent and the terminal, so you can script provisioning without the console.
IAM](/changelog/2026-05-05-scim-via-mcp-and-cli)[May 4 
### Cookie Banner

Build, theme, translate, and ship a GDPR-ready cookie banner from Probo, with consent signals, auto-detection, CLI, and MCP support baked in.
Cookie Banner](/changelog/2026-05-04-cookie-banner)
## April 2026
12 changes [Apr 22 
### CMMI Maturity Levels on Controls

Controls now carry a real CMMI maturity score instead of a binary implemented flag, showing how mature each control actually is.
Governance](/changelog/2026-04-22-cmmi-maturity-controls)[Apr 22 
### Data and Asset Registries as Documents

Data and asset registry exports are gone. Both registries now publish, version, and get signed like any other compliance document.
Assets](/changelog/2026-04-22-document-publish-snapshots)[Apr 22 
### OAuth2 and OpenID Connect Authorization Server

Probo now speaks OAuth2 and OpenID Connect — anyone can build integrations that plug straight into your compliance stack.
IAM](/changelog/2026-04-22-oauth2-authorization-server)[Apr 16 
### SOA as a Publishable Document

The Statement of Applicability is now a full document you can edit, publish, version, and send for approval and signature.
Governance](/changelog/2026-04-16-soa-as-document)[Apr 15 
### Ended Contracts Filtered from Signatures

People with ended contracts no longer appear in the signature request dialog, so former employees don't clutter the list.
Documents](/changelog/2026-04-15-ended-contracts-filtered-from-signatures)[Apr 15 
### Inline Document Details

Document properties like classification, owner, and version are now visible directly on the page instead of hidden in a drawer.
Documents](/changelog/2026-04-15-inline-document-details)[Apr 9 
### Statement of Applicability

The SOA section is now correctly named Statement of Applicability, matching the exact term auditors actually use for it.
Governance](/changelog/2026-04-09-statement-of-applicability-rename)[Apr 3 
### Markdown Copy-Paste in the Editor

Paste markdown into the rich text editor and it renders automatically, tables, headers, lists, and code blocks included.
Documents](/changelog/2026-04-03-markdown-copy-paste)[Apr 3 
### Measure-Document Linking

Link documents directly to measures for better evidence mapping, so auditors can see the supporting policies at a glance.
Governance](/changelog/2026-04-03-measure-document-linking)[Apr 2 
### Access Reviews

Run periodic access reviews to verify who still has access to what, tracking evidence in Probo instead of a spreadsheet.
Access Review](/changelog/2026-04-02-access-review)[Apr 2 
### In-Progress State for Tasks

Tasks now have an in-progress state alongside open and done, making your task board genuinely useful for tracking active work.
Governance](/changelog/2026-04-02-task-in-progress-state)[Apr 1 
### Rich Text Editor for Documents

Write and edit documents directly in Probo with tables, links, diagrams, and slash commands, in a proper WYSIWYG editor built on TipTap.
Documents](/changelog/2026-04-01-rich-text-editor)
## March 2026
13 changes [Mar 31 
### Document Classification Filter

Filter your document library by classification to quickly narrow a long list down to just your public policies or internal procedures.
Documents](/changelog/2026-03-31-document-classification-filter)[Mar 31 
### Major.Minor Document Versioning

Minor version updates no longer require everyone to sign the document again, saving re-signatures for changes that actually matter.
Documents](/changelog/2026-03-31-document-versioning)[Mar 30 
### Document Approval Workflow

Documents now go through a proper review and approval process before publishing, tracking who signed off and when for auditors.
Documents](/changelog/2026-03-30-document-approval-workflow)[Mar 30 
### Task Priority

Set priority levels, urgent, high, medium, or low, on tasks so your team always knows what to tackle first during a busy sprint.
Governance](/changelog/2026-03-30-task-priority)[Mar 26 
### Automatic Evidence Descriptions

Upload evidence and Probo automatically analyzes the file and generates a plain-language description of exactly what it contains.
Governance](/changelog/2026-03-26-automatic-evidence-descriptions)[Mar 23 
### Search Engine Indexing for Your Compliance Page

Let search engines index your compliance page so prospects can find it on Google when they search your company plus "security".
Compliance Portal](/changelog/2026-03-23-search-engine-indexing)[Mar 22 
### Access Logs

Get full visibility into every action in your organization with SIEM-ready audit logs auditors expect during SOC 2 and ISO 27001 reviews.
IAM](/changelog/2026-03-22-access-logs)[Mar 22 
### Google and Microsoft SSO

Sign in to Probo with your Google Workspace or Microsoft Entra ID enterprise account, no new password or magic link required.
IAM](/changelog/2026-03-22-google-microsoft-sso)[Mar 20 
### Skip Mailing List Confirmation Emails

Add subscribers to your compliance page mailing list without a confirmation email, ideal for contacts who already signed a DPA or NDA.
Compliance Portal](/changelog/2026-03-20-skip-mailing-list-confirmation)[Mar 19 
### Drag-and-Drop Audit Reports

Upload audit report PDFs by dragging and dropping them directly onto your audit list, no more digging through attachment menus.
Audits](/changelog/2026-03-19-audit-pdf-upload)[Mar 19 
### Cross-Origin CSRF Protection

New cross-origin request forgery (CSRF) defenses stop malicious sites from making unauthorized requests while you're logged into Probo.
IAM](/changelog/2026-03-19-csrf-protection)[Mar 19 
### Full-Text Search for Measures

Find any measure instantly by searching across titles, descriptions, and details instead of scrolling through long lists.
Governance](/changelog/2026-03-19-full-text-search-measures)[Mar 19 
### Unified Findings

Track audit findings with shared severity levels across the web app, MCP, and CLI, so nothing gets lost switching between tools.
Audits](/changelog/2026-03-19-unified-findings)
