

Customized AI Triage for Threat Monitoring is now available, enabling organizations to configure rules that automatically dismiss threat signals that are low risk or not actionable. This minimizes recurring noise and helps analysts prioritize the threats that matter most.
General Availability for Threat Monitoring APIs
We have promoted our Threat Monitoring APIs to General Availability. Security teams can now leverage these endpoints to automate threat investigations, manage remediation statuses, and integrate threat monitoring workflows directly into internal tools.
Deeper visibility into fourth-party dependencies
We’ve enriched our fourth-party data collection to provide a more comprehensive view of organizations’ extended supply chain, resulting in a 25% uplift in discovery volume across the vendor ecosystem. The updated Fourth Parties interface now includes a "First detected" column and visual callouts for new dependencies. These changes help security teams quickly review vendors and assess concentration risk with greater precision.
Access vendor contact information via API
We have promoted the APIs for retrieving a vendor’s contacts to General Availability. Users can now leverage these endpoints to programmatically retrieve vendor contact information, facilitating seamless integrations with internal procurement and vendor management systems.
Trust Exchange NDA customization and control
Trust Exchange Administrators can now configure custom input fields to require specific information such as the signer’s full name, job title, or company address when prompted to sign the NDA. Additionally, a new toggle for automated confirmation emails allows administrators to choose whether users automatically receive a copy of their signed agreement.
Restrict access requests from free email providers
To reduce spam and minimize administrative overhead, NDA signings from individuals using free or temporary email providers can be configured to be blocked for Trust Exchange customers on the premium tier. This ensures that only legitimate, corporate entities can request access to Trust Center assets.
New geopolitical risk: low political freedom
We have introduced a new category of risk detection that flags when an organization is operating from a country with low political freedom. This enhancement provides security and compliance teams with greater visibility into geopolitical & foreign influence factors that could impact supply chain resilience and data security.
Other improvements
- Remediation progress now updates as you fix individual assets, giving you a real-time, accurate view of your work.






