Release notes

Customized AI Triage for Threat Monitoring

Mark Barber April 22, 2026

Customized AI Triage for Threat Monitoring is now available, enabling organizations to configure rules that automatically dismiss threat signals that are low risk or not actionable. This minimizes recurring noise and helps analysts prioritize the threats that matter most.

General Availability for Threat Monitoring APIs

We have promoted our Threat Monitoring APIs to General Availability. Security teams can now leverage these endpoints to automate threat investigations, manage remediation statuses, and integrate threat monitoring workflows directly into internal tools.

Deeper visibility into fourth-party dependencies

We’ve enriched our fourth-party data collection to provide a more comprehensive view of organizations’ extended supply chain, resulting in a 25% uplift in discovery volume across the vendor ecosystem. The updated Fourth Parties interface now includes a “First detected” column and visual callouts for new dependencies. These changes help security teams quickly review vendors and assess concentration risk with greater precision.

Access vendor contact information via API

We have promoted the APIs for retrieving a vendor’s contacts to General Availability. Users can now leverage these endpoints to programmatically retrieve vendor contact information, facilitating seamless integrations with internal procurement and vendor management systems.

Trust Exchange NDA customization and control

Trust Exchange Administrators can now configure custom input fields to require specific information such as the signer’s full name, job title, or company address when prompted to sign the NDA. Additionally, a new toggle for automated confirmation emails allows administrators to choose whether users automatically receive a copy of their signed agreement.

Restrict access requests from free email providers

To reduce spam and minimize administrative overhead, NDA signings from individuals using free or temporary email providers can be configured to be blocked for Trust Exchange customers on the premium tier. This ensures that only legitimate, corporate entities can request access to Trust Center assets.

New geopolitical risk: low political freedom

We have introduced a new category of risk detection that flags when an organization is operating from a country with low political freedom. This enhancement provides security and compliance teams with greater visibility into geopolitical & foreign influence factors that could impact supply chain resilience and data security.

Other improvements

  • Remediation progress now updates as you fix individual assets, giving you a real-time, accurate view of your work.
View all release notes

UpGuard Release Notes

Learn about new features, changes, and improvements to UpGuard.

Clearer citations and timeline for Security Profile checks

Mark Barber August 26, 2026
Read more

Subprocessors in Trust Center

Mark Barber August 12, 2026
Read more

Cloud and core infrastructure frameworks in Security Profile

Mark Barber July 29, 2026
Read more

Complete questionnaires without closing remediation

Mark Barber July 15, 2026
Read more

Company name aliases for smarter detection

Mark Barber July 1, 2026
Read more

FortiBleed Exposure Detection

Mark Barber June 25, 2026
Read more

Updated application usage policy controls

Mark Barber June 17, 2026
Read more

New threat signal: Published MCP server definitions

Mark Barber June 3, 2026
Read more
View all release notes

See UpGuard In Action

Book a free, personalized onboarding call with one of our cybersecurity experts.
Free instant security score

How secure is your organization?

Request a free cybersecurity report to discover key risks on your website, email, network, and brand.
Website Security scan results table Cyber security rating score 850 out of 950