SaaS

SaaS Release Notes - March 6, 2026

Production release notes - March 6, 2026

Release notes cover new features, enhancements, and fixes that have been released to production.

Identity Security Cloud is SailPoint's next-generation identity security solution. It encompasses and builds on features and functions from IdentityNow. The release notes cover both Identity Security Cloud and IdentityNow features.

New features

ProductWhat's new

Connectivity - Quick Compliance

Identity Security Cloud now supports the following connectors as Quick Compliance connectors:

You can now expediently configure read-only connections to these sources for account and entitlement aggregation. For a full list of supported Quick Compliance sources, refer to Quick Compliance.

Identity Security Cloud - Shared Signals Framework

The Identity Security Cloud Atlas Platform now supports transmitting events using the Shared Signals Framework. Once a stream is established to a vendor system’s Shared Signal Framework receiver, the transmitter can send CAEP Session Revoked security events that are triggered by changes in an Identity’s lifecycle state.

For more information, refer to Managing Transmitter Streams.

SaaS Connectors - Discovery - CyberArk PAM

The new SailPoint CyberArk Shared Services PAM Discovery Connector is now available. It continuously discovers applications configured in CyberArk Shared Services, providing a complete inventory across your enterprise. Use these insights to prioritize and focus governance efforts on your most critical applications.

For information on product documentation, refer to the Discovering Applications with CyberArk Privilege Cloud Shared Services PAM .

Enhancements

ProductFeature enhancements

SailPoint Accelerated Application Management - Application Visibility

Customers using identity providers other than Microsoft Entra ID or Okta can now deploy the Application Visibility browser extension to discover SaaS applications, associated identities, and identity-related risks. For more information, refer to the Application Visibility documentation.

Connectivity - PeopleSoft Direct

The PeopleSoft Direct Connector now retries entitlement aggregation upon connectivity failures, such as SocketTimeOutException and UnknownHostException. The process terminates only after the maximum number of retry attempts is reached.

SaaS Connectors - ServiceNow Identity Governance SaaS

The SailPoint ServiceNow Identity Governance SaaS Connector now has a default classification criteria for classifying machine accounts, based on the Machine Identity type. Also, two new attributes identity_type and web_service_access_only are added in the account schema that specifies the user's identity type and indicates if the user has only web service access respectively.

For more information, refer to Classifying Machine Accounts and Account Attributes.

Connectivity - ServiceNow Identity Governance

The SailPoint ServiceNow Identity Governance Connector now has a default classification criteria for classifying machine accounts, based on the Machine Identity type. Also, two new attributes identity_type and web_service_access_only are added in the account schema that specifies the user's identity type and indicates if the user has only web service access respectively.

For more information, refer to Classifying Machine Accounts and Account Attributes.

Connectivity - Active Directory

The Active Directory connector now retrieves cross-domain group memberships for group objects during entitlement aggregation and represents these relationships in a hierarchical view. For more information, refer to Aggregation Settings.

Identity Security Cloud - Access Requests

New enhancements have been added to access request approvals. These include:

  • Automatic expiration of unapproved requests.
  • Visibility for requesters and requestees to the list of people involved in an approval, including when it is assigned to a governance group.
  • Additional options for controlling reminders and escalations, including the ability to assign a governance group as the fallback approver in your approval flows.

Fixes

ProductIssue IDFixes

Connectivity - Duo, Duo SaaS

SaaS Connectors - Duo, Duo SaaS

CONCHENAB-7944

The SailPoint Duo SaaS and Duo VA connectors are now not impacted by the Duo Certificate Authority (CA) Bundle configuration.

Connectivity - Slack

CONETN-5261

The Slack connector now updates phoneNumbers.mobile.value when the updateMobilePhoneViaWork attribute is set to true.

Connectivity - RACF LDAP

CONETN-5311

Fixed an issue where the RACF LDAP connector created duplicate entitlement objects in Identity Security Cloud after account and group aggregation when attribute values differed only by case. The connector now handles case variations correctly and avoids duplication.

Connectivity - PeopleSoft Direct

CONETN-5335

The PeopleSoft Direct connector now supports multi-valued complex attributes, ensuring they appear accurately in the Identity Security Cloud interface.

Connectivity - Web Services SaaS

CONSEALINK-8507

The Web Services SaaS connector now correctly processes responses from customized operations configured for the Account Aggregation:after endpoint.

Connectivity - Google Apps

CONETN-5307

The Google Workspace connector now correctly clears givenName and familyName attributes during Set or Remove operations by sending a null value, rather than the literal string 'null'.

SaaS Connectors - Box SaaS

CONNAMDANG-6570

The SailPoint Box SaaS connector now supports switching client‑credentials token requests to the new api.box.com endpoint via the CON_BOX_USE_NEW_TOKEN_URL feature flag.

SaaS Connectors - Salesforce SaaS

CONJUBILEE-4421

The Salesforce SaaS Connector's Modify operation will behave correctly when any boolean attribute value is provided as a false value in the provisioning plan.

Connectivity - Microsoft Entra ID

CONETN-5309

The Microsoft Entra ID connector now prevents duplicate aggregation of single users during delta aggregation in multi-threaded environments.

Non-Employee Risk Management

NECHARLIE-1283

Fixed an issue where the Requests table for administrators displayed an error in the Completed tab when the request had been delegated to a user that had since been deleted.