Security updates

See what changed,
why it matters and what comes next.

Clear release notes for scanner improvements, dashboard changes, security controls, integrations and platform reliability.

Plain-English release notesSecurity impact includedMigration guidanceRoadmap visibility
Release notes

Product improvements

Filter by the part of SecureFlowGroup you use.

29Jul 2026
New

Public website scanner with Supabase history

Visitors can scan a public website without an account and review reputation, availability, HTTPS, redirects and security headers. Signed-in scans are stored under row-level security.

  • Passive and non-invasive checks
  • Public rate limiting and private-network blocking
  • Downloadable JSON reports
  • Dashboard scan-history support
28Jul 2026
Improved

Client dashboard navigation and billing route

Dashboard assets now load from reliable root paths on IONOS, with dedicated dashboard and billing routes.

  • Root-level dashboard assets
  • Clean URL compatibility
  • Improved notification drawer
27Jul 2026
Security

Supabase authentication and secure client records

Login, sign-up, email verification and password recovery now use Supabase authentication.

  • Email confirmation and reset flows
  • Protected dashboard sessions
  • Profiles and protected-site records with RLS
26Jul 2026
Improved

Cleaner legal, login and content pages

Refined layouts, centred page titles, complete legal documents and cleaner authentication screens.

25Jul 2026
Fixed

IONOS clean routes and full-site redirect audit

Updated Apache rewrite rules, asset exclusions and compatibility redirects for clean public URLs.

  • Home, documents, scanner, dashboard and billing aliases
  • Static file protection
  • Legacy dashboard redirects
How changes are communicated

No vague “improvements and fixes”.

What changed

A direct description of the new behaviour or corrected problem.

Who is affected

Which plans, pages, integrations or customer workflows are involved.

!

Security impact

Whether the release changes risk, access, data handling or response controls.

Required action

Any configuration, upload, migration or verification step customers must complete.

Rollback guidance

How to recover if a change affects an existing website workflow.

Related documentation

Links to setup guides, API references and support resources.

Security notices

Important changes receive a separate, direct notice.

Security-sensitive releases are not hidden in general product announcements.

  • Clear severityState whether action is recommended or required.
  • Affected versionsIdentify the exact feature, route or integration involved.
  • Mitigation firstProvide a safe temporary action before longer remediation.
  • Resolution statusUpdate the notice as fixes are deployed and verified.
Example notice

Authentication redirect configuration

Customer action required only when the production domain changes.

Severity
Informational
Affected
Supabase email links
Action
Update allowed redirect URLs
Status
Documented
Follow product progress

Stay informed about meaningful security and platform changes.