<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/">
    <channel>
        <title>Conviso Platform – Product Updates</title>
        <link>https://docs.convisoappsec.com/releases</link>
        <description>Stay up to date with the latest Conviso Platform releases.</description>
        <lastBuildDate>Mon, 20 Apr 2026 12:00:00 GMT</lastBuildDate>
        <docs>https://validator.w3.org/feed/docs/rss2.html</docs>
        <generator>https://github.com/jpmonette/feed</generator>
        <language>en</language>
        <item>
            <title><![CDATA[AI Pentest Policy]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-04-20-ai-pentest-policy</link>
            <guid>https://docs.convisoappsec.com/releases/2026-04-20-ai-pentest-policy</guid>
            <pubDate>Mon, 20 Apr 2026 12:00:00 GMT</pubDate>
            <description><![CDATA[Introduced a new policy framework specifically for automated pentests, mirroring the Security Gate logic but optimized for offensive security workflows.]]></description>
            <content:encoded><![CDATA[<p>Introduced a new policy framework specifically for <strong>automated pentests</strong>, mirroring the Security Gate logic but optimized for offensive security workflows.</p>
<ul>
<li class="">Define specific goals for an asset, set <strong>request limits</strong> to ensure safety during execution, and define <strong>automated schedules</strong>.</li>
<li class="">Moves teams away from manual testing triggers, ensuring assets are continuously validated against offensive scenarios.</li>
</ul>]]></content:encoded>
            <category>New</category>
            <category>AI Pentest</category>
            <category>Inteligência Artificial</category>
            <category>Compliance &amp; Governance</category>
            <category>Automations</category>
        </item>
        <item>
            <title><![CDATA[Asset Filters Standardization]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-04-20-asset-filters-standardization</link>
            <guid>https://docs.convisoappsec.com/releases/2026-04-20-asset-filters-standardization</guid>
            <pubDate>Mon, 20 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Standardized how Conviso DAST and other scans are handled within the platform's filtering and metrics engine.]]></description>
            <content:encoded><![CDATA[<p>Standardized how Conviso DAST and other scans are handled within the platform's filtering and metrics engine.</p>
<ul>
<li class="">DAST is now fully standardized as a scanner source, removing distinct data paths that could cause discrepancies in "scan coverage" metrics.</li>
<li class="">Assets covered by dynamic analysis are accurately reflected in dashboard KPIs, and filtering by integration type returns consistent, cross-platform results.</li>
</ul>]]></content:encoded>
            <category>Improved</category>
            <category>Web and API Scan</category>
            <category>Vuln Intelligence</category>
            <category>Risk-Based Vulnerability Management</category>
            <category>Analytics</category>
        </item>
        <item>
            <title><![CDATA[Projects Integration with Jira]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-04-20-projects-jira-integration</link>
            <guid>https://docs.convisoappsec.com/releases/2026-04-20-projects-jira-integration</guid>
            <pubDate>Mon, 20 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Improved the integration between Platform Project Requirements and Jira.]]></description>
            <content:encoded><![CDATA[<p>Improved the integration between Platform Project Requirements and <strong>Jira</strong>.</p>
<ul>
<li class="">More seamless flow of security requirements into the developer's native backlog.</li>
<li class="">UI improvements for integration consistency, syncing project requirements and activities with Jira.</li>
<li class="">Ensures "Secure by Design" principles become actionable tasks rather than static documentation.</li>
</ul>]]></content:encoded>
            <category>New</category>
            <category>Risk insight</category>
            <category>Automations</category>
            <category>Developer Experience</category>
        </item>
        <item>
            <title><![CDATA[AI Autonomous Pentest]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-04-06-ai-autonomous-pentest</link>
            <guid>https://docs.convisoappsec.com/releases/2026-04-06-ai-autonomous-pentest</guid>
            <pubDate>Mon, 06 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Introduced the AI Autonomous Pentest, an autonomous offensive security engine that combines Large Language Models with professional security tools to reduce manual toil and scale testing.]]></description>
            <content:encoded><![CDATA[<p>Introduced the <strong>AI Autonomous Pentest</strong>, an autonomous offensive security engine that combines Large Language Models with professional security tools to reduce manual toil and scale testing.</p>
<ul>
<li class=""><strong>Tool Orchestration:</strong> automatically triggers and correlates data from tools and findings.</li>
<li class=""><strong>Offensive Reasoning:</strong> decides the best attack path, identifies vulnerability chains, and executes controlled Proof of Concepts (PoCs).</li>
<li class=""><strong>Attack Chain Visualization:</strong> a real-time interactive graph shows the AI's reasoning from reconnaissance to successful exploit validation.</li>
</ul>
<p>Watch the launch webinar: <a href="https://youtu.be/7Ei-QIAFCic" target="_blank" rel="noopener noreferrer" class="">AI Autonomous Pentest</a>.</p>]]></content:encoded>
            <category>New</category>
            <category>AI Pentest</category>
            <category>Inteligência Artificial</category>
            <category>Security Analysis</category>
        </item>
        <item>
            <title><![CDATA[Conviso MCP Server — AI Ecosystem Integration]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-04-06-conviso-mcp-server</link>
            <guid>https://docs.convisoappsec.com/releases/2026-04-06-conviso-mcp-server</guid>
            <pubDate>Mon, 06 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Officially launched the Conviso MCP (Model Context Protocol) Server, available on the Anthropic MCP-Market, allowing external AI models to interact securely with your Conviso Platform data.]]></description>
            <content:encoded><![CDATA[<p>Officially launched the <strong>Conviso MCP (Model Context Protocol) Server</strong>, available on the Anthropic MCP-Market, allowing external AI models to interact securely with your Conviso Platform data.</p>
<ul>
<li class="">Query assets, vulnerability status, and project updates directly within the chat interface.</li>
<li class="">Brings Conviso's security intelligence into the developer's AI workspace, enabling faster remediation suggestions and architectural reviews without leaving the LLM environment.</li>
</ul>]]></content:encoded>
            <category>New</category>
            <category>Vuln Intelligence</category>
            <category>Risk insight</category>
            <category>Inteligência Artificial</category>
            <category>Automations</category>
        </item>
        <item>
            <title><![CDATA[Comprehensive DAST Reporting (Full-Snapshot)]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-04-06-dast-full-snapshot-reporting</link>
            <guid>https://docs.convisoappsec.com/releases/2026-04-06-dast-full-snapshot-reporting</guid>
            <pubDate>Mon, 06 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Refactored DAST reporting logic for better visibility and compliance readiness.]]></description>
            <content:encoded><![CDATA[<p>Refactored <strong>DAST</strong> reporting logic for better visibility and compliance readiness.</p>
<ul>
<li class=""><strong>From Delta to Snapshot:</strong> reports moved from a "change-only" view to a <strong>Full-Snapshot</strong> format. Every DAST execution now reports the complete security posture, including all vulnerabilities.</li>
<li class=""><strong>Audit Readiness:</strong> every scan provides a standalone, auditable record of the application's health, simplifying work for security leaders and compliance officers.</li>
</ul>]]></content:encoded>
            <category>Improved</category>
            <category>Web and API Scan</category>
            <category>Security Analysis</category>
            <category>Compliance &amp; Governance</category>
        </item>
        <item>
            <title><![CDATA[Continuous Living Threat Modeling]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-03-23-continuous-living-threat-modeling</link>
            <guid>https://docs.convisoappsec.com/releases/2026-03-23-continuous-living-threat-modeling</guid>
            <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[The Threat Modeling module now functions as a living record of your application's security design — a persistent artifact that evolves throughout the software lifecycle instead of a project that "closes".]]></description>
            <content:encoded><![CDATA[<p>The Threat Modeling module now functions as a <strong>living record</strong> of your application's security design — a persistent artifact that evolves throughout the software lifecycle instead of a project that "closes".</p>
<ul>
<li class=""><strong>Persistent Architecture-as-Code:</strong> use visual diagrams as the primary driver to update your living security model without starting from scratch.</li>
<li class=""><strong>Automated Requirement Sync:</strong> instantly translate architectural changes into actionable security controls.</li>
<li class=""><strong>Historical Traceability:</strong> native versioning provides a complete audit trail of every design shift, ensuring full compliance and governance.</li>
</ul>]]></content:encoded>
            <category>New</category>
            <category>Risk insight</category>
            <category>Compliance &amp; Governance</category>
            <category>Inteligência Artificial</category>
        </item>
        <item>
            <title><![CDATA[Defect Trackers Recent Deliveries]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-03-23-defect-trackers-recent-deliveries</link>
            <guid>https://docs.convisoappsec.com/releases/2026-03-23-defect-trackers-recent-deliveries</guid>
            <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Introduced Recent Deliveries for Defect Trackers (Jira, ClickUp, ServiceNow, etc.) to monitor and troubleshoot vulnerability synchronization in real time.]]></description>
            <content:encoded><![CDATA[<p>Introduced <strong>Recent Deliveries</strong> for Defect Trackers (Jira, ClickUp, ServiceNow, etc.) to monitor and troubleshoot vulnerability synchronization in real time.</p>
<ul>
<li class="">Transparent view of the last 1,000 synchronization events between the platform and developer tools.</li>
<li class=""><strong>Self-Service Troubleshooting:</strong> resolve sync issues quickly with detailed context and system messages.</li>
<li class=""><strong>End-to-End Visibility:</strong> monitor the exact flow of findings from the platform to developer backlogs.</li>
</ul>]]></content:encoded>
            <category>Improved</category>
            <category>Vuln Intelligence</category>
            <category>Automations</category>
            <category>Data Ingestion</category>
        </item>
        <item>
            <title><![CDATA[Custom Project Requirements — Security with Context]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-03-12-custom-project-requirements</link>
            <guid>https://docs.convisoappsec.com/releases/2026-03-12-custom-project-requirements</guid>
            <pubDate>Thu, 12 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Custom Project Requirements lets teams tailor security activities within each project without affecting global organization templates.]]></description>
            <content:encoded><![CDATA[<p><strong>Custom Project Requirements</strong> lets teams tailor security activities within each project without affecting global organization templates.</p>
<ul>
<li class=""><strong>Customize Activities:</strong> edit descriptions and steps of an activity to match the project's tech stack.</li>
<li class=""><strong>Refine the Scope:</strong> ensure stakeholders only see activities relevant to their specific project.</li>
<li class=""><strong>Preserve Templates:</strong> all changes are local to the project, keeping organizational "Golden Templates" consistent.</li>
</ul>]]></content:encoded>
            <category>New</category>
            <category>Risk insight</category>
            <category>Compliance &amp; Governance</category>
            <category>Developer Experience</category>
        </item>
        <item>
            <title><![CDATA[Enhanced Data Classification & Risk Scoring]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-03-12-enhanced-data-classification</link>
            <guid>https://docs.convisoappsec.com/releases/2026-03-12-enhanced-data-classification</guid>
            <pubDate>Thu, 12 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Upgraded the risk calculation within Asset Management so the risk of a vulnerability is now intrinsically linked to the sensitivity of the data the asset handles.]]></description>
            <content:encoded><![CDATA[<p>Upgraded the risk calculation within Asset Management so the risk of a vulnerability is now intrinsically linked to the sensitivity of the data the asset handles.</p>
<ul>
<li class="">New <strong>Data Classification</strong> tiers — <strong>Public, Internal, Restricted, Confidential, and Critical</strong> — automatically adjust the asset's risk priority.</li>
<li class="">Ensures security teams are alerted first to threats affecting their most sensitive data environments.</li>
</ul>]]></content:encoded>
            <category>Improved</category>
            <category>Risk insight</category>
            <category>Risk-Based Vulnerability Management</category>
        </item>
        <item>
            <title><![CDATA[Improved Navigation for Activity Evidence Attachments]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-03-01-activity-evidence-navigation</link>
            <guid>https://docs.convisoappsec.com/releases/2026-03-01-activity-evidence-navigation</guid>
            <pubDate>Sun, 01 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Improved the experience of reviewing attachments associated with activities.]]></description>
            <content:encoded><![CDATA[<p>Improved the experience of reviewing attachments associated with activities.</p>
<ul>
<li class="">Navigate screenshots, documents, and supporting files more intuitively while analyzing activity history.</li>
<li class="">Reduces friction during validation processes and helps teams quickly locate evidence needed to confirm remediation or compliance steps.</li>
</ul>]]></content:encoded>
            <category>Improved</category>
            <category>Risk insight</category>
            <category>Compliance &amp; Governance</category>
        </item>
        <item>
            <title><![CDATA[Dark Mode is now available]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-03-01-dark-mode</link>
            <guid>https://docs.convisoappsec.com/releases/2026-03-01-dark-mode</guid>
            <pubDate>Sun, 01 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[The Conviso Platform now supports Dark Mode across the interface.]]></description>
            <content:encoded><![CDATA[<p>The Conviso Platform now supports <strong>Dark Mode</strong> across the interface.</p>
<ul>
<li class="">Reduces eye strain and improves visual comfort during extended usage.</li>
<li class="">Implemented consistently across dashboards, assets, and vulnerability views, with no functional changes to existing workflows.</li>
</ul>]]></content:encoded>
            <category>Improved</category>
            <category>Developer Experience</category>
        </item>
        <item>
            <title><![CDATA[Security Gate Management in the Platform]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-03-01-security-gate-in-platform</link>
            <guid>https://docs.convisoappsec.com/releases/2026-03-01-security-gate-in-platform</guid>
            <pubDate>Sun, 01 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Security Gate configuration and monitoring are now available directly inside the Conviso Platform interface, without relying on CLI configuration.]]></description>
            <content:encoded><![CDATA[<p><strong>Security Gate</strong> configuration and monitoring are now available directly inside the Conviso Platform interface, without relying on CLI configuration.</p>
<ul>
<li class="">Configure Security Gates directly within the <strong>CI/CD section of assets</strong>.</li>
<li class="">Support for <strong>multiple vulnerability sources</strong> (Conviso AST, Dependency Track, Fortify, SonarQube, SonarCloud, Checkmarx, GitHub, Snyk, Veracode, and MobSF).</li>
<li class="">Define <strong>severity thresholds</strong> per source and optional <strong>maximum days to remediate</strong>.</li>
<li class="">Support for <strong>asset-specific policies</strong> that override global company rules.</li>
</ul>
<p>Learn more in the <a href="https://docs.convisoappsec.com/platform/security-gate" target="_blank" rel="noopener noreferrer" class="">Security Gate documentation</a>.</p>]]></content:encoded>
            <category>New</category>
            <category>Risk insight</category>
            <category>Compliance &amp; Governance</category>
            <category>Developer Experience</category>
        </item>
        <item>
            <title><![CDATA[AI Agents Operations — Auto-Fix, DAST FP Review & Chat UX]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-02-01-ai-agents-operations</link>
            <guid>https://docs.convisoappsec.com/releases/2026-02-01-ai-agents-operations</guid>
            <pubDate>Sun, 01 Feb 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Expanded the AI Agents operations across the platform.]]></description>
            <content:encoded><![CDATA[<p>Expanded the AI Agents operations across the platform.</p>
<ul>
<li class="">Introduced <strong>Auto-Fix</strong>, which can be triggered directly from vulnerability context.</li>
<li class="">Expanded <strong>False Positive review</strong> support to <strong>DAST issues</strong>, increasing consistency across scanning sources.</li>
<li class="">Improved AI Agent chat usability with <strong>Start new conversation</strong> to reset context and return to quick actions.</li>
<li class="">Multiple stability and quality improvements across agent execution and recurring runs.</li>
</ul>]]></content:encoded>
            <category>New</category>
            <category>AI Secure code</category>
            <category>Web and API Scan</category>
            <category>Inteligência Artificial</category>
            <category>Risk-Based Vulnerability Management</category>
        </item>
        <item>
            <title><![CDATA[Continuous SBOM Monitoring]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-02-01-continuous-sbom-monitoring</link>
            <guid>https://docs.convisoappsec.com/releases/2026-02-01-continuous-sbom-monitoring</guid>
            <pubDate>Sun, 01 Feb 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Introduced SBOM correlation to improve consistency between Conviso AST and platform monitoring.]]></description>
            <content:encoded><![CDATA[<p>Introduced <strong>SBOM correlation</strong> to improve consistency between Conviso AST and platform monitoring.</p>
<ul>
<li class="">Reduces “blinking” findings (open/close/reopen) caused by data source mismatches.</li>
<li class="">Expands advisory coverage and increases trust in the supply-chain vulnerability lifecycle.</li>
<li class="">Provides a more reliable foundation for continuous dependency monitoring at scale.</li>
</ul>]]></content:encoded>
            <category>New</category>
            <category>Vuln Intelligence</category>
            <category>AI Secure code</category>
            <category>Supply Chain Security</category>
            <category>Data Ingestion</category>
        </item>
        <item>
            <title><![CDATA[DAST API Enhancements (Swagger, GraphQL, SOAP)]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-02-01-dast-api-enhancements</link>
            <guid>https://docs.convisoappsec.com/releases/2026-02-01-dast-api-enhancements</guid>
            <pubDate>Sun, 01 Feb 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Restored and strengthened DAST API support.]]></description>
            <content:encoded><![CDATA[<p>Restored and strengthened <strong>DAST API</strong> support.</p>
<ul>
<li class="">Added support for <strong>GraphQL</strong> and <strong>SOAP</strong> scanning scenarios.</li>
<li class="">Improved API schema import workflow: Swagger import via <strong>upload</strong> and <strong>URL</strong>.</li>
<li class="">Enhanced DAST execution controls, including timeouts and configuration reliability.</li>
<li class="">Improved scan lifecycle consistency and operational readiness.</li>
</ul>]]></content:encoded>
            <category>New</category>
            <category>Web and API Scan</category>
            <category>Security Analysis</category>
        </item>
        <item>
            <title><![CDATA[Documentation & Developer Experience]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-02-01-documentation-developer-experience</link>
            <guid>https://docs.convisoappsec.com/releases/2026-02-01-documentation-developer-experience</guid>
            <pubDate>Sun, 01 Feb 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Improved technical documentation structure and discoverability.]]></description>
            <content:encoded><![CDATA[<p>Improved technical documentation structure and discoverability.</p>
<ul>
<li class="">More organized content and a friendlier navigation experience.</li>
<li class="">Improved context-based documentation search.</li>
<li class="">Updated vulnerability template references to align with modern OWASP projects and updated databases.</li>
</ul>]]></content:encoded>
            <category>Improved</category>
            <category>Developer Experience</category>
        </item>
        <item>
            <title><![CDATA[GitHub Pull Request Scanning]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-02-01-github-pr-scanning</link>
            <guid>https://docs.convisoappsec.com/releases/2026-02-01-github-pr-scanning</guid>
            <pubDate>Sun, 01 Feb 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Added support for automatically running Conviso AST on open Pull Requests.]]></description>
            <content:encoded><![CDATA[<p>Added support for automatically running <strong>Conviso AST on open Pull Requests</strong>.</p>
<ul>
<li class="">Security feedback is produced directly in GitHub through checks and annotations.</li>
<li class="">Enables a true shift-left workflow by detecting issues while code is being reviewed, without requiring additional configuration.</li>
</ul>]]></content:encoded>
            <category>New</category>
            <category>AI Secure code</category>
            <category>Security Analysis</category>
            <category>Developer Experience</category>
        </item>
        <item>
            <title><![CDATA[New CLI Capabilities]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-02-01-new-cli-capabilities</link>
            <guid>https://docs.convisoappsec.com/releases/2026-02-01-new-cli-capabilities</guid>
            <pubDate>Sun, 01 Feb 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Enhanced CLI experience with new capabilities aimed at operational workflows.]]></description>
            <content:encoded><![CDATA[<p>Enhanced CLI experience with new capabilities aimed at operational workflows.</p>
<ul>
<li class="">Added a new sub-command to <strong>list project requirements</strong>.</li>
<li class="">Improved packaging and consistency for AST distribution.</li>
<li class="">Strengthens automation workflows and enables scalable operational usage by AppSec teams.</li>
</ul>]]></content:encoded>
            <category>New</category>
            <category>AI Secure code</category>
            <category>Developer Experience</category>
        </item>
        <item>
            <title><![CDATA[New Security Feed Experience]]></title>
            <link>https://docs.convisoappsec.com/releases/2026-02-01-new-security-feed</link>
            <guid>https://docs.convisoappsec.com/releases/2026-02-01-new-security-feed</guid>
            <pubDate>Sun, 01 Feb 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[Introduced a new Security Feed page to display alerts, notifications, and updates more clearly.]]></description>
            <content:encoded><![CDATA[<p>Introduced a new <strong>Security Feed</strong> page to display alerts, notifications, and updates more clearly.</p>
<ul>
<li class="">Improves real-time visibility into security-related activity across the platform.</li>
<li class="">Complements existing workflows with a stronger “single place to monitor what’s happening”.</li>
</ul>]]></content:encoded>
            <category>New</category>
            <category>Vuln Intelligence</category>
            <category>Threat Intelligence</category>
        </item>
    </channel>
</rss>