What's new
Product updates, improvements and fixes — release by release.
1.7.1
We hear you the moment you write
- NewMessages sent through the website chat now reach our support inbox by email the moment a new conversation starts, so first contact gets a fast human response — with no change to what data is collected.
1.7.0
Your brand on your documents — and support you can hold us to
- NewCustom branding on PDFs is here: upload your logo and set your brand colours in Settings → Organization, and your Declaration of Conformity, technical documentation, and technical file exports carry your identity. Included in Enterprise and available as an add-on; a live preview shows exactly how your documents will look.
- NewEnterprise billing, presented properly: organizations on an Enterprise agreement now see their plan terms, included entitlements, and latest invoice in Settings → Billing — instead of self-serve buttons that don't apply to a negotiated contract.
- ImprovedThe Enterprise order form is now a complete, signature-ready commercial document: full legal identities for both parties, an itemised fee table with the annual pricing math spelled out, clear commercial terms, and proper signature blocks.
- ImprovedSupport response promises are now precisely worded (business days and hours, Mon–Fri 9:00–18:00 CET/CEST) and mechanically enforced: every support request is stamped with its response deadline the moment it arrives, and our team works from a queue ordered by those deadlines.
- FixedContinuous SBOM monitoring now keeps its exact schedule. A timing drift could stretch the interval between scans — hourly monitoring on Enterprise, daily on Business — and that drift is gone; scans stay locked to their cadence.
1.6.0
Auf Deutsch, and honest about the numbers
- NewOur six most important CRA guides are now available in German — the blog adapts to your language, with dates and categories localized in all 8 languages, and English articles shown where a translation doesn't exist yet.
- NewPrivacy-first analytics: we now measure page views and product signups without cookies, without storing anything in your browser, and without any personal identifiers — link parameters are stripped on your device before anything is sent. The privacy and cookie policies describe exactly what is collected and for how long.
- ImprovedSharing Seentrix pages now produces proper link previews everywhere — including CRA checker results, which show the classification verdict in the preview. Search engines also get cleaner, more precise page metadata across the site.
- FixedAccuracy pass on our own content: the landing-page market statistic is now a verified, cited figure (Linux Foundation / OpenSSF 2026 research), and several regulatory details in older blog articles were corrected — the SBOM minimum scope, the technical-file structure per the adopted regulation, and the support-period framing.
1.5.2
Saying exactly what we deliver
- ImprovedA precision pass over our public claims: data hosting is now described exactly (hosted in Europe — London and Frankfurt), the Enterprise SLA is stated as it really works (custom, agreed in writing), and support channels are described precisely (live chat, Mon–Fri 9:00–18:00 CET). Nothing about the service changed — only the wording, which now matches it exactly.
- ImprovedOur public claims are now backed by automated checks: if a pricing or marketing statement ever drifts from what the product actually does, our test suite fails before it can ship.
1.5.1
Built for big SBOMs
- ImprovedThe vulnerability and incident lists now load in pages, keeping them fast even with thousands of findings. Sorting always shows the most urgent items first (actively exploited, then KEV-listed, then by severity), all filters search your complete data — never just the visible page — and the summary counts stay exact.
- SecurityTightened internal database access controls: internal functions are now callable only by the parts of the system that genuinely need them, and the remaining access is documented function by function.
- FixedClarified the audit-trail description to precisely match its behaviour — tamper-evident, immutable through the product, with the automatic GDPR redaction on account erasure stated as the one exception — plus a reliability improvement to the training-completion check and a typography fix in the Terms.
1.5.0
A sharper Academy and three redesigned views
- NewTwo new Academy lessons: 'Products already on the market' (the transitional regime and substantial modification — including that incident reporting applies to ALL in-scope products from 11 September 2026) and 'When the regulator knocks' (market-surveillance powers, your duties, and the penalty tiers). The Academy now covers 23 lessons in all 8 languages.
- ImprovedA full legal-accuracy review of the Academy against the regulation text: the Article 14 final-report deadlines are now taught correctly (one month after notification for severe incidents; 14 days after a fix is available for actively exploited vulnerabilities), the 5-year support period is correctly framed as a default tied to expected use time, and the conformity-route guidance for critical products was corrected. Deadline wording was aligned everywhere it appears — incident screens, PDF reports, pricing and the copilot.
- ImprovedClassification results for critical products now name the correct conformity route: third-party assessment via a notified body — European certification becomes mandatory only once the Commission requires it for your category.
- ImprovedThe dashboard's readiness-by-product view was redesigned: products needing attention sort to the top, gaps stand out visually and each one links directly to the screen where you fix it, with a proper phone layout.
- ImprovedThe CRA Readiness page now opens with a clearer picture: a complete/partial/missing distribution bar, glanceable stat tiles and a 'start here' link to your weakest product.
- ImprovedThe Organization chart in settings shows more: member detail popovers, pending invitations, deactivated accounts, and what each role is allowed to do — with accurate seat counts everywhere.
1.4.0
A complete audit trail of every change
- NewAudit trail: every change to your organisation's records — products, compliance data, team membership and settings — is now captured automatically at the database level, with who changed what, when, and the exact before/after values. Browse it under Settings → Audit trail, filterable by record type and team member.
- NewThe trail is tamper-evident by design: entries are immutable to every application role and can't be edited or deleted through the product by anyone, including Seentrix staff — only read by your admins and compliance officers. The one exception is the automatic GDPR redaction described below. Secret values (API keys, tokens, webhook secrets) are never stored in it.
- ImprovedPrivacy by default: when a team member's account is deleted, their personal details are automatically scrubbed from the audit trail while the record of what changed is preserved, and account deletion now also removes the member's profile picture from storage.
- ImprovedThe privacy policy and data processing agreement now describe the audit trail, its retention and the erasure behaviour, and the user manual was updated in all 8 languages.
1.3.0
A dashboard that shows your whole CRA program
- NewSix new dashboard widgets: a 26-week compliance trend chart, a product-by-obligation readiness heatmap, a live vulnerability posture panel, a 90-day regulatory horizon with countdowns, SBOM & monitoring health, and team training evidence.
- NewRole-aware views — compliance leads see the full program picture, engineers see the security posture in their personal dashboard, and auditors/viewers get a read-only overview worth showing in an audit.
- FixedContinuous (hourly) vulnerability monitoring on the Enterprise plan could fail to enable due to a database constraint from an earlier release — fixed.
1.2.0
The free CRA checker, public advisories and a stronger technical file
- NewA free, public CRA classification checker at /cra-checker — answer a few questions and see your product's classification, conformity route and key deadlines in minutes, in all 8 languages. Results are shareable by link.
- NewSecurity advisories marked Public now actually publish — on your public security page, each with a stable link and a machine-readable feed. Private advisories remain strictly private.
- NewThe technical file now records how your support period was determined, as Annex VII requires — with guidance when a period under five years needs justification. The Annex VII coverage check only turns green when it's documented.
- ImprovedBilling integrity: your billing currency is determined by your company's country, which is now required before checkout and verified against the billing details confirmed with our payment provider.
- FixedClearer wording throughout on the 5-year support period rule — it is a default tied to expected product use time, not an absolute minimum.
1.1.6
A security check you can actually see
- FixedThe "I'm a human" security check is now always visible on the contact, newsletter and security-report forms. It previously ran invisibly — and visitors who were asked to complete a challenge could be left unable to submit, with no explanation.
- ImprovedIf the security check cannot be completed, forms now show a clear message with what to do instead of failing silently.
1.1.5
A faster Seentrix, a sharper copilot and airtight legal pages
- ImprovedSignificantly faster page loads everywhere — pages now ship up to 80% less JavaScript, and dozens of database access paths were tuned for speed as your data grows.
- FixedThe AI copilot no longer gets stuck on 'Thinking…' — slow answers recover automatically or offer a clear retry. We also fixed an issue where the copilot could answer without consulting the Seentrix knowledge base; it now always grounds its answers in it, or tells you it can't.
- NewNewsletter signups now use double opt-in, and every newsletter email includes a one-click unsubscribe link.
- ImprovedOur legal pages — privacy policy, terms, data processing agreement, cookie policy and imprint — were comprehensively reviewed and updated for accuracy and completeness.
- FixedAssorted polish, including checkmark icons that previously didn't render on a few pages.
1.1.4
Incident notice delivery, exactly-once reports and a fresher site
- NewIncident user notifications (CRA Article 14(8)) can now be emailed to your affected users directly from Seentrix — with per-recipient delivery tracking shown on the incident, automatic retry of failed deliveries, and duplicate-proof sending.
- ImprovedWeekly digest and monthly report emails are now delivered exactly once per period, even if a run is interrupted and retried — no duplicates, no organizations skipped.
- SecurityHardened outbound webhook delivery against network-level redirection, and tightened the integrity guarantees around finalizing a Declaration of Conformity so it can only be issued through the assessed conformity route.
- ImprovedA clearer 'Compare plans' table, a roomier support chat window, a redesigned CRA-deadline timeline showing what has passed and what's next, and five new blog articles.
- FixedCorrected the staged CRA deadline descriptions on our website, aligned support hours (Mon–Fri 9:00–18:00 CET), fixed blog tables not rendering, and quieted a background error from the contact-page security check.
- ImprovedThe in-app user manual and the AI copilot's knowledge base now cover every shipped feature, in all supported languages.
1.1.3
Billing and reminder reliability
- FixedPayment events are now processed even more reliably — if a rare interruption occurs while a billing update is being handled, it is automatically retried until it completes instead of being skipped.
- FixedTrial 'ending soon' reminders are now sent exactly once per trial — no duplicate emails if a background run is retried, and no missed reminders after a delayed run.
1.1.2
Reliability polish
- ImprovedMore resilient background jobs — vulnerability monitoring, weekly digests and deadline reminders now handle interruptions gracefully and avoid duplicate emails if a run is retried.
- ImprovedYour plan now updates immediately on the billing page right after checkout, instead of waiting for confirmation to sync.
- ImprovedReadability and layout polish on this What's new page.
1.1.1
Security hardening and reliability improvements
- SecurityPlatform-wide access-control hardening: stronger enforcement of two-factor authentication, single sign-on, plan entitlements, and data isolation between organizations.
- FixedBilling subscription changes now reconcile more reliably, so an out-of-sequence payment event can no longer affect the wrong subscription.
- FixedAccount data-erasure requests now remove all associated personal data, including feedback submissions.
- ImprovedCleaner, wider 'What's new' page with a consistent layout.
1.1.0
Security hardening, PDF language fixes and signup consent
- SecurityTwo-factor authentication is now enforced end-to-end: every API request, data export and document download requires a fully verified (TOTP) session — not just the app pages.
- SecuritySingle sign-on provisioning re-checks your plan's SSO entitlement and seat limit before admitting a new user, and organization profile changes require an admin role.
- SecurityJira API tokens are now stored encrypted at rest (AES-256-GCM), the same way webhook secrets already were.
- SecurityStricter server-side validation for SBOM ingestion and file uploads (size, type and content limits).
- FixedGenerated PDF documents now render every supported European language correctly — Polish characters were previously missing from Declarations of Conformity and reports.
- FixedTranslated 30+ interface strings that silently fell back to English (Academy lessons, SSO sign-in, API keys, team settings and more), and the dashboard profile banner no longer shows raw labels.
- NewSignup now records your explicit Terms & Privacy acceptance, with a separate optional opt-in for product updates.
- NewVersion number and this public update history.
- ImprovedThe getting-started view now uses the full dashboard width — greeting and progress side by side, with the six onboarding steps as a numbered card grid.
- ImprovedFriendlier error pages across the product, and clearer, more precise data-hosting wording on the website and legal pages.
- ImprovedUpgraded the underlying web framework to the latest patch release.
1.0.0
Seentrix 1.0 — initial production release
- NewThe CRA compliance workspace goes live: product classification, SBOM and vulnerability monitoring, the conformity workflow with Declarations of Conformity, Article 14 incident reporting, technical file, Academy training, AI Copilot, REST API + SCIM, SSO, and support for 8 languages.
- SecurityMandatory two-factor authentication with backup recovery codes for every account.