July 2026
This page documents all customer-facing changes to the DataGrail application made in July 2026. Additional entries will be added every week on Friday.
Week of July 20
🛠 Changes Made
- Rippling integration upgraded — the Rippling integration now runs on Rippling's modern Platform API, keeping this HR connection reliable as Rippling retires its legacy API. Authentication is now a single API token, and the same rich employee data — including sensitive fields like home address and date of birth — is still fully supported.
- Assessment export options — when downloading an approved assessment, you can now choose exactly what to include: toggle risk information and attachments on or off to get a standalone PDF, a full ZIP with attachments, or anything in between.
- Assessment country selection — country questions in assessments now use a collapsible checkbox tree grouped by region, with shortcuts for common selections like Global and EEA + UK — no more scrolling through 200+ countries one at a time. The same picker now powers country selection in the Live Data Map bulk-edit drawer.
- Assessment template visibility — Admins and Risk Monitor Admins can now hide DataGrail's default assessment templates, so only your organization's approved custom templates appear when creating a new assessment — reducing the risk of the wrong template being used for regulatory work like GDPR transfer impact assessments.
- Inbound Assessments — inbound assessment links now recognize when the submitter is already a platform user with the right access (Admins, Risk Monitor roles, Assessment Creators/Contributors) and route them straight into the app instead of sending a "check your email" link. Unmatched submitters see no change in their experience.
- Assessment creation — the Systems dropdown when starting a new assessment now lets you pick a specific system instance in addition to the parent system, and prefill data is aggregated across all instances when you select the parent.
- Processing Activities — systems with multiple connected instances (like separate production and sandbox environments) now collapse into a single expandable row instead of listing each instance separately, matching System Inventory's behavior.
- User management — the Users and Invitations tabs now support search and filtering.
- Assessment contributors — you can now search by name when inviting contributors to an assessment.
🐛 Bugs Squashed
- Resolved an issue where the data subject request wizard language field didn't default to English correctly.
- Resolved an issue where cookie export patterns weren't consistently scoped to the correct consent project.
- Resolved an issue where a risk badge could display as
undefinedor an assessment's second risk wasn't linked correctly when re-adding it. - Resolved an issue where Notion access requests could stall under rate limits.
- Resolved an issue where a DSAR download link didn't refresh after the original link expired.
- Resolved an issue where the Inventory table didn't show an error state when it failed to load.
- Resolved an issue where cookie rule match patterns rejected colons.
- Resolved an issue where the backend's TCF publish-ready status wasn't reflected in the UI.
- Resolved an issue where the Source filter was missing Adobe managed properties.
- Resolved an issue where a Vera chat thread reset before an in-flight run was cancelled.
Week of July 13
🚀 Features Added
- System Inventory bulk removal — you can now select up to 500 systems and remove them in a single action, instead of deleting them one at a time.
- Vera document awareness — Vera can now reference your system and processing activity documents when answering questions, giving more grounded and complete responses.
🛠 Changes Made
- Processing Activities redesign — the Processing Activities table has a new look built around progress, not warnings. Each activity now shows a completion progress bar at a glance, and you can customize which columns appear so your team can surface what matters most.
- Assessment approvers — approvers are now easier to find when assigning them, and they're notified automatically when an assessment is assigned to them for approval.
- Document downloads — in the document drawer, the View button is now labeled Download, and selecting it downloads the file directly with the correct file extension instead of opening a new tab — so it's clear what will happen and your device recognizes the file type.
- Configure Email template link — the Configure Email workflow step now includes a View Template link, so you can jump straight to the email a workflow will send.
- Vera reasoning — Vera now keeps its reasoning visible after you accept a suggestion, so you can see why it made a recommendation.
🐛 Bugs Squashed
- Resolved integration issues affecting Salesforce, Notion, Rippling, TeamUp, and Salesforce Marketing Cloud request processing.
- Resolved an issue where a long value in a Google Cloud Storage connection field could be truncated during setup.
- Resolved an issue where Manage Languages wouldn't save when no locale was selected.
- Resolved an issue where a leftover confirmation window appeared after approving a suggested data subject in the Live Data Map.
- Resolved an issue where the Manage Layout button could be hidden behind the top navigation bar.
- Resolved issues where custom consent tags and consent service metadata weren't correctly scoped to individual consent projects.
Week of July 6
🚀 Features Added
- Evidence documents — you can now attach supporting evidence documents directly to systems and processing activities, keeping documentation alongside the records it supports.
- SAP SuccessFactors — a new SAP SuccessFactors integration is now available, letting you search employee data across HR, payroll, and directory records.
- Assessment version history — assessments now show a list of related versions, and creating a new version records a change-log event, making it easier to track how an assessment evolved.
🛠 Changes Made
- Consent Analytics — analytics are now easier to interpret at a glance, with descriptions on each chart, clearer metric definitions, and added context to help privacy, marketing, and engineering teams understand what they're looking at and what to do next.
- Vera upgraded to Claude Sonnet 5 — every Vera agent now runs on Anthropic's latest and most capable model, for sharper reasoning, more nuanced answers, and stronger instruction-following across the board.
- Vera chat — charts in Vera reports now appear inline right where they're referenced, answers stream live as they're written, Vera remembers more of a conversation at once, and Vera suggests a wider range of your day's tasks.
- Workflow Automations — the "Add an Action" drawer now groups the Configure Email action with the send steps that depend on it, making workflow setup clearer.
🐛 Bugs Squashed
- Resolved an issue where the Edit Systems drawer pre-selected all AI-suggested systems instead of leaving the choice to you.
- Resolved an issue where intake requests submitted in a non-English language could get stuck due to mismatched email locales.
- Resolved an issue where an integration group assignment was dropped when editing a non-OAuth integration.
- Resolved an issue with BambooHR credential validation.
- Resolved an issue where integration setup errors showed a generic message instead of the specific permission that was missing.
- Resolved an issue where Email Templates appeared for Live Data Map-only customers who don't use them.
- Resolved an issue where duplicate access categories could prevent unchecking data types on a data subject request.
Week of June 29
🚀 Features Added
- Cisco Duo SSO — customers using Cisco Duo can now configure SAML 2.0 single sign-on. Follow the new setup guide, paste in your metadata URL, and users log in with their existing Duo credentials, with new users provisioned automatically on first login.
- Configure Email in Workflow Automations — a new Configure Email action lets you control exactly what email a workflow sends, or suppress it entirely, directly in the workflow. Send a specific published template or suppress emails per workflow — for example, suppress deletion-results emails for employee requests while keeping them for consumers, without touching global settings.
🛠 Changes Made
- Automations index — the workflows list is now a sortable, filterable, searchable table. Sort by name, phase, status, or error count, filter by published or draft, and see error counts inline. "View in automations" links throughout the app now open a pre-filtered list showing just the relevant workflows.
- Vera ticket filtering — Vera can now match privacy requests across multiple statuses at once and exclude specific states in a single query, so questions like "active requests not in the setup wizard" or "closed requests that weren't spam" resolve cleanly. Past-due queries no longer drop closed tickets.
- Intelligence Library data subject accuracy — data subject categories in system metadata are now more accurate, with fewer false positives. Some fields may now be intentionally empty where the data genuinely can't be known.
- Domain verification — when email domain verification times out, you now see a clear "Verification Failed" state with retry guidance instead of a request that hangs on "Pending."
- Assessment assignments — the assignments panel is easier to use, with an empty state, a sticky Assign button, a pending-count badge, and alignment fixes.
- Assessment template permissions — managing assessment templates is now restricted to admins; Assessment Creators have read-only access to templates.
- iOS Consent SDK 1.6.0 — text elements now respect the
stylesettings in your configuration for correct title, header, and body sizing, and a config parse failure affecting choice buttons has been fixed. - Android Consent SDK 1.6.0 — the banner now recovers gracefully from a corrupted keyset instead of crashing the host app on launch.
🐛 Bugs Squashed
- Resolved an issue where the Live Data Map dropped active filters (such as high-risk) when scrolling past the first page of results.
- Resolved an issue where automation settings showed a false success message when a save had actually failed (for example, for users without permission).
- Resolved several Suggested Processing Activities issues: duplicate activities from rapid clicks, an error when reusing an archived activity's name, and a delay before archived activities disappeared.
- Resolved an issue in Consent where you couldn't add a Links element back to a layer after removing the last link.
- Resolved an issue where the Monetate integration failed to refresh its OAuth token.
- Resolved assessment collaborator role issues so Contributors can correctly comment, add risks, and be assigned questions.