SaaS

SaaS Release Notes - June 12, 2026

Production release notes - June 12, 2026

Release notes cover new features, enhancements, and fixes that have been released to production.

Identity Security Cloud is SailPoint's next-generation identity security solution. It encompasses and builds on features and functions from IdentityNow. The release notes cover both Identity Security Cloud and IdentityNow features.

New features

ProductWhat's new

Connectivity - Quick Compliance

Identity Security Cloud now supports the following connectors as Quick Compliance connectors:

You can now expediently configure read-only connections to these sources for account and entitlement aggregation. For a full list of supported Quick Compliance sources, refer to Quick Compliance.

Enhancements

ProductFeature enhancements

Identity Security Cloud - Harbor Pilot

If you have multiple accounts on a single source, you can now specify which account receives an entitlement directly within the Harbor Pilot canvas using either natural language or visual controls.

Identity Security Cloud - Identity Graph

User can now use Identity Graph native tags when selecting filter criteria.

Identity Security Cloud - Harbor Pilot

Harbor Pilot is now available in the Amazon sa-east-1 and us-gov-west-1 regions. Harbor Pilot has also been approved for availability in FedRAMP environments.

Identity Security Cloud - Harbor Pilot

Harbor Pilot now provides more transparent responses by showing its reasoning process and revealing responses word by word instead of as a block of text.

Access Risk Management

Access Risk Management now supports extracting SAP Security Audit Log data with the RSAU_CONFIG recording target of Record in Database. For more information refer to Setting Utilization Options.

Identity Security Cloud - Identity Graph

Within Identity Graph, users can now switch between the graph and table view when viewing data.

Identity Security Cloud - Provisioning and Task Manager

Identity selector match criteria that use operators like GT, LT, GTE, and LTE now allow comparisons between mixed numeric types.

Identity Security Cloud - Identity Graph

When exiting Identity Graph, a confirmation window displays confirming the exit in order to avoid any accidental closures.

Connectivity - Sources

The Sources V3 and newer API versions now protect sensitive connector attributes in source responses by returning a fixed masked value instead of encrypted secrets.

Identity Security Cloud - Certifications

The Configure Your Campaign page now displays the application navigation bar.

Identity Security Cloud - Settings

We've modernized the Security Settings pages, bringing an improved user experience and accessibility.

Identity Security Cloud - Identity Graph

The data in the Data Table now reflects the filters applied to the identity graph.

Connectivity - SAP SuccessFactors

SaaS Connectors - SAP SuccessFactors SaaS

The SailPoint SuccessFactors connectors have been updated to support multi-level nested OData account schema attributes for user and employee data.

Connectivity - EPIC

The Epic EMP connector now supports two new configuration parameters:

  • disableRemoveBlockOnAccountEnable: When set to true, the connector retains existing blocks when an account is enabled.

    Default: false. When false, the connector removes blocks on enable, preserving previous behavior.
  • disableAddBlockOnAccountDisable: When set to true, the connector does not add blocks when an account is disabled.

    Default: false. When false, the connector adds a block on disable, preserving previous behavior.

It also updates the enable/disable logic to evaluate options for both methods. If you provide IsBlocked (set to true), BlockReason, or BlockComment, the connector keeps the account blocked regardless of the configuration flags.

Fixes

ProductIssue IDFixes

Connectivity - Okta

CONETN-5413

The Okta connector now supports a configurable delay for group creation when the managed system response is delayed or empty.

SaaS Connectors - SAP S/4HANA Cloud SaaS

CONETN-5390

The SAP S/4HANA Cloud SaaS connector no longer fails during create operations when multiple Business Roles exist.

SaaS Connectors - Snowflake SaaS

CONETN-5415

The SailPoint Snowflake SaaS connector now correctly processes role names with spaces, resolving a role revocation failure caused by incorrect double-quoting.

SaaS Connectors - Google Workspace SaaS

CONHOWRAH-6948

The Google Workspace SaaS connector no longer triggers unnecessary daily synchronization when updating the External IDs attribute.

Identity Security Cloud - Settings

ISCANT-12524

Disabling external tenant access immediately deletes all Personal Access Tokens (PATs) for slpt.services, aligning behavior with grant expiration.

Connectivity - SAP GRC

CONETN-5405

The SAP GRC connector now skips the system item in the GRC access request during Modify operations when skipSystemItemForUpdateUser=true appears in the source XML.

Connectivity - Credential Provider

CONJUBILEE-4632

The HashiCorp Credential Provider connector now respects Proxy Setting without Authentication.

SaaS Connectors - Microsoft SharePoint Online SaaS

CONETN-5379

When a connector aggregation encounters a response code 200 with an error Premature end of chunk coded message body, it is ignored, allowing the aggregation to continue without failure.