> For the complete documentation index, see [llms.txt](https://docs.cloudcyte.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.cloudcyte.com/release-notes/v4.4.1.md).

# v4.4.1

Published: 16.08.2026

**New Features**

* Added Active Directory GPO Properties grid under Other Assets in Artefact Analysis. To collect data added "Enable Group Policy Object Analysis" checkbox to Active Directory Analysis Policy.
* Added a failed login attempt counter with a "Consecutive Failed Login Count to Block Account" setting (default 5) in the UI settings at MSSP level. Once the limit was reached, the account was locked and the user saw the message "Your Account is Locked. Please contact the administrator". Administrators could unlock the account from the User Management page at MSSP level.
* Added the Fortigate Firewall Analysis dashboard under Dashboards > Security & Network Devices, giving the SOC a single prioritised view of VPN activity, firewall and system events, CIS benchmark posture, external exposure, policies and VPN identities without logging into the firewall console. It combined KPI tiles, a data source priority matrix, charts and seven expandable grids with row actions such as blocking a source IP or creating a remediation, all filterable by date, tag, Shadow-IT and firewall, with every element drilling through to the matching grid.
* Added the Windows Deep Threat Hunting dashboard as the first tab of the Threat Hunting module, giving hunters a single triage view across all eight Windows artefact sources. Six summary cards and a risk priority matrix ranked sources by Malicious, Critical, High Risk, AI Critical, AI High Risk and Shadow-IT counts, alongside five charts covering risk distribution, top hostnames, activity trend, matched rules and the Shadow-IT split. Eight expandable sections provided actionable grids with inline risk score editing, Set Not Shadow-IT, Add to List and CSV export, all filterable by date, tags, acknowledgement state and a Shadow-IT filter that defaulted to unmanaged assets.

**Improvements**

* Added Scheduled Job Management at organisation level under Settings & Reporting, allowing scheduled jobs to be viewed and managed per organisation. Improved scheduled jobs by fixing problems with their creation and execution for both new and existing organisations, and added randomisation of the job start time during organisation creation to prevent queue build-up.
* Improved the colour scheme and removed breadcrumbs. Added a quick navigation menu (Search) to the top of every page.
* Improved the USB Device Management dashboard by adding an Other category to the Files Copied — Type Risk chart and an Endpoint filter.
* Improved the TPRM Third Party Dashboard with a search field and an "Add Vendor" button.
* Added an "Attachment Required" toggle to Survey and Questionnaire questions. For Yes/No questions, the attachment was not required when the answer was No or N/A.
* Improved the Initial Settings reports by replacing the Executive Overview Report with "Summary Report v5".
* Added Active Directory logs to Integration Logs.
* Added a "Apply only once & reset" flag to Classification Rules Execution.

**Bug fixes**

* Fixed an issue with Aggregation Analysis across all grids.
* Fixed a PostgreSQL syntax error on the Asset Main Devices grid when it was opened from another tab.
* Fixed incorrect text colour on the CISO Dashboard after the first login.
* Fixed an issue on the sign-up completion form where a password that failed validation was accepted on a second attempt, allowing an account to be created with a password that did not meet the complexity requirements.
* Removed several insecure URLs.
