v1.1.33 includes 4 updates since v1.1.32. This release makes enforcement readiness checks reliable for large organizations, clarifies Event Review context, fixes enhancement worker intelligence filtering, and publishes the weekly LOTL contributor edition.
Highlights
- Readiness checks now handle large organization scopes without request failures.
- Event Review shows intelligence matches and explains missing rule metadata.
- Enhancement worker no longer fails on multi-filename intelligence lookups.
- Weekly LOTL contributor edition is live with a refreshed project inventory.
Fixes
- Fix readiness checks for large organization scopes: Readiness checks now batch organization IDs and paginate policy results, so large organization scopes no longer fail with request errors or 500s. If a required lookup fails, you get a clear 503 instead of a partial or broken result.
- Fix intelligence filtering in enhancement worker: Enhancement processing now handles multiple filenames correctly during intelligence lookups, including punctuation and wildcards. If a lookup fails, items return to pending and AI analysis doesn't run with incomplete context.
Improvements
- Clarify rule and intelligence context in Event Review: Event Review now shows intelligence matches separately from the reported rule source and explains when exact rule metadata is unavailable, so you can see why an event matched without mistaking current policy for the historical trigger. Artifact details appear above policy context, and the source filter is labeled 'All rule sources'.
- Publish weekly LOTL contributor edition: The September 4โ10 contributor edition is now live, with refreshed project inventory and leaderboards.