Releases

v4.4

ScanSuite Teams: one installation serving several teams, with roles, single sign-on, installation administration, audit logs and pipeline scans.

v4.4 introduces ScanSuite Teams: one installation serving several teams, each with its own products, scans, findings and credentials, and none of them able to see another's work. An existing installation becomes its first team without losing anything.

ScanSuite Teams

Everything on this page is ScanSuite Teams. The edition without teams keeps its single-installation user administration and is unaffected.

AreaWhat it does
TeamsA team owns its products, assets, scans, findings and credentials. Data does not cross the boundary, and a scan belongs to the team that started it.
RolesEach member holds a role within the team — what they may scan, change, approve and export follows from it rather than from a per-page setting.
Members and accountsInvitations, local accounts, password resets and removals, on a Members page each team administers itself.
Single sign-onMicrosoft Entra ID and OpenID Connect directly, AD and LDAP through a broker, with roles assigned from group membership.
Installation administrationA /admin area for the installation as a whole: create and suspend teams, set their limits, and configure the AI and scanner allowance every team inherits. It gives no access to any team’s work.
Audit logsA team audit log for what members did, and an installation audit log for what administrators did, separate from the service logs.
Upgrading to teamsAn existing installation is converted into its first team in one run: the database is dumped, converted and cut over, with the original kept and a documented rollback.
Pipeline scans and the build gateA build job starts and follows a scan with a team API token, and fails the build on what the scan finds.
Per-team secretsIntegration, identity and AI credentials are encrypted per installation, with the keys written once to a file to keep with your backups.

See Teams and roles, Installation administration and Upgrading to teams.

Last reviewed 2026-09-20