App Release Notes
A summary of key features introduced in each major release over the last two years.
2026
26.4.0 - Apr 21
- NQE Diff Performance -- Diffs on large tables up to 25x faster using declared primary keys with key visibility.
- Topology Export to Image -- Download any topology view as a high-resolution PNG image for documentation.
- NAT64 Support for IOS and IOS-XE: -- Support for dynamic NAT64 translations on Cisco IOS and IOS-XE platforms.
26.3.0 - Mar 17
- In-App Audit Logs -- Full audit trail of user actions with filtering, CSV export, and configurable retention.
- System App -- System Overview elevated to a top-level app consolidating node health, jobs, and NQE executions.
- On-Demand NQE Verification Diffs -- Row-level diffs computed only when requested, eliminating 20-30 min of background work.
- STIG Quarterly Update (Y25Q4) -- October 2025 DISA STIG updates for Cisco and Juniper platforms.
- Telemetry -- Anonymized, aggregated usage data collection to improve the product experience.
- Automatic Device Type Mismatch Detection -- Platform validates device types after collection and self-corrects mismatches.
26.2.0 - Feb 17
- Automated CVE DB Scheduling -- On-premise deployments can auto-schedule CVE database downloads at predefined intervals.
- KPI Category Re-Ordering -- Drag-and-drop ordering for KPI categories on the dashboard.
- Topology Annotations Improvements -- Improved tools for adding and managing annotations on the network topology map.
- IBM Cloud GA -- IBM Cloud support reaches general availability.
- Fortinet User ID and Junos Mac-VRF Modeling -- New modeling support for Fortinet User ID and Juniper mac-vrf.
26.1.0 - Jan 22
- Dark Mode GA -- Dark mode reaches general availability across topology views and code editor.
- Vulnerability Page Redesign -- Updated filtering and one-click metric-based data filters on the CVE tab.
- Query Execution Progress Monitoring -- Live progress updates showing queue position, rows processed, and elapsed time.
- Customer Secrets Encryption using AWS KMS -- Organization-level encryption keys in AWS KMS with BYOK support.
2025
25.12.0 - Dec 16
- Configuration Snippet History -- Focus config history on isolated snippets instead of full device configs.
- Onboarding Application -- Centralized onboarding dashboard with Collection Health and Snapshot Health views.
- Path Grouping with Underlays -- Reduced path groups by consolidating paths differing only in underlay hops.
- Engagement Dashboard -- Granular reports segmenting user activity by UI vs. API access for usage optimization.
25.11.0 - Nov 18
- NQE Ordered Collections -- New
order by,limit, and list indexing syntax for NQE queries. - Cloud Firewall Policies in NQE -- Distributed policies and reusable network objects for AWS, Azure, and GCP.
- CISA KEV Integration in NQE -- CVE records include a flag showing whether a vulnerability is actively exploited.
- Hybrid Custom Collection -- Custom command groups can collect via both CLI and SNMP together.
25.10.0 - Oct 21
- NQE History -- Track how network data changes across snapshots with historical visibility and retention.
- Dark Mode (Tech Preview) -- Dark mode available across most of the platform.
- Remote Collector for On-Premises -- Remote collectors for segmented/remote networks with centralized management.
- Security-Focused Path Search View -- New path search mode highlighting traffic restriction and NAT devices.
25.9.0 - Sep 16
- Device Config File History -- Chronological config change visualization across snapshots.
- Diff Insights and Route Diffs -- New Diff Overview dashboard with warnings, change propagation, and routing diffs.
- Infoblox DDI: Data Preview and Push Logs -- Preview payloads before pushing to Infoblox plus audit trail.
- Manual Interface Label Overrides -- Reclassify links between data and management types for better topology control.
25.8.0 - Aug 19
- DNS Zone Transfer -- Pull hostname records from DNS servers for FQDN resolution in snapshots and path checks.
- CWE and KEV Data in Vulnerability Analysis -- CISA Known Exploited Vulnerabilities and CWE data for risk prioritization.
- Alkira Cloud Support -- New modeling support for Alkira cloud exchange points and services.
- Segment Routing v6 on Cisco IOS-XR -- SRv6 support added for Cisco IOS-XR platforms.
25.7.0 - Jul 22
- Infoblox DDI Integration -- Push discovered network data to Infoblox IPAM as a NetMRI sync replacement.
- NQE AI Assist Improvements -- New schema retrieval algorithm improves query generation quality by 21%.
- Streamlined Vulnerabilities Dashboard -- Optimized page with summarized display and per-device detail drawer.
- STIGs for F5 and Arista -- New F5 BIG-IP TMOS STIGs (86 rules) and partial Arista STIGs support.
- Selective Execution for Inventory+ Diffs -- Diffs computed on-demand to preserve performance, with manual trigger.
25.6.0 - Jun 17
- End of Life Analysis for Fortinet Hardware -- EoL expanded to Fortinet hardware platforms.
- STIGs Update (DISA CY25Q2) -- 28 new rules integrated within the 90-day target.
- API Publishing -- Classic device operations and device tags operations APIs published.
25.5.0 - May 20
- Data Files Importing -- Upload CSV, JSON, or text files for use in NQE queries, stored in snapshots.
- Collector Queues Visibility -- New UI showing collector job queue position, trigger info, and kill operations.
- API Token Management -- Org admins can set token lifetime, revoke access, and view usage timestamps.
- Vulnerability Management for Dell OS9 -- Enhanced configuration-based CVE detection for Dell OS-9 devices.
25.4.0 - Apr 22
- Enhanced CVE Detection Details -- Five distinct vulnerability states for more precise risk assessment.
- Topology Annotations -- Add shapes and text annotations to location layouts in topology views.
- Automatic Cloud Account Discovery -- Newly discovered cloud accounts auto-reported with optional auto-add.
- Custom Commands Flexible Device Selection -- Custom command groups support per-device targeting via glob matching.
25.3.0 - Mar 18
- OSPF Data in NQE -- OSPF areas, router roles, and neighbor relationships now queryable in NQE.
- Structured JSON Support in NQE API -- Complex fields returned as proper JSON objects instead of embedded strings.
- Multi-Valued Column Filtering in NQE -- Select multiple filter values per column in NQE result tables.
- End of Life for Palo Alto Prisma SDWAN -- EoL analysis expanded to Palo Alto Prisma SDWAN ION devices.
25.2.0 - Feb 18
- ACL Lifecycle Data -- ACE hit counts, timestamps, and new firewall rule library queries for PANOS devices.
- Network Endpoints Discovery GA -- Endpoint discovery, collection (SSH, SNMP, HTTP), and analysis in NQE.
- Data Connectors in NQE -- Streamlined workflow for defining external data sources (HTTP GET, JSON/CSV/text).
- End of Life Expansion -- EoL analysis added for F5 TMOS, Fortinet FortiOS, and Checkpoint GaiaOS.
25.1.0 - Jan 21
- SNMP Data Retention up to 30 Days -- Configurable SNMP data retention from 3 to 30 days.
- Network Endpoints & Data Connectors -- Redesigned UX separating endpoints from external data sources.
- Faster Cluster Restore -- Platform available immediately during restore while snapshots continue in background.
- STIGs Updates -- DISA CY24Q4 updates (42 rules) and 145 new F5 STIGs rules.