Documentation change log

Black Duck Polaris Platform

August 2026

  • Polaris supports Rapid Scan Static (Sigma) 2026.7.0. (POLDOCS-2092)
  • Container Analysis for Polaris. (POLDOCS-1463)
  • New topic for initial release of AI-assisted triage, with mentions across various topics about issues, triaging, roles, settings, and logs. (POLDOCS-1590).
  • ServiceNow issue tracking integrations now support two-way triage synchronization. (POLDOCS-1904)
  • Issue tracking integration for ServiceNow is available. (POLDOCS-1454)
  • Remove outdated policy tutorial. (POLDOCS-2122)
  • The sunset date for deprecated endpoints in Polaris APIs was extended to November 24, 2026, at 05:00:00 GMT. (POLDOCS-2115)
  • Updated fAST Dynamic checkers list. Includes four previously undocumented checkers, new class names for four other checkers, one checker code change (to BOLA), and various detail updates to existing entries. (POLDOCS-2072)
  • Now, you can edit and regenerate service accounts. (POLDOCS-1620)
  • Jira Cloud issue tracking integrations now support custom Jira fields and adjustable ticket description content. (POLDOCS-1538)

July 2026

  • Updated the Roles and Permissions reference table to clarify policy assignment permissions at organization, application, project, and branch levels. (POLDOCS-2089)
  • Update release notes. (POLDOCS-2098)
  • Polaris supports Black Duck® Bridge CLI 4.5.0. (POLDOCS-2090)
  • Polaris supports Rapid Scan Static (Sigma) 2026.6.1. (POLDOCS-2067)
  • Jira Cloud issue tracking integrations now support two-way triage status synchronization. (POLDOCS-1622)
  • You can now share copies of your saved dashboard filters and report configurations with other users and groups in your organization. (POLDOCS-1572)
  • Polaris supports Black Duck® Detect 11.4.2. (POLDOCS-1832)
  • Polaris supports Coverity 2026.6.0. (POLDOCS-1639)
  • Polaris supports Rapid Scan Static (Sigma) 2026.6.0. (POLDOCS-1886)
  • Added information on moving SAST & SCA projects between applications. (POLDOCS-1502)
  • Corrected how to test from the web UI topic. (POLDOCS-2081)
  • Now, Organization Admins can set default policies for their organization. (POLDOCS-1442)
  • Updated files related to DAST API scans, checkers, and test results, to mention new BOLA auto-annotation feature. (POLDOCS-1677)
  • Polaris supports Black Duck® Bridge CLI 4.4.0. (POLDOCS-1952)
  • Updated default impact values for issue risk factors. (POLDOCS-2071)
  • Polaris now supports issue risk scoring for SCA issues. (POLDOCS-1605)

June 2026

  • Fix broken links. (POLDOCS-2042)
  • You can now set up a connection to sync vulnerabilities from your Black Duck SCA instance to Polaris. (POLDOCS-1323)
  • Organization Administrators can now control which dashboard sets are available to users in their tenant. (POLDOCS-1232)
  • Polaris supports Fail PR. (POLDOCS-1459, POLDOCS-1637)
  • Fix broken links in the Code Sight docs. (POLDOCS-2002)
  • Polaris supports secure tunnel connectivity when integrating GitHub self-hosted repositories hosted in a private network. (POLDOCS-1569)
  • Polaris now supports tenant-wide secure tunnels. (POLDOCS-1616)
  • Polaris supports Black Duck® Bridge CLI 4.3.0. (POLDOCS-1831)
  • Polaris supports Sigma 2026.5.0. (POLDOCS-1703)
  • Edits and refinement in Dashboards documentation for clarity and flow. (POLDOCS-1905)
  • SCA Fix PR. (POLDOCS-1464, POLDOCS-1648)
  • Reachability Analysis for Polaris. (POLDOCS-1375, POLDOCS-1480, POLDOCS-1623)
  • Fix manage copyright format procedure. (POLDOCS-1838)

May 2026

  • Now, SCA issues on the (CISA KEV) catalog are flagged in the Polaris user interface. (POLDOCS-1725)
  • The Polaris status page (status.polaris.blackduck.com) is deprecated and replaced by the new Black Duck status page (status.blackduck.com). (POLDOCS-1630)
  • Binary Scanning for Polaris. (POLDOCS-1476)
  • Polaris supports Rapid Scan Static (Sigma) 2026.4.1. (POLDOCS-1649)
  • The validation that runs before package manager SCA tests was enhanced. (POLDOCS-1686)
  • Update DAST code sample. (POLDOCS-1718)
  • Polaris supports Coverity 2026.3.0. (POLDOCS-1531)
  • Polaris supports Rapid Scan Static (Sigma) 2026.4.0. (POLDOCS-1614)
  • Known issue: Issue severity and fix-by date changes that are pending approval do not appear on the Triage Approval Overview dashboard. (POLDOCS-1635)
  • When you choose to use a specific Coverity version (including the recommended version), the corresponding version of Rapid Scan Static (Sigma) is locked, and won't change when newer Sigma versions are available. (POLDOCS-1566)
  • Polaris supports Black Duck® Bridge CLI 4.2.1. (POLDOCS-1668)
  • The validation that runs before package manager SCA tests was enhanced. (POLDOCS-1670)
  • Now, you can download test artifacts and retrieve test UIDs for troubleshooting from the Polaris user interface. (POLDOCS-1640)
  • Polaris now detects the programming languages in your source code and displays them in the user interface. (POLDOCS-1432)
  • Polaris now includes the License Manager. (POLDOCS-1487)
  • Correction: You can generate reports without selecting a report module. (POLDOCS-1655)

April 2026

  • Now, you can customize which modules appear in out-of-the-box reports and customize the content of select modules. (POLDOCS-1431)
  • Component policies now include an option to set rules for deep license data (if enabled) monitoring.(POLDOCS-1563)
  • Tools in the Issue Management MCP server were renamed, and redundant tools were removed. (POLDOCS-1628)
  • Polaris supports Black Duck® Bridge CLI 4.1.2. (POLDOCS-1613)
  • Polaris now provides deep license information found in your open source components. (POLDOCS-1437)
  • Now, you can change issue severities via triage. (POLDOCS-1211)
  • Polaris supports Rapid Scan Static (Sigma) 2026.3.0. (POLDOCS-1553)

March 2026

  • Now, you can create multiple DAST projects within a single application. (POLDOCS-1277)
  • Issue tracking integrations with Azure DevOps and Jira now support automatic ticket closure. (POLDOCS-1316)
  • Fix link errors in SCM integration topics. (POLDOCS-1586)
  • The sunset date for deprecated endpoints in Polaris APIs was extended to August 25, 2026, at 12:00 AM EST. (POLDOCS-1576)
  • Added information on the Issue Management MCP server. (POLDOCS-1244)
  • Added information on standardizing copyright formats, copyright improvements, and the Notices File report. (POLDOCS-1436)
  • The issue tracking integrations with Azure DevOps and Jira were improved. (POLDOCS-1401)
  • Polaris supports Black Duck® Bridge CLI 4.0.0. (POLDOCS-1555)
  • Polaris now supports Rapid Scan Static (Sigma) 2026.2.1. (POLDOCS-1552)
  • Added risk scoring interactive tutorial. (POLDOCS-1285)

February 2026

  • Added labels interactive tutorial. (POLDOCS-1286)
  • Clarified audit logging and notifications for bulk onboarding. (POLDOCS-1377)
  • Now, you can view the terms of different open-source and third-party licenses used in your projects. (POLDOCS-1465)
  • Additional changes to component origins in the Black Duck KnowledgeBase™ are automatically synchronized with projects in your portfolio. (POLDOCS-1363)
  • Added remove SCM integration to docs. (POLDOCS-1258)
  • Polaris supports Sigma 2026.2.0. (POLDOCS-1537)
  • Pull/merge request policies for Azure and Bitbucket. (POLDOCS-1541)
  • Support Bitbucket workflows on Polaris. (POLDOCS-1358)
  • Support Azure workflows on Polaris. (POLDOCS-1483)
  • Additional changes to component origins in the Black Duck KnowledgeBase™ are automatically synchronized with projects in your portfolio. (POLDOCS-1362)
  • On February 18, 2026, Polaris will no longer accept legacy TLS cipher suites. (POLDOCS-1522)

January 2026

  • Polaris supports Black Duck® Bridge CLI 3.12.0. (POLDOCS-1527)
  • GitLab SaaS (Premium and Ultimate) now has enhanced SCM repository integration capabilities. (POLDOCS-1347)
  • Polaris supports Coverity 2025.12.0. (POLDOCS-1398, POLDOCS-1447)
  • Polaris supports Sigma 2026.1.0. (POLDOCS-1498)
  • The Component Management Dashboard is available. (POLDOCS-1402)
  • Resolved errors in external analysis docs. (POLDOCS-1484)
  • Updated DAST allow list. (POLDOCS-1524)
  • Update token requirements for SCM integrations with Bitbucket. (POLDOCS-1415)
  • Polaris SCM integrations, restructuring and general edits. (POLDOCS-1086)
  • Add batch mode (-B) to Maven commands. (POLDOCS-1381)
  • Clarify SCM support on Polaris. (POLDOCS-239)
  • Removed a note from the Use AI-Assisted Authentication article which stated that Email MFA is not currently supported in the Web UI. (POLDOCS-1525)
  • Polaris supports Black Duck® Bridge CLI 3.11.0. (POLDOCS-1493)
  • Polaris supports Sigma 2025.12.0. (POLDOCS-1481)
  • The Triage Approval Overview Dashboard is available. (POLDOCS-1418)
  • Now, you can download copies of OpenAPI specifications for Polaris APIs from the Black Duck Developer Portal. (POLDOCS-1417)
  • Polaris supports Sigma 2025.11.1. (POLDOCS-1449)

December 2025

  • Added status update. (POLDOCS-1491)
  • Include checkers in reports. (POLDOCS-1275)
  • Policy-based pull request actions. (POLDOCS-1265)
  • Triage information is now included when you import results from third-party tools. (POLDOCS-1246)
  • Now, you can start DAST tests from the DAST Profiles page. (POLDOCS-1409)
  • Now, you can customize the version of Coverity used for SAST tests at the organization, application, project, and branch level. (POLDOCS-1355)
  • Now, Organization Administrators can create and manage service accounts in the Polaris user interface. (POLDOCS-1295)
  • Now, you can configure DAST scan settings and authentication profiles directly in the web UI for Polaris fAST Dynamic. (POLDOCS-1351)
  • Polaris fAST Dynamic now supports the configuration of time-based one-time password (TOTP) MFA through the web UI. (POLDOCS-1351)
  • Group names can be 3-255 characters long. (POLDOCS-1408)
  • Certain changes to component origins in the Black Duck KnowledgeBase™ are automatically synchronized with Polaris. (POLDOCS-1361)
  • Fix broken link in the Code Sight topic. (POLDOCS-1471)
  • Polaris supports Sigma 2025.11.0. (POLDOCS-1404)
  • Coverity 2025.9.0 checkers completely replaced by Sigma checks. (POLDOCS-1312)
  • Polaris supports Coverity 2025.9.1. (POLDOCS-1386)
  • Polaris supports Black Duck® Bridge CLI 3.10.1. (POLDOCS-1446)

November 2025

  • Added information on test queuing; only one test can be active and one can be queued per project and test type. (POLDOCS-700)
  • Updated IP allow listing information for Saudi Arabian instance of Polaris. (POLDOCS-1393)
  • SCM event monitoring (GitHub) can only be established by Org Owner. (POLDOCS-1366)

October 2025

  • SCM integrations test automation supports Rapid Scan SAST. (POLDOCS-1159)
  • Polaris supports Black Duck® Bridge CLI 3.9.2. (POLDOCS-1403)
  • The sunset date for deprecated endpoints in Polaris APIs was extended to March 24, 2026, at 12:00 AM EST. (POLDOCS-1407)
  • Added Base, Exploitability, and Impact scores for SCA issues. (POLDOCS-1266)
  • Tokens used for GitLab SCM integrations require role above Guest. (POLDOCS-1354)
  • Polaris supports Rapid Scan Static (Sigma) 2025.10.0. (POLDOCS-1387)
  • Added list endpoint to service accounts documentation. (POLDOCS-1371)
  • Now, you can save dashboard filter configurations so they can be reapplied later. (POLDOCS-1242)
  • Dashboards now include issue data from all the branches in your projects, not just default branches. (POLDOCS-1291)
  • The Project Label and Branch Label filters were added to Dashboards. (POLDOCS-1391)
  • Add information on local analysis for SAST tests. (POLDOCS-1209)
  • Polaris supports Black Duck Bridge CLI 3.9.0. (POLDOCS-1319)
  • Added Linux ARM support with Bridge 3.5.1 (or newer) and the latest versions of Black Duck Security Scan. (POLDOCS-1182)
  • Polaris supports Rapid Scan Static (Sigma) 2025.9.1. (POLDOCS-1368)
  • Removed UIC column from DAST checkers table. (POLDOCS-1390)
  • Polaris support for Coverity 2025.9.0. (POLDOCS-1360)
  • Added service provider-initiated authentication to single sign-on documentation. (POLDOCS-1317)
  • Fix content-type in example call to PUT /api/auth/service-account-tokens/{tokenId}/applications endpoint. (POLDOCS-1382)

September 2025

  • Polaris supports Rapid Scan Static (Sigma) 2025.9.0. (POLDOCS-1325)
  • API endpoints to create and manage service accounts are available. (POLDOCS-1260)
  • Updated Polaris Secure Tunnel overview. (POLDOCS-1279)
  • Added accessibility statement. (POLDOCS-1328)
  • Added issue policy user interface improvements. (POLDOCS-311)
  • Fixed error on the roles and permissions page. Observers can view project-level issue tracking connections. (POLDOCS-1314)
  • Removed the Coverity Thin Client version from the support matrix page since it's included with Coverity. (POLDOCS-1346)
  • Fixed the URL format for SCM integrations with Azure repos. (POLDOCS-1290)
  • The sunset date for deprecated endpoints in Polaris APIs was extended to November 18, 2025, at 12:00 AM EST. (POLDOCS-1345)
  • Now, you can have up to 1000 saved reports at a time (previously, 500). (POLDOCS-1333)
  • Polaris supports Rapid Scan (Sigma) 2025.8.0. (POLDOCS-1283)
  • Deprecated endpoints in Polaris APIs, versions of the Bridge CLI older than 3.6.0, and versions of Code Sight older than 2025.4.0 will stop functioning on September 15, 2025. (POLDOCS-1329)
  • Application Members can now add, update, and delete manually-added components. (POLDOCS-1318)
  • Deprecated endpoints in Polaris APIs, versions of the Bridge CLI older than 3.6.0, and versions of Code Sight older than 2025.4.0 will stop functioning on September 15, 2025. (POLDOCS-1321)
  • The OWASP® Top 10 API Security Risks 2023 standard is now supported in Polaris. (POLDOCS-1198)

August 2025

  • Added information on triage approval workflows. (POLDOCS-1118)
  • Black Duck Assist (Beta) now leverages Polaris documentation when generating responses. (POLDOCS-1191)
  • Deprecated endpoints in Polaris APIs, versions of the Bridge CLI older than 3.6.0, and versions of Code Sight older than 2025.4.0 will stop functioning on September 15, 2025. (POLDOCS-1152)
  • AI-assisted Authentication for fAST Dynamic (Early Access) is now available. (POLDOCS-1271)
  • Multi-factor authentication (MFA) support is now available for DAST tests. (POLDOCS-1177, POLDOCS-1193)
  • Chrome Recording authentication is now available for DAST tests. (POLDOCS-1299)
  • Polaris supports Coverity 2025.6.2. (POLDOCS-1192)
  • Added a table of DAST checkers and associated vulnerability classes supported by Polaris fAST Dynamic. (POLDOCS-1183)
  • Added component policy user interface improvements. (POLDOCS-1207)
  • Deprecated endpoints in Polaris APIs, versions of the Bridge CLI older than 3.6.0, and versions of Code Sight older than 2025.4.0 will stop functioning on September 15, 2025. (POLDOCS-1281)
  • Enhanced SCM repository integration capabilities (currently limited to GitHub and GitHub Enterprise repositories only). (POLDOCS-851)
  • The behavior of report configurations has changed. (POLDOCS-1236)
  • Polaris supports Rapid Scan Static (Sigma) 2025.7.1. (POLDOCS-1250)
  • Updated domain migration instructions. (POLDOCS-1239, POLDOCS-1269)
  • The Black Duck Security App for GitHub is available. (POLDOCS-1252)
  • Polaris supports Black Duck® Bridge CLI 3.7.1. (POLDOCS-1255)

July 2025

  • Polaris supports Black Duck® Bridge CLI 3.7.0. (POLDOCS-1233)
  • Polaris Assist has been rebranded as Black Duck Assist. (POLDOCS-1113)
  • Added information on the Labels feature. (POLDOCS-1120)
  • New options to manage the scope of a report have been added to the Create Report page. (POLDOCS-1091)
  • Fix broken links on the DAST landing page. (POLDOCS-1241)
  • Added descriptions of test statuses to Tests UI overview. (POLDOCS-412)
  • Added properties to the Issue List tab (found in the Issue Summary Dashboard). (POLDOCS-1238)
  • Clarified fix-by dates, which are set relative to an issue's earliest first-detection date, on any branch. (POLDOCS-1208)
  • Now, you can manually manage components in your projects' software bill of materials (SBOM). (POLDOCS-1114)
  • A new instance of Polaris is available in the Kingdom of Saudi Arabia (KSA) region. (POLDOCS-1213)
  • Reminder: Deprecated endpoints in Polaris APIs will stop functioning on September 15, 2025. (POLDOCS-1151)
  • Polaris supports Black Duck® Bridge CLI 3.6.0. (POLDOCS-1219)
  • Removed broken link from release notes. (POLDOCS-1221)
  • Rapid scan (via Sigma). (POLDOCS-1089)
  • Polaris supports Sigma 2025.6.0. (POLDOCS-1172)
  • Updated support tables for rapid / full scans. (POLDOCS-1212)
  • Polaris supports the beta version of Insights NLQ (natural language queries). (POLDOCS-1119)
  • The Remediation Dashboard is available. (POLDOCS-1189)
  • Polaris supports Black Duck® Detect 10.4.0. (POLDOCS-1167)
  • Added application risk scoring. (POLDOCS-1111)

June 2025

  • Issues captured using fAST Dynamic include evidence. (POLDOCS-1080)
  • Now you can set up file and folder exclusion rules to ignore SAST issues associated with files in your projects. (POLDOCS-1087)
  • Reminder: Deprecated endpoints in Polaris APIs will stop functioning on September 15, 2025. (POLDOCS-1150)
  • A mandatory maintenance update was applied to the Teleport Agent bundled with Polaris Secure Tunnel. (POLDOCS-1187)
  • Fix link to Black Duck Community. (POLDOCS-1185)

May 2025

  • Polaris supports Black Duck® Bridge CLI 3.5.1. (POLDOCS-1176)
  • Polaris supports Coverity 2025.3.0. (POLDOCS-1061)
  • The Polaris fAST Dynamic documentation was reorganized into separate topics, nested under How-to > Test web applications and APIs with Polaris fAST Dynamic. (POLDOCS-1112)
  • Reminder: Deprecated endpoints in Polaris APIs will stop functioning on September 15, 2025. (POLDOCS-1149)
  • The POST /configurations/{id}/issues-export endpoint was enhanced. (POLDOCS-1168)
  • Added creating groups tutorial (Zoomin only). (POLDOCS-1163)
  • Added creating custom roles tutorial (Zoomin only). (POLDOCS-1162)
  • The Black Duck Polaris YouTube channel is available. (POLDOCS-1157)
  • The sunset date for deprecated endpoints in Polaris APIs was extended to September 15, 2025. (POLDOCS-1142)
  • Updated topic titles to improve search. (POLDOCS-1093)

April 2025

  • Added Dashboards tutorial (Zoomin only). (POLDOCS-981)
  • Bitbucket users can now use the Black Duck Security Scan Pipe to automate Polaris tests in Bitbucket Pipes. (POLDOCS-1138)
  • The names of groups you import from your IDP must be 255 characters or less. (POLDOCS-927)
  • Now, Organization Administrators can create custom application-level roles. (POLDOCS-855)
  • Corrected descriptions of CLEAR ALL and Reset Filters buttons, found on the Dashboards page. (POLDOCS-1124)
  • The software bill of materials (SBOM) report now supports CycloneDX v1.6 (in addition to v1.4). (POLDOCS-1088)

March 2025

  • With Bridge CLI 3.4.0, you can run both types of SCA tests (package manager and signature scans) in the same pipeline. (POLDOCS-1083)
  • Polaris supports Black Duck Bridge CLI Bundle 3.4.0. (POLDOCS-1084)
  • The SCAN_CLI was upgraded to version 2025.1.1. (POLDOCS-1090)
  • The status page for Polaris migrated to a new domain. (POLDOCS-1092)
  • Added Signature Analysis tutorial (Zoomin only). (POLDOCS-984)
  • Added Developer Detail Dynamic Report. (POLDOCS-1077)
  • The Dashboards page has a new look and feel. (POLDOCS-1041)
  • Added fAST Dynamic tutorials (Zoomin only). (POLDOCS-1078, POLDOCS-1079)
  • Added policy tutorial (Zoomin only). (POLDOCS-979)

February 2025

  • Polaris supports Black Duck® Bridge CLI Bundle 3.3.0 and Bridge CLI Thin Client 3.0.18. (POLDOCS-1071)
  • Black Duck will update server certificates for the polaris.synopsys.com domain on March 5, 2025. (POLDOCS-1073)
  • Add information on exporting issues from Black Duck Binary Analysis and Coverity to third-party tools support matrix. (POLDOCS-1039, POLDOCS-1063)
  • The Tests API was restructured to improve usability. (POLDOCS-995)
  • The Repos Integration API was restructured to improve usability. (POLDOCS-992)
  • Noted each Polaris user's first and last names should only use English characters. (POLDOCS-1065)
  • Updated the make an access token tutorial. (POLDOCS-1070)
  • We're extending the availability of https://sig-repo.synopsys.com to March 31, 2025. (POLDOCS-1064)
  • Now, you can use the Attempt Build Break action with component policies. (POLDOCS-969)
  • Polaris supports Black Duck® Bridge CLI Bundle 3.2.0 and Bridge CLI Thin Client 3.0.16. (POLDOCS-1054)
  • Now, you can search through the Polaris documentation from the Polaris user interface. (POLDOCS-972)
  • Now, issue tracking integrations support exporting DAST issues to Azure DevOps or Jira. (POLDOCS-1053)
  • Polaris supports Black Duck Detect 10.1.0. (POLDOCS-1021)

January 2025

  • The issue tracking integration for Azure DevOps is available. (POLDOCS-424)
  • Soon, the status page for Polaris will migrate to https://status.polaris.blackduck.com. (POLDOCS-919)
  • The Secure Tunnel feature (used to run DAST tests on internal targets) currently works on Mac and Linux only. (POLDOCS-1038)
  • Now, SAST and SCA issues you import from third-party tools appear in reports and dashboards. (POLDOCS-1008)
  • Polaris support of Coverity 2024.12.0. (POLDOCS-1005)
  • Now, you automatically generate reports on a daily, weekly, or monthly basis. (POLDOCS-1007)
  • A bug that caused CloudFlare IPs to appear in Audit Logs instead of user IP addresses is resolved. (POLDOCS-1040)
  • The Portfolio API was restructured to improve usability. (POLDOCS-996)

December 2024

  • To ensure Polaris and the Bridge CLI continue to function as expected, keep https://sig-repo.synopsys.com/ (34.110.245.127) on your allow list until February 14th, 2025. (POLDOCS-1025)
  • Polaris now supports the Secure Tunnel solution for Polaris fAST Dynamic. (POLDOCS-849)
  • Polaris supports Black Duck Bridge CLI 3.1.0. (POLDOCS-1024)
  • Polaris supports Black Duck Detect 9.10.1. (POLDOCS-1013)
  • Polaris supports Black Duck Bridge CLI 3.0.0. (POLDOCS-1003)
  • Now, you can save report settings as report configurations. (POLDOCS-1004)
  • The Bug Tracking Integration API was restructured to improve usability. (POLDOCS-991)
  • The domains used for reports and dashboards changed. (POLDOCS-1006)
  • The latest Code Sight releases added support for additional IDEs. (POLDOCS-1010)
  • Many of the endpoints in the Findings API were updated. (POLDOCS-993)
  • The Reports API was restructured to improve usability. (POLDOCS-990)
  • Added information on importing results from third-party tools, a limited availability feature. (POLDOCS-640)

November 2024

  • The Insights API was renamed and is now Reports. (POLDOCS-998)
  • Polaris support of Coverity 2024.9.1. (POLDOCS-854)
  • Corrected the date on which https://sig-repo.synopsys.com will stop functioning. (POLDOCS-989)
  • Corrected the description of the Attempt Build Break action (used in issue policies). (POLDOCS-960)
  • Polaris is now the Black Duck Polaris® Platform. (POLDOCS-917)
  • Add domain migration instructions. (POLDOCS-959, POLDOCS-957)
  • Polaris now sends emails via noreply@blackduck.com. (POLDOCS-907)
  • Updated IP ranges documentation. (POLDOCS-918, POLDOCS-837)
  • Updated single sign-on code samples. (POLDOCS-841)
  • Added Black Duck domains to API quickstart. (POLDOCS-842)
  • Several API references were renamed. (POLDOCS-941, POLDOCS-942, POLDOCS-943)
  • Media type names used in Polaris APIs were renamed and no longer include "synopsys." (POLDOCS-944)

October 2024

  • Several API references were renamed. (POLDOCS-933, POLDOCS-935)
  • The Executive Overview Dashboard is available. (POLDOCS-958)
  • Several API references were renamed. (POLDOCS-949)
  • The Polaris Issue Workflow Engine Service API was restructured to improve usability. (POLDOCS-921)
  • Corrected future Sisense domains in release notes. (POLDOCS-926)
  • The Policy Overview Dashboard is available. (POLDOCS-893)
  • The Portfolio ROI Dashboard is available. (POLDOCS-892)
  • When you start a test by uploading source code manually, filenames can include letters, digits, and the characters “.”, “-” and “_”. (POLDOCS-882)
  • Clarified the effect of issue and component triage on reports and dashboards. (POLDOCS-887)
  • Update company and resource names. (POLDOCS-835)
  • Update external links to Zoomin. (POLDOCS-840)
  • Add Black Duck Community domain. (POLDOCS-906)
  • Add https://repo.blackduck.com domain and IP. (POLDOCS-908)
  • Screenshot updates. (POLDOCS-838)
  • Update links to Black Duck Academy. (POLDOCS-909)
  • The User associated with events performed by internal (Black Duck) users is now Internal System User. (POLDOCS-916)

September 2024

  • The quality of upgrade guidance for vulnerable components (detected in SCA tests) was improved. (POLDOCS-710)
  • Update supported GitLab self-managed versions for SCM integrations. (POLDOCS-903)
  • Resolve missing terms in getting started topics. (POLDOCS-904)
  • You can run tests on Polaris from your IDE with Code Sight 2024.9.0. (POLDOCS-709)
  • Exporting issues to Jira is only available on the main Issues grid. (POLDOCS-880)
  • Polaris supports Synopsys® Bridge 2.9.0. (POLDOCS-888)
  • Added note to IP ranges documentation, IPs with a subnet mask represent a range of IPs. (POLDOCS-886)
  • Date pickers on the Onboarding and Test Summary dashboards were improved. (POLDOCS-885)
  • General improvements made to preexisting dashboards, including renaming and filtering improvements. (POLDOCS-857)
  • The Tool Name filter (found in Dashboards) includes Polaris Package Manager and Polaris Signature Analysis options. (POLDOCS-853)

August 2024

  • Updated screenshots. (POLDOCS-865)
  • Added link to Coverity CWE coverage on Polaris Support Information page. (POLDOCS-861)
  • Renamed GitHub Action page. (POLDOCS-822)
  • Now, you can run signature analysis tests using Synopsys Bridge on ARM-based Mac. (POLDOCS-866)
  • Polaris supports Synopsys Bridge 2.8.0. (POLDOCS-850)
  • Polaris supports Synopsys Detect 9.9.0. (POLDOCS-828)
  • Fix broken links. (POLDOCS-860)
  • Now, you can include DAST test results in eligible reports. (POLDOCS-829)
  • Update link to videos and interactive tutorials. (POLDOCS-847)
  • Polaris fAST Dynamic now supports dynamic application security testing (DAST) of native APIs. (POLDOCS-723)
  • Now, DAST test and issue data is included in Dashboards. (POLDOCS-830)
  • Polaris supports Synopsys Bridge 2.7.0. (POLDOCS-833)
  • Added Supported tools table to support matrix. (POLDOCS-540)
  • Added information on component policies. (POLDOCS-600)

July 2024

  • Update links in IP ranges docs. (POLDOCS-813)
  • Update links to Community. (POLDOCS-814)
  • Update Bridge links. (POLDOCS-808)
  • Update Code Sight links. (POLDOCS-812)
  • Polaris supports single project onboarding in Hosted version of GitHub. (POLDOCS-724)
  • Update links to APIs. (POLDOCS-807)
  • The Onboarding Dashboard is available. (POLDOCS-797)
  • For added security, a relay service was implemented that proxies requests from Polaris to LaunchDarkly. (POLDOCS-756)
  • Polaris support of Coverity 2024.6.0 (POLDOCS-729)
  • Added information on fix-by statuses, issue export improvements, and issue policy improvements. (POLDOCS-712)
  • Polaris supports single project onboarding in Hosted version of GitLab. (POLDOCS-725)
  • Add package manager and signature analysis options to report creation. (POLDOCS-639)
  • Fix broken links on Portfolio pages overview.
  • Using Synopsys Bridge, you can run Black Duck® signature scans (a type of SCA test) and upload results to Polaris. (POLDOCS-639)
  • Organization Administrators can update the subscriptions assigned to multiple applications at the same time. (POLDOCS-759)
  • Polaris supports Synopsys Bridge 2.6.8. (POLDOCS-794)
  • Added required claims to generic single sign-on documentation. (POLDOCS-793)

June 2024

  • Added Bitbucket self-hosted SCM integration. (POLDOCS-726)
  • Notification, CIAM, and Audit API taxonomy updates. (POLDOCS-786)
  • Add component triage to Polaris docs. (POLDOCS-510)
  • Polaris supports Synopsys Bridge 2.6.0. (POLDOCS-784)
  • Added links to quickstarts in the Synopsys Bridge documentation for Azure DevOps, GitLab, and Jenkins integrations. (POLDOCS-785)
  • Notification, CIAM, and Audit API updates. (POLDOCS-772)
  • The Policy Management (formerly, Risk Manager) API was restructured to improve usability. (POLDOCS-743)
  • Organization Administrators and Organization Application Managers can add subscriptions to preexisting applications, and replace application subscriptions with concurrent subscriptions. (POLDOCS-718)
  • Polaris supports Synopsys Bridge 2.5.0. (POLDOCS-768)

May 2024

  • Polaris supports Synopsys Detect version 9.6.0. (POLDOCS-752)
  • Added Executive Summary Report. (POLDOCS-647)
  • Updated Polaris Assist screenshot. (POLDOCS-754)
  • Added IP ranges for Polaris and Synopsys Bridge. (POLDOCS-308)
  • Polaris supports Synopsys Bridge 2.4.45. (POLDOCS-747)
  • A bug that affected the casing of group names in Polaris is resolved. Updated the single-sign on and groups documentation to better-describe casing of group names in Polaris. (POLDOCS-688)
  • Polaris supports Coverity 2024.3.1. (POLDOCS-728)
  • Added Developer Detail Static Report. (POLDOCS-707)
  • Added Standards Compliance Detail Report. (POLDOCS-719)
  • Added information on Polaris Assist (Beta). (POLDOCS-622)

April 2024

  • Added Developer Detail SCA Report. (POLDOCS-699)
  • Polaris supports Synopsys Bridge 2.4.12. (POLDOCS-713)
  • Added Issue Overview Report. (POLDOCS-706)
  • Added Test Summary Report. (POLDOCS-653)
  • Polaris supports Synopsys Detect version 9.5.0. (POLDOCS-698)
  • Minor edits in single sign-on documentation. (POLDOCS-705)
  • Removed notice (below) from developer documentation. (POLDOCS-704)

    If you test APIS using a Polaris token for authentication, you must sign out of Polaris to avoid a '400' response.

  • Fixed broken links. (POLDOCS-702)
  • Polaris supports Coverity 2024.3.0. (POLDOCS-573)
  • Added Component Dashboard. (POLDOCS-685)
  • Added License Dashboard. (POLDOCS-686)
  • Polaris supports fAST Dynamic testing. (POLDOCS-654, POLDOCS-676)
  • Added new application-level role: Member. (POLDOCS-627)
  • Removed file name when exporting issues to CSV or JSON. (POLDOCS-583)
  • Polaris supports Synopsys Detect version 9.4.0. (POLDOCS-572)

March 2024

  • Polaris supports Synopsys Bridge 2.4.0. (POLDOCS-674)
  • Added Security Audit Report. (POLDOCS-646)
  • Added information on synchronizing groups in an identity provider with Polaris. (POLDOCS-451)
  • Added information on managing access with groups. (POLDOCS-450)
  • Added information on the new General page. (POLDOCS-551)
  • Added Standard Compliance Report. (POLDOCS-644)
  • Added Cyclone DX format. (POLDOCS-624)
  • Added fix-by dates. (POLDOCS-159)
  • Added links to quickstarts in the Synopsys Bridge documentation for GitHub. (POLDOCS-638)
  • Polaris supports Synopsys Bridge 2.3.0. (POLDOCS-643)
  • Reporting workflow redesign. (POLDOCS-545)
  • Improvements were made to the Test Summary dashboard, along with minor bug fixes. (POLDOCS-635)

February 2024

  • Added information on the Secure Code Warrior integration. (POLDOCS-552)
  • Added support for Coverity 2023.12.1. (POLDOCS-613)
  • Added information on automatic deletion of non-default branches. (POLDOCS-460)
  • Added information on First Detected dates, the Summary tab, and finding triage history. (POLDOCS-413)

January 2024

  • Code Sight users can view Polaris issues in Visual Studio. (POLDOCS-611)
  • Links in emails used to reset passwords, reset two-factor authentication, and join Polaris expire after 24 hours. (POLDOCS-571)
  • Polaris supports Synopsys Bridge 2.2.1. (POLDOCS-604)
  • Now, you can download an ARM-compatible version of Synopsys Bridge in Polaris. (POLDOCS-538)
  • Polaris supports Coverity 2023.12.0. (POLDOCS-575)
  • The Test Summary Dashboard was added to the Dashboards page. (POLDOCS-574, POLDOCS-485)
  • Revised the Code Sight topic, fixed broken link. (POLDOCS-589)
  • Onboarding SCM repositories in bulk. (POLDOCS-389)

December 2023

  • Polaris supports Synopsys Bridge version 2.1.0. (POLDOCS-567)
  • Events captured in audit logs are retained for 30 days. (POLDOCS-541)
  • Polaris supports additional package managers for SCA tests run via code upload or SCM integrations. (POLDOCS-471)

November 2023

  • The Notes field was removed from the New Test page. (POLDOCS-537)
  • Polaris supports Synopsys Bridge version 2.0.0. (POLDOCS-520)
  • Polaris supports Coverity version 2023.9.2. (POLDOCS-483)
  • Added information on the Synopsys Security Scan Plugin for Jenkins. (POLDOCS-524)
  • Added CWE, Location, and Issue Category filters to Dashboards docs. (POLDOCS-504)
  • Polaris supports Synopsys Bridge 1.2.38. (POLDOCS-519)
  • Common Vulnerabilities and Exposures (CVE®) and Black Duck® Security Advisory (BDSA) codes appear in the issues table for SCA issues. (POLDOCS-491)
  • Updated the issue policy docs to include information on triage statuses, and their effect on the Portfolio and Portfolio Application pages. (POLDOCS-495)
  • Documented SCM integration improvements. (POLDOCS-501)
  • The Refresh buttons near the top of the Portfolio and Application pages were removed. (POLDOCS-500)
  • Polaris supports Synopsys® Detect version 9.0.0. (POLDOCS-472)
  • A revised SCA Language and Package Manager Support table is available. (POLDOCS-441)
  • The known issue with dates in the Latest Completed Test column is fixed. (POLDOCS-508)

October 2023

  • Add SPDX export to docs. (POLDOCS-481)
  • Polaris supports Synopsys Bridge 1.2.12. (POLDOCS-509)
  • Policy violations appear on the Portfolio and Tests pages. (POLDOCS-395)
  • Added Latest Completed Test to Portfolio page. (POLDOCS-422)
  • Add standards filters to reporting docs. (POLDOCS-439)
  • If you don't specify a default branch name when creating a project, "polaris_main" is used. (POLDOCS-496)
  • Polaris supports Synopsys Bridge 1.2.0. (POLDOCS-489)
  • Clarified support for Salesforce® Apex™ in the support matrix. (POLDOCS-477)
  • Updated the Dashboards documentation, noting dismissed issues are hidden when the default filters are applied. (POLDOCS-461)

September 2023

  • The quantity of projects in each application appears on the Portfolio page. (POLDOCS-423)
  • Added information on the new Standards filter found on the Dashboards page. (POLDOCS-421)
  • Updated the policy management documentation. In addition to the improved Policy page, "test frequency" policies are now called "test scheduling" policies. (POLDOCS-270)
  • Fixed permission mismatches for project management. (POLDOCS-466)
  • Removed subscription modification procedures. (POLDOCS-416)
  • Added acceptable length and special characters for fields to docs. (POLARIS-490)
  • Added links to the GitHub Action documentation. (POLDOCS-462)
  • Added links to the GitLab Template documentation. (POLDOCS-463)
  • Added links to the Synopsys Security Scan documentation. (POLDOCS-464)
  • Added links to the Synopsys Bridge CLI documentation. (POLDOCS-465)
  • Polaris now supports Synopsys Bridge 1.1.0. (POLDOCS-459)
  • Application Observers can view triage history. (POLDOCS-427)
  • Added the Triage Status filter to the Dashboard documentation. (POLDOCS-420)
  • Added procedure to update SCM tokens when Polaris creates a scm_token_invalid branch. (POLDOCS-446)
  • Updated portfolio management documentation to include branches. (POLDOCS-357)
  • Updated test management documentation to include branches. (POLDOCS-358)
  • Updated issue management documentation to include branches. (POLDOCS-360)
  • Updated the policy management documentation to include branches. (POLDOCS-359)
  • Updated the Jira integration documentation. (POLDOCS-361)
  • Added branching permissions to the roles and permissions page. (POLDOCS-365)
  • Updated reporting and dashboard documentation. Reports and dashboards use a project's default branch. (POLDOCS-398)
  • Updated SCM integrations documentation for branching. (POLDOCS-182)
  • Updated bill of materials and license documentation to include branches. (POLDOCS-364)
  • Updated issue export documentation. Issue exports include branch properties. (POLDOCS-397)
  • Updated Synopsys Bridge parameters to include polaris.branch.name property. (POLDOCS-386)
  • Edited the GitHub Action and GitLab Template documentation. (POLDOCS-453)
  • Added information on the Synopsys Security Scan plugin for Azure DevOps. (POLDOCS-452)
  • Correction, removed C/C++ (Clang) support from the SCA support matrix. (POLDOCS-390)

August 2023

  • Release Note for support of Coverity 2023.6.1. (POLDOCS-405)
  • Replaced one occurrence of "minimal" with "informational." (POLDOCS-315)
  • Added information on additional logging for policy changes. (POLDOCS-235)
  • Added npm, pip, pnpm, Poetry and Yarn package manager support for SCA scans triggered by SCM integrations or code upload. (POLDOCS-378)
  • Document components subject to multiple licenses. (POLDOCS-275)

July 2023

  • Release Note for support of Coverity 2023.6. (POLDOCS-297)
  • Added information on connecting Code Sight to Polaris. (POLDOCS-384)
  • Temporarily removed branch information from RBAC.
  • Added release note for Synopsys Detect version 8.10.0 support. (POLDOCS-380)
  • Added prerequisites for reporting, reporting notifications must be enabled. (POLDOCS-341)
  • Added Receive policy notifications to the Roles and permissions page. (POLDOCS-368)
  • Revised introductory content and column labels on Roles and permissions page. (POLDOCS-367)
  • Updated documentation that describes the Portfolio and Application pages, including screenshots. (POLDOCS-238)

June 2023

  • Added Bitbucket integration to Polaris docs. (POLDOCS-240)
  • Added release note for new Notifications event type found in audit logs. (POLDOCS-296)
  • Added notes, Polaris access tokens expire if unused for 30 days. (POLDOCS-314)
  • Added procedure to find the applications linked to a subscription. (POLDOCS-247)
  • Removed Visual Basic from language support matrix. (POLDOCS-313)
  • Added missing services to Polaris API Introduction topic. (POLDOCS-298)
  • Updated CLI examples with --input instead of the deprecated --state argument. (POLDOCS-301)
  • Updated language support matrix (including Kotlin). (POLDOCS-300)

May 2023

  • Added release note for Coverity 2023.3.3 support. (POLDOCS-295)
  • Added videos, courses, and tutorials to the table of contents. (POLDOCS-277)
  • Update Azure Repos integration documentation, importing third party repos. (POLDOCS-273)
  • Polaris SCM integrations, content reorganization. (POLDOCS-276)
  • A link to the System Status page has been added to the Need more help topic. (POLDOCS-230)
  • Documentation for BOM on Polaris. (POLDOCS-192)
  • Add license risk to Polaris docs. (POLDOCS-215)
  • Topic covering Synopsys GitLab Template added to Integrations. (POLDOCS-234)
  • Issue policy action to create and bundle issues to a single Jira ticket added. (POLDOCS-173)
  • Adding new Issue Detail Report and migrating reports table to Dashboard (POLDOCS-222)
  • New RBAC - Roles and permissions. (POLDOCS-213)
  • Synopsys Bridge now automatically creates projects if not already present. (POLDOCS-242)
  • Release note for a security fix for CVE-2023-2453 added. (POLDOCS-256)
  • GitHub Actions topic added to integrations. (POLDOCS-233)
  • Org Admin can delete users via MyOrganization > Users. (POLDOCS-142)
  • Visual Basic is supported via Synopsys Bridge. (POLDOCS-178)
  • Azure DevOps projects can now be integrated with Polaris. (POLDOCS-163)
  • Explained how to add a new subscription to an existing application. (POLDOCS-240)

April 2023

  • Topics on SAML 2.0 integration were added to Developer Portal documentation. (POLDOCS-139)
  • Information about Policies was added or updated in the Roles and Permissions table and to the Getting Started documentation for each role. (POLDOCS-166/POLARIS-165)
  • Updated Roles and Permissions table to fix Application-level permissions for Contributor and Observer. (POLDOCS-186/POLARIS-275)
  • Created this change log. (POLDOCS-220)