Skip to content

Product Updates

New features, improvements, and fixes shipping across the platform.

Follow @officiallyiru ↗
Auto Apps

Auto App: Gather

A new Auto App, Gather, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto Apps

Auto App: Dia

A new Auto App, Dia, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto Apps

Auto App: Cavalry

A new Auto App, Cavalry, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto Apps

Auto App: AppCleaner

A new Auto App, AppCleaner, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto Apps

New Windows Auto Apps

New Windows Auto Apps have been added to the catalog and are now available for all Iru Endpoint customers.

Bambu Studio
DisplayLink Graphics
Foxit PDF Editor
k6
LOOT
Syncthing

See all available Auto Apps in the Library Items section of our website.

Endpoint Management

Hide or rename Library Items in Liftoff

Mac Custom App, Custom Script, and Custom Printer Library items now support being hidden in Liftoff or displaying a "friendly name" to the end user instead of the Library Item name.

Liftoff will show "Processing additional required configurations before proceeding…" when processing hidden items, and setting a friendly name does not change the ordering of...

Endpoint Agent

Iru Agent for Mac Release 5.1.28 (5393)

We’ve released Iru Agent for Mac 5.1.28 (5393).

This release includes miscellaneous bug fixes and performance improvements. Additionally it brings support for the new Hide in Liftoff and Liftoff friendly name options for Custom App, Custom Script, and Custom Printer Library Items.

Product Update

What's New in Iru | August 21st

Highlights we cover this week in What's New in Iru: 

  • Windows Update Library Item now features native Iru AI integration for a guided experience

  • Windows System Tray app gives employees visibility into pending updates with deadlines

  • New Auto Apps added for Windows and Mac

Workforce Identity

Iru Identity Directory Sync Enhancements

Now available in Iru Identity version 2026.08.19:
  • Select Sync Frequency for Directory Sync Integrations - It is now possible to choose the sync frequency interval for each directory sync integration. Choices include: Manual Only, Every 30 minutes, every hour, 2 hours, 4 hours, 8 hours, 12 hours, daily, every 2 days, or weekly.

  • Added Refresh and Sync Now...

Endpoint Agent

Iru Agent for Mac Release 5.1.26 (5392)

We’ve released Iru Agent for Mac5.1.26 (5392).

This release includes miscellaneous bug fixes and performance improvements.

Endpoint Management

Require a managed Google Account on Android devices

Admins can now require company-owned Android devices with a work profile to be signed in with a managed Google Account, ensuring end users have full access to the organization's Google Workspace services.

The Android Restrictions Library Item includes a new managed Google Account setting with two modes: allow any managed Google Account from the...

Endpoint Management

Control credential managers on Android devices

Iru admins can now control which apps are allowed to act as credential managers, such as password managers and passkey providers, in the work profile on managed Android devices. The Android Restrictions Library Item includes a new Credential managers setting that sets the default policy: block all credential managers, or allow the device's pre-loaded system...

Endpoint Management

Enforce a specific version for Mac Auto Apps

Mac Auto Apps now support enforcing a specific version, selecting from a list of Iru hosted versions.

Devices installing the Auto App for the first time or that are out of date will install the selected version instead of the latest available. 

Iru Vulnerability Response overrides these settings if applicable.

Workforce Identity

Single Sign On is a Few Clicks Away with More Than 200 Application Templates

Single Sign On (SSO) pre-configuration templates are now available for 209 commonly used web applications, including Slack, Zoom, Google Workspace, and more! The templates guide Identity administrators through the steps needed to set up SAML or OIDC single sign-on and can also assist with SCIM user provisioning configuration. Iru is continuously adding new...

Single Sign On is a Few Clicks Away with More Than 200 Application Templates
Endpoint Management

Managed OS for iOS and iPadOS

Managed OS for iOS and iPadOS has been updated. The latest approved versions are now 26.6.1 and 18.7.10, with the following release dates:

iOS 26.6.1 : Aug 17, 2026

iOS 18.7.10 : Aug 17, 2026

iPadOS 26.6.1 : Aug 17, 2026

iPadOS 18.7.10 : Aug 17, 2026

Endpoint Management

Managed OS for macOS

Managed OS for macOS has been updated. The latest approved version for Tahoe is now 26.6.2, with the following release date:

macOS 26.6.2 : Aug 17, 2026

What's New in Iru | August 14th

Highlights we cover this week in What's New in Iu (Black Hat 2026 edition): 

  • Managed OS for Apple devices now support phased rollouts 
  • Authenticated Guest Mode now available on Single Sign-On Library Item 
  • Select the framework up-front when generating new policies within Compliance Automation 
Endpoint Agent

Update Windows apps from the system tray

Windows devices now show a list of Auto App and Custom App updates that haven't installed yet right from the new Iru system tray app. End users can install one update at a time or use Update all, closing open apps when needed to complete the install, and the list clears itself as installs succeed.

Compliance Automation

Google Cloud Platform is now available as a compliance source

Google Cloud Platform is now available in the Iru Compliance connector catalog, replacing the previous coming-soon placeholder.

Connect the Google Cloud project you want Iru to monitor using a read-only service account and JSON key, and Iru collects configuration and inventory evidence across Google Cloud IAM, Cloud Storage, Cloud KMS, Cloud Logging,...

Endpoint Agent

Iru Agent for Mac Release 5.1.25 (5391)

We’ve released Iru Agent for Mac 5.1.25 (5391).

This release includes miscellaneous bug fixes and performance improvements.

Compliance Automation

Filter actions by unassigned owner or delegate

The Owner and Delegate filters on the Actions list within Compliance Automation now include an Unassigned option, so admins can find the actions nobody owns yet without scanning the table. This pairs with the separate Owner and Delegate columns added in May.

Compliance Automation

Automated evidence skips document-only actions and reports failed source calls

Automated evidence turns itself off on actions that need a signed document. Iru now recognizes the actions that only a person can satisfy — a signed policy or agreement, for example — and turns off automated evidence for them instead of running a collection pass that comes back with "no evidence found." The change is recorded in the action's activity...

What's New in Iru | August 7th

Highlights we cover this week in What's New in Iru:

  • Faster, smarter Iru AI with a refreshed chat experience
  • Release devices stuck in Setup Assistant during ADE enrollment or MDM migration
  • Assign library items based on Apple beta program enrollment
Endpoint Management

Manually release Apple devices held in Setup Assistant

Devices held in Setup Assistant while Library Items install can now be released manually. This applies to devices enrolling via Automated Device Enrollment and devices migrating into Iru with managed apps preserved. While a device is held at the Configuring screen, a banner appears at the top of the device's record in the Iru web app showing when the hold...

Endpoint Management

Managed OS for macOS

Managed OS for macOS has been updated. The latest approved version for Tahoe is now 26.6.1; for Sequoia, 15.7.9; and for Sonoma, 14.8.9, with the following release dates:

macOS 26.6.1 : Aug 06, 2026

macOS 15.7.9 : Aug 06, 2026

macOS 14.8.9 : Aug 06, 2026

Endpoint Management

Offer Apple beta releases with the Software Update Library Item

In the Software Update Library Item, Apple beta program enrollment can now be offered to end users to opt-in, or a specific program can be enforced without needing to enforce a specific version alongside the enrollment.

Iru now supports three different ways to manage Apple beta program enrollments and version enforcements:

  • At enrollment, using the ADE...
Endpoint Management

Phased Rollouts for Managed OS for Apple devices

The new phased rollout option previously introduced for Mac Auto Apps is now available for Apple Managed OS. Phased rollouts give admins more control over how updates are introduced across their fleet.

Instead of sending a new declaration to every device at the same time once a new version is available from Apple, admins can enable phased rollout and...

Auto Apps

Auto App: Screen Studio

A new Auto App, Screen Studio, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto Apps

Auto App: Glean

A new Auto App, Glean, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto Apps

Auto App: AltTab

A new Auto App, AltTab, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto Apps

New Windows Auto Apps

New Windows Auto Apps have been added to the catalog and are now available for all Iru Endpoint customers.

Cisco Webex Meetings
Claude
GitHub CLI
Jabra Direct
Microsoft 365 Apps (Core)
Node.js
Notion
Octopus CLI

See all available Auto Apps in the Library Items section of our website.

Endpoint Agent

Iru Agent for Mac Release 5.1.22 (5390)

We’ve released Iru Agent for Mac 5.1.22 (5390).

This release includes miscellaneous bug fixes and performance improvements.

Endpoint Management

Managed OS for Apple: New embedded delay option

When using the Rolling Enforcement option with Managed OS for Apple devices, it's now possible to specify an automatic delay (up to 90 days) that will prevent Iru from sending a new target version declaration to devices.

This delay embedded in Managed OS can be combined with Apple software update deferrals (configured in a Software Update Library Item) to...

Compliance Automation

Policy assignment exclusions and generated-policy editor styling

Exclude specific users from a policy assignment. When publishing or updating a policy, admins can now exclude specific users from the assignment. This is useful when a policy applies broadly but has a handful of exceptions who shouldn't be asked to acknowledge it.

Admins and auditors can now re-include a user who was previously excluded from a policy...

Endpoint Management

New Apple Beta Enrollment Assignment Rule

A new Assignment Rule is now available on Assignment Maps to assign Library Items to devices based on beta program enrollment status. Assignments can be made on whether a device is enrolled in any beta program at all, or based on specific enrollment(s).

Endpoint Management

Managed OS for macOS

Managed OS for macOS has been updated. The latest approved version for Tahoe is now 26.6; for Sequoia, 15.7.8; and for Sonoma, 14.8.8, with the following release dates:

macOS 26.6 : Jul 27, 2026

macOS 15.7.8 : Jul 27, 2026

macOS 14.8.8 : Jul 27, 2026

Endpoint Management

Managed OS for iOS, iPadOS, and tvOS

Managed OS for iOS, iPadOS, and tvOS has been updated. The latest approved version is now 26.6, with the following release dates:

iOS 26.6 : Jul 27, 2026

iPadOS 26.6 : Jul 27, 2026

tvOS 26.6 : Jul 27, 2026

Product Updates

What's New in Iru | July 24th

Highlights we cover this week in What's New in Iru:

  • Deploy Iru Access as an Auto App on Windows devices
  • Search smarter using token-based search functionality on the new activity page
Compliance Automation

Framework selection in the policy generation intake

Policy generation framework picker limited to available frameworks. The framework picker in the policy generation intake now only lists the frameworks a tenant is entitled to (SOC 2, ISO 27001, HIPAA, GDPR by default), so admins never see options they can't actually generate against.

Choose a framework for policy generation intake. Admins can now select the...

Endpoint Management

Restrictions improvements for Apple beta releases

The following new restrictions are available in Iru for devices testing the macOS 27 Apple beta release:

  • ForceCaptivePortalConnectionFromLockScreen
  • ForceWifiConfigurationOnLockScreen

Additionally, the following existing restrictions can now be applied to visionOS 27+:

  • allowAutomaticAppDownloads
  • allowCamera
  • allowListedAppBundleIDs
  • blockedAppBundleIDs
Vulnerability Management

Vulnerability Management Enhancements

Bulk Device Exclusion

Bulk Device Exclusion lets you exclude multiple devices from Vulnerability Management in a single action, and remove exclusions the same way. Excluding a device hides that device from all vulnerability views, detection counts, and alerts, which is useful for taking a machine temporarily out of scope, such as a device pending...

Endpoint Management

ADE customization for Mac: Managed profile delivery

When using the option to customize what gets installed during Automated Device Enrollment for Mac, Auto Apps or Okta Verify with Okta Device Trust now receive their Iru managed configuration profiles (PPPC, background items, etc.) during Setup Assistant, ensuring full functionality when the end user is released out of Setup Assistant.

Endpoint Management

Public IP address now reported for Apple devices

Apple devices now show their public IP address on the device record > details tab, in the new optional Prism column, and in the enterprise API device details endpoint. 

Devices' public IP addresses are captured during their daily full MDM check-in.

Endpoint Management

Continued improvements to Apple beta release management

Apple beta program enrollment and version enforcement is now available for iOS and iPadOS in Managed OS and ADE Library Items. Support for macOS was previously added.

Additionally, any Apple device enrolled in an Apple beta program will now show its program enrollment on the device record > details tab, in the new optional Prism column, and in the...

Product Update

What's New in Iru | July 17th

Highlights we cover this week in What's New in Iru:

  • New purpose-built features for MSPs managing multiple clients 
  • New Policy Management module within Compliance Automation 
  • Wildcard support for Endpoint Detection and Response
Compliance Automation

Sufficiency status column on the Artifacts table

The Artifacts table now shows a Status column that surfaces evidence sufficiency for each artifact, making it clear at a glance which artifacts still need review versus which fully cover their mapped controls.

Endpoint Agent

Iru Agent for Mac Release 5.1.20 (5388)

We’ve released Iru Agent for Mac 5.1.20 (5388).

This release includes miscellaneous bug fixes and performance improvements.

Compliance Automation

Policy reminder emails now go out weekly instead of daily

Reminder emails for employees with pending policy acknowledgements now send once a week, on Mondays, instead of once a day. The content of the reminder is unchanged — the same pending acknowledgements arrive in one weekly email rather than a daily one.

Compliance Automation

ISO 27001 and ISO 42001 control text is now protected

Control names and descriptions for ISO 27001 and ISO 42001 frameworks are locked from edits to preserve the framework's official language. Local overrides can still be captured in your organization's implementation notes.

Compliance Automation

New safeguards for deleting a framework

Framework deletion restricted to account owners.Only account owners can delete a framework from an organization now. This prevents accidental deletion of a framework mid-audit by admins or auditors who shouldn't have that authority.

Type-to-confirm before deleting a framework.Deleting a framework now requires typing the framework's name into a...

Product Update

What's New in Iru | July 10th

Highlights we cover this week in What’s New in Iru:

  • Managed OS for Apple Library Item updates

  • Managed OS for Windows now available

  • Three new Compliance Automation frameworks
  • Proactive ServiceNow updates

Compliance Automation

Filter framework controls by "needs review" actions

The controls list on a framework now supports a "needs review" filter that surfaces only the controls whose actions still need admin attention, helping teams focus on the remaining work in a framework rollout.

Endpoint Agent

Iru Agent for Mac Release 5.1.18 (5387)

We’ve released Iru Agent for Mac 5.1.18 (5387).

This release includes miscellaneous bug fixes and performance improvements.

Endpoint Management

Managed OS for macOS

Managed OS for macOS has been updated. The latest approved version for Tahoe is now 26.5.2, with the following release date:

macOS 26.5.2 : Jun 29, 2026

Endpoint Management

Managed OS for iOS and iPadOS

Managed OS for iOS and iPadOS has been updated. The latest approved version is now 26.5.2, with the following release dates:

iOS 26.5.2 : Jun 29, 2026

iPadOS 26.5.2 : Jun 29, 2026

Product Updates

What's New in Iru | June 26th

Highlights we cover this week in What’s New in Iru:

  • The ability to exclude specific devices from Vulnerability Reports

  • Support for changes to Microsoft Entra ID Conditional Access

  • Updated Config as Code tooling, iructl, alongside other frameworks

Endpoint Management

Managed OS for Windows

Administrators can now enforce a specific Windows 11 feature version across their fleet using Managed OS Library Items. This gives you direct control over which build your Windows 11 computers run, so you can keep devices on a known-good version instead of relying on each computer to update on its own schedule.

Each Managed OS Library Item supports...

Endpoint Detection & Response

Wildcard support for EDR allow and block lists

Wildcard support in the EDR Library Item provides greater flexibility when managing allow and block lists.

This update introduces recursive wildcarding. Administrators can establish dynamic, broad-matching rules rather than specifying exact paths or filenames individually, streamlining configuration within the interface.

Auto Apps

Windows Auto App: Iru Access

A new Windows Auto App, Iru Access, has been added to the catalog and is now available for all Iru Endpoint customers.

See all available Auto Apps in the Library Items section of our website.

Endpoint Management

Apple Automated Device Enrollment (ADE): Enforce betas and skip new screens

The Automated Device Enrollment Library Item for Apple devices has been updated with the following enhancements:

  • Devices can be forced to upgrade to beta OS releases before they enroll, ensuring complete test coverage of critical enrollment workflows when testing beta Apple OS releases.
  • For Mac, devices can always be forced to update to the latest public...
Endpoint Management

Managed OS for Apple: Now with support for enforcing beta releases

Managed OS Library Items for Apple devices now support enforcing beta releases using AppleSeed for IT beta tokens provided through Apple Business. These beta tokens synchronize to Iru automatically with configured Automated Device Enrollment (ADE) integrations.

Additionally, automated upgrade timing is now separate from updates and has its own enforcement...

Product Updates

What's New in Iru | June 19th

Highlights we cover this week in What’s New in Iru:

  • Unified view for all Activities across the platform 

  • Updated Managed OS Library Items for Endpoint Management

  • Helper tool prompts blocked for Mac Auto Apps

  • New side-by-side view for easier collaboration with Iru AI

Compliance Automation

New connectors: Microsoft Entra ID, Arnica

Microsoft Entra ID (identity) and Arnica (developer security) are now available in the Iru Compliance connector catalog, adding two more sources for automated identity and code-security evidence.

Endpoint Management

Updated Open Source Iru Frameworks: Powering Config as Code and eAPI Workflows

We’ve rebranded and released updates to the following open source enterprise API utilities:

Kandji Sync Tool (kst) has been renamed to Iru Control (iructlv1.3.0) , Kandji Packages (kpkg) to Iru Packages (irupkgv2.1.0), and Kandji AutoPkg Processor Actions (KAPPA) to Iru Orchestration Tool for AutoPkg (IOTAv1.1.0). These rebrands are fully backwards...

Updated Open Source Iru Frameworks: Powering Config as Code and eAPI Workflows

Exclude Devices from Vulnerability Management

Vulnerability Management now supports excluding specific devices from vulnerability reporting.

You can exclude a device directly from its device record or from the Devices tab within any CVE detail view. Excluding a device removes it from all CVE affected device counts across your fleet and stops vulnerability notifications from being sent for that device....

Endpoint Agent

Iru Agent for Mac Release 5.1.16 (5386): Now with smarter app downloads on limited networks

We’ve released Iru Agent for Mac 5.1.16 (5386), which now makes smarter decisions about when to download managed software if the current connection is believed to be constrained (like on Low Data Mode), expensive (like a mobile hotspot), or both.

Key improvements

  • Background Auto App update downloads are deferred on limited networks unless the install is...
Compliance Automation

Adjustable logo opacity in the Trust Center editor

The Trust Center editor now lets admins tune the opacity of their logo image so it looks right against different background treatments in their public trust page.

Product Updates

Endpoint Detection and Response for Windows

Endpoint Detection and Response for Windows is now generally available.

Endpoint Detection and Response (EDR) for Windows brings file-based threat detection and automated response to your Windows endpoints. Malicious files, PUPs, and unknowns are automatically categorized and acted on, keeping your fleet protected from the moment devices enroll.

Deploy via...

Compliance Automation

CMMC and ISO 27701 framework now available

CMMC and ISO 27701 are now available as frameworks in Iru Compliance, with AI-generated controls and actions and coverage tracking across each framework's full requirement set.

Product Updates

What's New in Iru | June 12th

Highlights we cover this week in What’s New in Iru:

  • New Iru AI features and capabilities

  • EDR alerts now deliverable via Microsoft Teams

  • New framework in Compliance Automation: NIST CSF 2.0

  • Auto App support for MSIX applications from our Windows Agent

Compliance Automation

Polished policy generation intake

The intake form for AI policy generation has been reorganized into clearer field groups, with tighter spacing and improved handling of long-form inputs.

Product Updates

Unified Activity Preview

A new unified activity experience is now available through our classic activity page for easier debugging and tracking across your environment. Unified Activity brings all of your events into one timeline across Endpoint, Detections, Vulnerabilities, and Compliance. You can switch to the new view whenever you're ready. The new experience includes full JSON...

Endpoint Management

Phased Rollouts for Mac Auto Apps

The new phased rollout option for Mac Auto Apps gives admins more control over how updates are introduced across their fleet.

Instead of offering a new version to every device at the same time, admins can enable phased rollout and choose a rollout window between 1 and 7 days (in hours). Devices are then offered the update gradually over that period, helping...

Endpoint Management

Managed OS for Apple: Now with even more control

Managed OS Library Items for Apple devices now have an updated look and feel and offer powerful new levels of control for IT teams, with more coming soon.

IT teams can now define a specific version (and optional build) to enforce on devices.

Time enforcement has also been enhanced to allow for any time instead of predefined 30 minute increments.

More...

Compliance Automation

Generated-policy editor: drafts, autosave, and audit history

Delete an unpublished generated policy draft. Admins can now delete a draft generated policy from the editor before publishing, so unwanted drafts don't clutter the Policies overview.
Persistent autosave status in the policy editor. The generated-policy editor now shows a persistent autosave indicator next to the generation date so admins always...
Compliance Automation

Generated-policy action mapping and NIST 800-171 Rev 3 support

Map a generated policy to recommended actions after publish. After publishing a generated policy, admins are prompted with a set of recommended actions to map the policy to, closing the loop from policy content to compliance evidence.
NIST 800-171 Rev 3 framework added. NIST 800-171 Revision 3 is now available as a framework template in Iru...
Compliance Automation

Uploaded policies show as Draft until published

Policies uploaded through the Policies overview now appear with a Draft status until an admin explicitly publishes them, replacing the previous behavior where uploads went straight to published.

What's New in Iru | June 5th

Highlights we cover this week in What’s New in Iru:
  • New compliance framework, NIST 800-53, with controls that are tailored to your business
  • Rebuilt the AD CS connector to get your devices onto corporate networks seamlessly
Endpoint Agent

Iru Agent for Mac Release 5.1.13 (5385)

We’ve released Iru Agent for Mac 5.1.13 (5385).

This release includes miscellaneous bug fixes and performance improvements. Additionally, it includes improvements for handling new Microsoft Conditional Access requirements in Iru Passport. For more details on these changes, reference our product documentation.

Endpoint Detection & Response

Microsoft Teams notification for EDR

Microsoft Teams notifications give administrators the ability to receive alerts about detections directly within their communication platform.

This feature allows the configuration of Microsoft Teams notifications in the same manner as existing Slack integrations. Administrators can manage alert routing for the Detections section to ensure visibility into...

Compliance Automation

Generated policies join the main Policies page

Generated policies live on the main Policies page. AI-generated policies now appear on the standard Policies overview alongside uploaded policies, and re-generation is gated to prevent accidentally overwriting an already-published version.
Publish CTA for generated policies. The generated-policy editor now includes a clear Publish action that...
Endpoint Management

Managed OS for macOS

Managed OS for macOS has been updated. The latest approved version for Tahoe is now 26.5.1, with the following release date:

macOS 26.5.1 : Jun 01, 2026

Endpoint Management

Managed OS for iOS

Managed OS for iOS has been updated. The latest approved version is now 26.5.1, with the following release date:

iOS 26.5.1 : Jun 01, 2026

Endpoint Management

Coming this week: Iru Self Service for iOS and iPadOS

Iru Self Service for iOS and iPadOS will begin rolling out globally on June 3, 2026, at 10:00 AM PDT as an update to the existing Kandji Self Service app. Iru Self Service will show as Iru on the Home Screen. The bundle ID remains io.kandji.Self-Service-Mobile.

Coming this week: Iru Self Service for iOS and iPadOS
Compliance Automation

Owner and Delegate columns on the Actions table

The Actions table now splits the previous single "Team" column into distinct Owner and Delegate columns, so it's clear at a glance who's responsible for driving each action versus who's supporting.

Endpoint Management

AD CS connector for Iru Tenants

A new AD CS connector is now available for Iru tenants.

If you still use AD CS from a Kandji tenant, first upgrade your tenant to Iru, then install the new connector from your Iru tenant. During cutover, you can run the legacy and new connectors on different servers. You can reassign AD CS servers using Assign servers once the new server is approved, or...

Compliance Automation

Refresh credentials for an enabled source

Admins can now refresh the credentials of an already-enabled source directly from the source's row. There's no need to disconnect and reconnect the integration to rotate an expiring token.

Compliance Automation

Restrict questionnaire uploads to admins

Uploading a new questionnaire in the Trust Center is now restricted to admin roles, matching the permission model used elsewhere in the product.

Endpoint Agent

Iru Agent for Mac Release 5.1.12 (5384)

We’ve released Iru Agent for Mac 5.1.12 (5384).

This release includes miscellaneous bug fixes and performance improvements.

Specifically, this release brings further performance enhancements to application inventory collection for customers using Iru Endpoint but not Iru EDR.

Endpoint Detection & Response

Unified EDR Detections View

File and Behavioral Detections are combined into a single view. This update includes a filter to isolate either file detections or behavioral detections. The Threat Status column is normalized to align consistently across both detection types.

Note, this update modifies solely the interface and does not alter underlying data.

Unified EDR Detections View
Endpoint Management

Windows Autopilot

Settings to configure Windows Autopilot for MDM auto-enrollment to Iru during out-of-box experience (OOBE) on new Windows devices are now available under Integrations in Iru. The one-time setup covers app registration in Microsoft Entra ID and a custom domain for your tenant.

The setup provides a guided flow with step-by-step instructions and lists the...

Compliance Automation

Richer policy acknowledgement exports

Acknowledgement exports now include the specific policy each acknowledgement was for as well as the acknowledgement date, so audit-ready records are one click away.

Endpoint Management

Okta Device Trust with Okta Verify Auto App for Mac

Organizations using Iru's Okta Device Trust (ODT) integration can now configure the integration on the Okta Verify Auto App for Mac in addition to, or instead of, on the App Store App version. Assignment Maps ensure only one or the other will be installed on Mac computers at one time. Using the Auto App provides an easier setup process and improved update...

Endpoint Management

Iru MCP

Iru MCP is a Model Context Protocol integration that exposes the Iru Endpoint Management API as MCP tools for assistants such as Claude, Cursor, and other MCP-enabled clients.

Create an API key and enable MCP for the API key in Iru. After setup, Iru displays the token once together with a ready-to-paste MCP configuration for HTTP transport: MCP server URL,...

Auto Apps

Auto App: Okta Verify

A new Auto App, Okta Verify, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: Okta Verify
Endpoint Management

Windows app enforcement deadline dialog

When the enforcement deadline for a Windows Custom App or Auto App arrives and a blocking process is still running, users now see a 5-minute countdown dialog. The dialog names the app, gives users time to save their work, and offers two options: Update now, which closes the app immediately and runs the install, or Delay for 1 hour, which defers the...

Windows app enforcement deadline dialog
Compliance Automation

Acknowledgement count on each policy detail page

Every published policy now shows its current acknowledgement count on the policy's detail page, giving admins immediate visibility into rollout progress without digging into the Users table.

Endpoint Agent

Iru Agent for Mac Release 5.1.12 (5383)

We’ve released Iru Agent for Mac 5.1.12 (5383).

This version improves the sequencing of installing agent Library Items during the configuring stage (await_device_configured) of Automated Device Enrollment (ADE).

Endpoint Management

Managed OS for iOS, iPadOS, and tvOS

Managed OS for iOS, iPadOS, and tvOS has been updated. The latest approved versions are now 26.5, 18.7.9, and 17.7.11, with the following release dates:

iOS 26.5 : May 11, 2026

iOS 18.7.9 : May 11, 2026

iPadOS 26.5 : May 11, 2026

iPadOS 18.7.9 : May 11, 2026

iPadOS 17.7.11 : May 11, 2026

tvOS 26.5 : May 11, 2026

Endpoint Management

Managed OS for macOS

Managed OS for macOS has been updated. The latest approved version for Tahoe is now 26.5; for Sequoia, 15.7.7; and for Sonoma, 14.8.7, with the following release dates:

macOS 26.5 : May 11, 2026

macOS 15.7.7 : May 11, 2026

macOS 14.8.7 : May 11, 2026

Compliance Automation

NIST CSF 2.0 and NIST 800-53 framework now available

NIST CSF 2.0 and NIST 800-53 are now available as frameworks in Iru Compliance, with AI-generated controls and actions and coverage tracking across each framework's full requirement set.

Compliance Automation

New connectors: six additions plus Microsoft Azure GA

New connectors: Deel, Freshservice, Google Drive, Azure DevOps, MongoDB Atlas, Klaviyo. Six connectors are now available in the Iru Compliance connector catalog: Deel (HRIS), Freshservice (ITSM), Google Drive (documents), Azure DevOps (source control), MongoDB Atlas (data platform), and Klaviyo (marketing), expanding the surface for automated evidence...
Compliance Automation

Due dates on policies

Policies can now carry a due date, giving admins a clear target for when an assigned policy should be acknowledged by employees.

Endpoint Agent

Iru Agent for Mac Release 5.1.8 (5382)

We’ve released Iru Agent for Mac 5.1.8 (5382).

This version addresses an issue where the Iru Agent for Mac may not have fully uninstalled itself after unenrolling a device.

Endpoint Management

Migration Assistant Library Item for Mac

The Migration Assistant Library Item for Mac provides the ability to customize what should be migrated or excluded during Mac-to-Mac migrations during Setup Assistant for target Mac computers running macOS 26.4 or later.

Using declarative device management (DDM), this declaration is automatically delivered to devices and applied during Setup Assistant if...

Migration Assistant Library Item for Mac
Endpoint Management

Platform Single Sign-On Settings for macOS 26 Tahoe

Settings to configure Platform Single Sign-On (PSSO) in Setup Assistant for macOS 26 Tahoe are now available in the Single Sign-On Extension Library Item.

To configure PSSO in Setup Assistant, configure the Install Library Items during Setup Assistant option in an ADE Library Item. Add a Single Sign-On Extension Library Item along with an app from a...

Platform Single Sign-On Settings for macOS 26 Tahoe
Endpoint Agent

Iru Agent for Mac Release 5.1.4 (5381)

This version adds support to install Library Items during Setup Assistant that are specified in the Install Library Items during Setup Assistant option in ADE Library Items. Additionally, it brings performance enhancements to application inventory collection.

Endpoint Management

Install Library Items during Setup Assistant on Apple devices

Library Items can now be installed during Setup Assistant for devices enrolling via Automated Device Enrollment. Inside the Automated Device Enrollment Library Item, turn on Install Library Items during Setup Assistant for a platform and add Library Items to install. The device is held at the Configuring screen during ADE enrollment until every Library Item...

Compliance Automation

Reminder emails for new employees with pending policies

A new scheduled job now sends reminder emails to newly onboarded employees who have policies pending acknowledgement, so nothing slips through the cracks in the first days on the job.

Compliance Automation

Per-user acknowledgement tracking and policy artifact file restrictions

User-level policy acknowledgement tracking.Iru Compliance now tracks each user's policy acknowledgements individually, giving admins a durable, per-user record of every accept and re-accept for every policy.

Only PDF and DOCX allowed for policy artifacts.Policy artifact uploads are now restricted to PDF and DOCX file types to keep the policy library clean...

Compliance Automation

My Policies portal for employees

Employees now have a dedicated My Policies portal for reviewing and acknowledging the policies assigned to them, with assignments, reminders, and acknowledgement receipts all flowing through the same experience. Employees whose only role is the employee role are automatically routed there on sign-in instead of the full admin console.

Auto Apps

New Windows Auto Apps

New Windows Auto Apps have been added to the catalog and are now available for all Iru Endpoint customers.

Amazon Corretto 21
Amazon Corretto 22
Amazon Corretto 23
AutoHotkey
Chrome Remote Desktop Host
Citrix Workspace LTSR
cloudflared
ConEmu
Gephi
Go Programming Language
komorebi
Memurai Developer
Positron
Python 3.11
Auto Apps

Auto App: Wispr Flow

A new Auto App, Wispr Flow, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: Wispr Flow
Auto Apps

Auto App: Snagit 2026

A new Auto App, Snagit 2026, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: Snagit 2026
Auto Apps

Auto App: MacVim

A new Auto App, MacVim, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: MacVim
Auto Apps

Auto App: Druva inSync

A new Auto App, Druva inSync, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: Druva inSync
Compliance Automation

'No framework' filter on the Actions list

The Actions list now includes a "No framework" filter option so admins can quickly surface actions that haven't yet been mapped to a framework. This is a common cleanup task before an audit.

Compliance Automation

Faster action creation and AI preview

Creating an action now takes you straight to its detail view, with an AI-generated preview of the mapped controls and evidence-plan defaults ready for inline editing.

Endpoint Agent

Kandji Agent Release 5.1.2 (5380)

We’ve released Kandji Agent 5.1.2 (5380).

This release includes miscellaneous bug fixes and performance improvements. Additionally, this version addresses an issue that may have caused slower than usual logins in Passport.

Auto Apps

Auto App: Gemini

A new Auto App, Gemini, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: Gemini
Auto Apps

Auto App: Codex

A new Auto App, Codex, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: Codex
Endpoint Agent

Kandji Agent Release 5.1.2 (5379)

We’ve released Kandji Agent 5.1.2 (5379).

This release includes miscellaneous bug fixes and performance improvements.

Endpoint Management

Managed OS for iOS and iPadOS

Managed OS for iOS and iPadOS has been updated. The latest approved versions are now 26.4.2 and 18.7.8, with the following release dates:

iOS 26.4.2 : Apr 22, 2026

iOS 18.7.8 : Apr 22, 2026

iPadOS 26.4.2 : Apr 22, 2026

iPadOS 18.7.8 : Apr 22, 2026

Compliance Automation

Policy detail view with inline preview

Every policy now has a dedicated detail view including inline artifact preview and the assigned policy owner. This replaces the previous list-only experience.

Compliance Automation

Policy library: browse, upload, and classify

A new policy library lets admins browse a curated catalog of common policies, upload their own, and classify them into the right category with a single flow.

Compliance Automation

New connectors: Cloudflare, Workable, DigitalOcean, Slack, Sentry, Semgrep, GCP

A wave of new sources landed in April, covering edge and networking (Cloudflare), recruiting (Workable), cloud infrastructure (DigitalOcean, five GCP services), collaboration (Slack), application monitoring (Sentry), and code security (Semgrep). This brought the connector catalog to a substantially broader footprint.

Compliance Automation

Clearer links between artifacts, controls, and actions

Related control link on artifact side panel.The artifact side panel now includes a direct link to the related control, so admins can jump from an evidence artifact into the control it supports without navigating manually.

Artifact indicator on the Actions table.The Actions table now shows an indicator when an action has attached artifacts, giving admins...

Compliance Automation

Inline preview for DOCX artifacts

DOCX artifacts now render inline in the preview panel, matching the existing PDF preview experience. There's no need to download a file just to check its contents.

Endpoint Management

Managed OS for macOS

Managed OS for macOS has been updated. The latest approved version for Tahoe is now 26.4.1, with the following release date:

macOS 26.4.1 : Apr 09, 2026

Endpoint Agent

Iru Agent Release

We’ve released Iru Agent for Mac (5.1.1 (5378)) and Windows (1.7.14).

This update rebrands the Kandji agent to Iru across all end-user facing apps, including the menu bar app, Self Service, Liftoff, and Passport.

Additionally, the kandji CLI tool on Mac has been renamed to iru and now includes a terminal user interface (TUI). To use the TUI, invoke sudo...

Endpoint Management

Windows System Tray App with User Prompts when App Open During Installation

A dedicated Windows system tray application gives end users a clear prompt to close applications that block an install when an Auto App or Windows Custom App deployment runs.

The tray icon uses the Iru jelly-style mark. When an install targets processes you configured to detect as open apps, the tray application surfaces a prompt so users can close those...

Endpoint Management

Managed OS for iOS and iPadOS

Managed OS for iOS and iPadOS has been updated. The latest approved version is now 26.4.1, with the following release dates:

iOS 26.4.1 : Apr 08, 2026

iPadOS 26.4.1 : Apr 08, 2026

Endpoint Detection & Response

Device Isolation for macOS EDR now available for all Iru EDR Customers

Device Isolation gives you the ability to immediately sever a network connection for any macOS device suspected of compromise. This feature, accessible directly within the Detections section, allows for rapid containment of active threats like malware or unauthorized lateral movement.

This feature was released in preview mode on March 5, 2026. Today, this...

Endpoint Management

Windows Custom App Library Item

The Windows Custom App Library Item deploys Win32 applications via MSI and EXE packages to Windows devices, with full control over installation, detection, and enforcement.

Upload a zipped installer containing your MSI or EXE and any supporting files, define silent install and uninstall commands, and configure detection logic so the agent knows whether the...

Windows Custom App Library Item
Endpoint Management

Iru Enrollment Portal

The manual enrollment portal has been rebranded from Kandji to Iru. All functionality remains the same.

Endpoint Management

Restriction for Rosetta usage awareness

The restriction to Disallow Rosetta usage awareness (allowRosettaUsageAwareness) is now available in the Apple Restrictions Library Item.

This restriction turns off Rosetta usage awareness, which prevents a pop-up dialog being displayed to the user indicating that Rosetta will be removed in a future version of macOS. It deploys to macOS 26.4 and later.

Endpoint Management

WSUS Settings in Windows Update Library Item

Windows Server Update Services (WSUS) settings in the Windows Update Library Item control where Windows devices receive updates: an internal Windows Server Update Services (WSUS) server, Microsoft Update, or a combination of both.

The Update service URL can be configured to route devices to a WSUS server, while the update source for feature updates, quality...

Compliance Automation

Sources page: search, category filter, and AWS grouping

The Sources page now supports full-text search, filtering by source category, and grouping AWS-family sources together, so browsing a growing integrations catalog stays manageable.

Endpoint Agent

Kandji Agent Release 5.0.1 (5376)

We’ve released Kandji Agent 5.0.1 (5376).

This update includes an informational banner in the Menu Bar App to inform end-users about the upcoming branding change on April 8 from Kandji to Iru, shown below.

For more information about what to expect in the branding change, see our product documentation.

Compliance Automation

Evidence status panel on action detail

Every action's detail page now includes an Evidence status panel showing generation job lifecycle, the current plan, and a retry control when generation fails. This replaces a spread of scattered status text.
Endpoint Detection & Response

Threats Tab Renamed to Detections

The Threats tab in left navigation panel has been renamed Detections.

Additionally, "Threats by severity" and "Threats over time" have been renamed to "Detections by severity" and "Detections over time" on the Home page, Devices page, and in Iru AI.

For more information, see our support article.

Auto Apps

Auto App: Windsurf

A new Auto App, Windsurf, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: Windsurf
Auto Apps

Auto App: Zotero

A new Auto App, Zotero, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: Zotero
Auto Apps

Auto App: Ollama

A new Auto App, Ollama, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: Ollama
Auto Apps

Auto App: claude-devtools

A new Auto App, claude-devtools, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: claude-devtools
Auto Apps

Auto App: LM Studio

A new Auto App, LM Studio, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: LM Studio
Auto Apps

New Windows Auto Apps

New Windows Auto Apps have been added to the catalog and are now available for all Iru Endpoint customers.

Amazon Corretto 24
Amazon Corretto 25
AWS Command Line Interface
AWS SAM Command Line Interface
Cryptomator
Eclipse Temurin JDK 21
Eclipse Temurin JDK 22
Eclipse Temurin JDK 23
Eclipse Temurin JDK 24
Eclipse Temurin JRE 21
Endpoint Agent

Kandji Agent Release 4.7.5 (5374)

We’ve released Kandji Agent 4.7.5 (5374).

This release includes miscellaneous bug fixes and performance improvements.

Security

CVE-2026-39118 — An access control issue existed in the Kandji Agent (macOS). A local attacker with standard user privileges could invoke restricted functionality. This issue was addressed with improved validation.

Affected: Kandji...

Endpoint Management

Managed OS for iOS, iPadOS, and tvOS

Managed OS for iOS, iPadOS, and tvOS has been updated. The latest approved versions are now 26.4 and 18.7.7, with the following release dates:

iOS 26.4 : Mar 24, 2026

iOS 18.7.7 : Mar 24, 2026

iPadOS 26.4 : Mar 24, 2026

iPadOS 18.7.7 : Mar 24, 2026

tvOS 26.4 : Mar 24, 2026

Endpoint Management

Managed OS for macOS

Managed OS for macOS has been updated. The latest approved version for Tahoe is now 26.4; for Sequoia, 15.7.5; and for Sonoma, 14.8.5, with the following release dates:

macOS 26.4 : Mar 24, 2026

macOS 15.7.5 : Mar 24, 2026

macOS 14.8.5 : Mar 24, 2026

Compliance Automation

ISO-native codes on control badges

Control badges across the product now show the framework's native control code (for example, ISO's A.5.1) instead of a synthetic identifier, matching how auditors and admins actually refer to controls.

Compliance Automation

AI-suggested cadence and owner role on action detail

Actions now include an AI-suggested cadence (daily, weekly, quarterly, etc.) and an AI-suggested owner role on their detail page. The cadence suggestion is based on the underlying control's frequency requirements, and the owner role suggestion is based on the control's subject matter. Admins can accept either suggestion or override it.

Endpoint Management

Windows Update Library Item

The Windows Update Library Item gives you control over how and when updates install on Windows devices.

Configure auto update behavior with options ranging from notify-only to fully silent installs. Set active hours to protect users from disruptive restarts during the workday, and remove the ability for users to pause updates from the Windows Update...

Endpoint Management

ADE Library Item Overrides

Specific ADE Library Items can now be assigned directly to devices in the Awaiting Enrollment table, providing further flexibility to the ADE enrollment process. These assignments can be made on a one-off basis, in bulk, or via the enterprise API, and override what is assigned to the Blueprint or Blueprint Routing.

For more information, see our product...

Endpoint Agent

Kandji Agent Release 4.7.3 (5373)

We've released Kandji Agent 4.7.3 (5373).

This release includes miscellaneous bug fixes and performance improvements. Additionally, the last opened date/timestamp for Mac apps is now collected by the agent and submitted to Prism during daily check-ins.

Endpoint Management

Last Opened for Mac Apps in Prism

The Kandji Agent now keeps track of when Mac apps were last opened throughout the day, as reported by macOS. The most recently recorded date/timestamp is submitted daily to Prism during the Kandji Agent's daily check-in. macOS regularly updates the last opened date/timestamp of apps as they are used, making this data useful for license monitoring and...

Compliance Automation

GDPR framework generally available

GDPR is now available as a framework in Iru Compliance, with AI-generated controls and actions and coverage tracking across the full GDPR requirement set.
Endpoint Management

Enhanced Routing Config Edited Activity

Routing Config Edited activity entries, logged when changes are made to Blueprint Routing, now include full before and after details of what changed.

Endpoint Management

Reset work profile passcode for Android devices

The reset work profile passcode command is now available for Android devices. This command can be sent from the Devices page and the Iru enterprise API.

The reset work profile passcode command clears the current work profile passcode and lets you optionally set a new one for the end-user. If the device has an Android Work Profile Passcode Library Item...

Endpoint Management

Cross-Product Licensing Page

License utilization information is now accessible from the Billing tab in the organization flyover for migrated Iru tenants, providing administrators with a consistent entry point for viewing product entitlements.

Administrators can view purchased licenses, assigned usage, and remaining capacity, including product-specific license views, all within a single...

Endpoint Detection & Response

Device Isolation for macOS EDR

Device Isolation gives you the ability to immediately sever a network connection for any macOS device suspected of compromise. This feature, accessible directly within the Threats section, allows for rapid containment of active threats like malware or unauthorized lateral movement.

Administrators can choose between two levels of isolation based on the...

Endpoint Management

Managed OS for macOS

Managed OS for macOS has been updated. The latest approved version for Tahoe is now 26.3.1, with the following release date:

macOS 26.3.1 : Mar 04, 2026

Endpoint Management

Managed OS for iOS and iPadOS

Managed OS for iOS and iPadOS has been updated. The latest approved versions are now 26.3.1 and 18.7.6, with the following release dates:

iOS 26.3.1 : Mar 04, 2026

iOS 18.7.6 : Mar 04, 2026

iPadOS 26.3.1 : Mar 04, 2026

Compliance Automation

DocuSign NDA on Trust Center invites

Trust Center invitations can now trigger a DocuSign NDA signature request as part of the invite flow, so external reviewers sign before they get access instead of after.

Compliance Automation

DocuSign NDA on admin 'Add account'

The admin "Add account" modal in Trust Center now supports triggering a DocuSign NDA as part of manual account creation, matching the invite-based NDA flow.

Auto Apps

Removing End-of-Life Auto Apps

As of today, Iru has removed the following Auto Apps from our catalog:

  • Azure Data Studio
  • Surf Browser
  • YubiKey Manager

Any deployed configuration profiles bundled with these titles will be automatically removed from Mac computers at their next MDM check-ins.

However, these apps will not be removed from Mac computers if currently installed. Uninstallers for...

Auto Apps

Auto App: BetterDisplay

A new Auto App, BetterDisplay, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: BetterDisplay
Auto Apps

Auto App: Antigravity

A new Auto App, Antigravity, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: Antigravity
Auto Apps

Auto App: Text App

A new Auto App, Text App, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: Text App
Auto Apps

Auto App: Duo Desktop

A new Auto App, Duo Desktop, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: Duo Desktop
Auto Apps

Auto App: CapCut

A new Auto App, CapCut, has been added to the catalog and is now available for all customers.

See all available Auto Apps in the Library Items section of our website.

Auto App: CapCut
Compliance Automation

Use knowledge base entries in questionnaires

Questionnaire answers can now be sourced from your knowledge base. The previous restriction that limited data source selection to trust-center content has been removed.

Endpoint Agent

Kandji Agent Release 4.7.3 (5372)

We’ve released Kandji Agent 4.7.3 (5372).

This release includes miscellaneous bug fixes and performance improvements.

Auto Apps

New Windows Auto Apps

New Windows Auto Apps have been added to the catalog and are now available for all Iru Endpoint customers.

3Dconnexion 3DxWare 10
Another Redis Desktop Manager
Bandicam
Beekeeper Studio
calibre
Cloudflare WARP
CMake
Docker Desktop
draw.io
GitButler
Hoppscotch
Joplin
KDE Connect
LibreWolf
Nextcloud
NVIDIA CUDA...
Compliance Automation

Auto-categorization during artifact upload

Uploading an artifact now runs an auto-categorization pass so the artifact lands with a reasonable classification and mapping suggestion, cutting down on manual triage after the fact.

Compliance Automation

Trial tenant improvements and AI-assisted action creation

Trial period countdown banner. Tenants on a trial now see a persistent banner counting down the time remaining, so it's always clear how much of the trial is left.
Auto-titling and mapping from the action view. Creating an action now uses AI to draft a title and propose control mappings on the fly, letting admins fill in intent with a short prompt...
Compliance Automation

User invitation flow for Trust Center

Trust Center now supports a native user invitation flow, letting admins invite external reviewers directly instead of having to seed accounts by hand.

Endpoint Management

Library Item Notes

Notes can now be added to Library Items to more easily keep team members informed of changes, intent of configurations, and more.

Endpoint Management

Tags for ADE Devices

Tags can now be applied to Automated Device Enrollment (ADE) devices before they enroll and carry over to the enrolled device record.

Additionally, tags can be used in Blueprint Routing rules to determine which Blueprint a device should be routed to.

Endpoint Management

Introducing Blueprint Routing

Blueprint Routing provides a simplified enrollment experience across all platforms by dynamically assigning devices to the correct Blueprint during enrollment. Routing decisions are based on device and user attributes evaluated against admin-defined rulesets.

Blueprint Routing works alongside Assignment Maps:

  • Blueprint Routing determines which Blueprint a...
Compliance Automation

Background artifact uploads with toast feedback

Artifact uploads now run in the background with toast notifications for progress, success, and failure, so admins can keep working while large files finish uploading.

Endpoint Management

Updated CIS Blueprint Templates and Parameters

The CIS Level 1 and Level 2 Blueprint templates have been fully updated to align with the macOS 15 and macOS 26 CIS benchmark recommendations.

This includes the following new Parameters that can be turned on for any existing Blueprint and are automatically included in new Blueprints created from the CIS templates:

  • Report Lockdown mode status
  • Ensure Apple...
Endpoint Management

Managed OS for iOS, iPadOS, and tvOS

Managed OS for iOS, iPadOS, and tvOS has been updated. The latest approved versions are now 26.3 and 18.7.5, with the following release dates:

iOS 26.3 : Feb 11, 2026

iOS 18.7.5 : Feb 11, 2026

iPadOS 26.3 : Feb 11, 2026

iPadOS 18.7.5 : Feb 11, 2026

tvOS 26.3 : Feb 11, 2026

Endpoint Management

Managed OS for macOS

Managed OS for macOS has been updated. The latest approved version for Tahoe is now 26.3; for Sequoia, 15.7.4; and for Sonoma, 14.8.4, with the following release dates:

macOS 26.3 : Feb 11, 2026

macOS 15.7.4 : Feb 11, 2026

macOS 14.8.4 : Feb 11, 2026

Stay up to date

Iru's bi-weekly collection of articles, videos, and research to keep IT & Security teams ahead of the curve.