v256 EntraID Single Sign-On Security Hardening🔒
“Ah-ah-ah, you didn’t say the magic word!" - Custom lockout program created by Dennis Nedry, Jurassic Park 🤖
SentiOne Automate version 256 was released on 27.11.2025. It introduces multiple improvements regarding security and Single Sign-On (SSO) enforcement using Microsoft EntraID.
Enforcing SSO based on user domain
System admins can now enforce SSO for users based on their username/e-mail address. If this policy is enabled logging in with password is disabled for such users and only was for the to log into the application is by using their Microsoft based account. SentiOne Automate supports both private and corporate managed accounts to login using this mechanism. Moreover, organization admins can see if their teammates are using 2FA or SSO.
💊 IMPROVEMENTS
- [User management] Adding new user now takes 2 steps, if user is already existing in the system or SSO is enforced, then there is no additional step to set password.
- [API] Exporting Knowledge Base Documents is now possible through API and UI
- [Pattern] Improved editor for pattern entities
- [Flow] Syntax highlighting for Expression Language inside LLM prompts
- [Flow] Variable system.currentTime now returns real time and not the moment of beginning to parse user utterance (start of the bot turn)
- [Flow] Sending extended processing messages now is sent as a separate bot response
🐛 FIXES
- [NLU] Removing NLU does not cause AutoCorrect mechnism removal any more
- [NLU] To access LLM intentizer there is no longer need to have complex model permission
- [Genesys] Removing session from Genesys's queue when bot session ends
- [Genesys] Handle correctly case when agent transfers session to other agents' queue
- [UI] Minor UI styling issues
Follow the changelog for more exciting new features! 👋
