Skip to main content
Date: October 17, 2025

Highlights

  • Granular Passkey Policies
  • Export for Events Beta
  • Log Retrieval by Admins
  • Bug Fixes

Enhancements

Granular Passkey Policies

Admins can now allow Passkeys, but block users from registering syncable passkeys (ensuring that the user can only use the originally registered passkey and not a copy). A screenshot of a computer Description automatically generated When this policy is enabled, users will be prevented from registering a passkey that can be synced (e.g. to a password manager) while non-syncable passkeys will be permitted. This policy applies to new registrations only (e.g. already enrolled syncable passkeys will not be removed). NOTE: If you are managing your own Identity Servers, you will need to upgrade to version 25.192 (or higher) in order to use this feature.

Export for Events Beta

The new Events page with natural language search and filtering that was released as a public beta earlier this month now supports exporting data. The confirmation menu and the CSV file that is generated have been updated to show the query that was entered in the search and the resulting filters. A screenshot of a computer screen Description automatically generated

Log Retrieval by Admins

We are also happy to introduce a new capability for Admins to retrieve TruU logs from devices without requiring an action from the end user. To do so, as seen below, click the new “Action” button, then click “Get Logs” available on the “Computers” tab, then navigate to either the “Workstations” or “Mobiles” pages. A screenshot of a computer Description automatically generated When the action is taken, the device is flagged as a device that needs to send logs. When that device next checks in with the platform, it will be informed that its logs have been requested and the logs will be sent automatically. The logs will be routed to TruU or your tenant based on your configuration in the Settings > Agent Logs page. This feature is currently supported by the Windows Authenticator version 25.3.2 and higher. This feature will be supported by the Mac Authenticator, mobile apps and shared workstations in the future. NOTE: If you are managing your own Identity Servers, you will need to upgrade to version 25.192 (or higher) in order to use this feature.

Bug Fixes

  • We have added missing translations in some error messages when using TruU in a non-English language.
  • We have fixed our error event reporting to include an event when a someone attempts to login with a user name that is not found in the directory.
  • We have fixed an issue that prevented large biometric use policies from being displayed in full from the User Portal or the Admin Console.

Known Issues

Ticket NumberComponentSummary
PLAT-11042Event LoggingNo event is generated in the Admin Console when a user cancels enrollment.
PLAT-9359Admin ConsoleThe view of devices does not get updated immediately when dormant settings are modified. If the Admin changes the “Stale Device Handling” configuration under “Settings > Security”, the status for devices (Active / Dormant) may not be accurate for up to 15 minutes as the status is cached and updated every 15 minutes.

PLAT 25.194 Release Notes PLAT 25.190 Release Notes