Change Log

Notable changes and improvements to AIShield365.

2026-09-15

Added

Your survey is saved, and every email we send you links back to it. The confirmation page, your package email, and every governance update carry a link that reopens your answers read-only. The link does not expire and is personal to you: anyone you forward it to can see your answers.

Added

SecureShield365 Platinum clients can now sign in to edit their saved survey. Open your survey link and sign in with your Microsoft account to change your answers. Saved changes apply to your governance updates immediately, and your package is rebuilt only when you choose Regenerate my package. The link on its own remains read-only.

Added

Manage your notification preferences straight from your saved survey. Opening your saved assessment gives you a direct route to change how often you hear from us, or to unsubscribe, without going back to an update email.

Added

Signed-in SecureShield365 clients now see their account in the top right of every page, with a Sign out button.

Changed

Sign in to keep up to ten posture profiles. The free plan includes two. When you reach that limit, the profile switcher now offers a Microsoft sign-in, and AIShield365 customers who sign in can hold up to ten profiles and switch between them.

2026-09-14

Changed

Governance digests now lead each change with what to do about it. Every item in the email and the attached PDF opens with a plain verdict — action needed, action if you use this, or awareness only — followed by its severity where one has been graded, and the changes within each platform are ordered by that verdict rather than by severity. The platform is named once, at the head of its group, and a change that spans several vendors lists them all on its own line. Critical and High changes are still lifted into the "Act now" strip at the top, which is where urgency gets answered.

Changed

The results page no longer makes you wait for your package. Submitting your email now returns immediately; the governance package is generated in the background and the download email arrives when it's ready. Previously the button held you on the page for the whole build, which could take minutes for a large posture.

2026-09-13

Added

SecureShield365 clients can unlock the Microsoft governance controls by signing in. The Microsoft section's subscriber-only controls now unlock with a Microsoft Entra sign-in against the Patriot tenant instead of remaining display-only.

2026-09-10

Changed

Where your code lives and where it's hosted are now their own questions. Source-code platforms (GitHub, GitLab, Azure DevOps) and cloud hosting (Microsoft Azure, AWS, Google Cloud, Vercel) moved out of the general technology list into dedicated questions — so a team that only wants chat governance isn't asked about repositories, and hosting choices get their own governance context.

Changed

Microsoft Azure hosting now carries its licensing shape, including where the app runs and the relevant Microsoft Defender for Cloud add-ons.

2026-09-07

Added

The EU AI Act is now a selectable compliance framework. Choosing it maps your posture against the Act's obligations and enforces the controls it requires, alongside the existing NIST AI RMF, NIST CSF, and ISO/IEC 42001 alignments.

2026-09-06

Added

Named posture profiles. Keep more than one posture — for example a permissive developer profile and a locked-down default — switch between them, and edit without losing unsaved changes.

Added

Locally hosted and open-source AI is now governable. Organizations running their own models get survey coverage and generated guidance for that deployment shape.

Added

GitLab and Azure DevOps join GitHub as governed source-code platforms, including GitLab Duo coverage.

Added

Amazon (Bedrock and Amazon Q) and xAI (Grok) are now governed technology options.

2026-09-05

Added

Cursor is now a governed technology, with license tiers from Hobby through Enterprise.

Changed

Governance update and package delivery emails have a new design.

2026-09-04

Added

Security audit scripts now ship in your package. The ZIP includes read-only audit scripts (Bash and PowerShell) that inspect a machine's deployed Codex configuration and report PASS, FAIL, or ABSENT for each control, mapped to the same control IDs as your policy.

2026-08-28

Added

Every control now carries a severity — Critical, High, Medium, or Low. Severity badges appear on the survey, the results page orders accepted risks most-severe-first, and the policy preview gains a Severity column.

Added

Governance digests now match your posture. Subscribers only receive changes touching the vendors they actually selected, and every governance email includes a link to widen or narrow that vendor list without redoing the survey.

Added

Digest emails now open with a short executive summary, with the full per-change detail attached as a PDF.

Added

Survey answers now survive a browser refresh.

Added

Governance update emails now carry Patriot's take. Each vendor change a subscriber receives is now labelled with what it asks of them — Action needed, Action if you use this, or Awareness only — followed by why it bears on their posture and Patriot's recommendation, in the same voice as the survey's consultant notes.

Added

Notification preferences page. Change how often you hear from us, or opt out entirely, from the link in every governance email.

Added

ChatGPT Computer History is now a governed control.

Added

The release monitor now covers every governed vendor, including OpenAI's ChatGPT and Codex release notes, GitHub, Vercel, and Google Gemini.

2026-08-26

Added

ISO/IEC 42001:2023 alignment. Every survey control now carries its ISO/IEC 42001 Annex A mapping alongside its NIST AI RMF and NIST CSF references, and the generated policy gains an Annex A alignment appendix written as a Statement of Applicability extract. ISO 42001 is also selectable as a compliance obligation in the CISO Persona Selector. AIShield now says explicitly on the Security page that ISO/IEC 42001 is a *certifiable* standard and that an alignment mapping is not a certification.

Added

Claude Memory is now governed — org-wide availability, the sensitive-topics setting, and memory's reach across Claude surfaces are covered by survey controls and consultant guidance.

2026-08-17

Added

Your package now includes a Statement of Work. The ZIP carries an AIShield365 Statement of Work document tailored to your selections, sized to the controls you chose — a starting point for scoping implementation help.

2026-08-11

Added

Choose to be notified when governed AI settings change. Survey completion now offers an optional, unticked-by-default subscription: pick a cadence — as changes happen, or a daily, weekly, or monthly summary — and AIShield emails you when a vendor changes something your governance posture depends on. Every email carries a manage/unsubscribe link.

2026-07-29

Added

Automated release monitoring (foundation). AIShield now monitors the AI vendors it governs — Claude, OpenAI, and Microsoft — for product and release-notes changes that affect its governance recommendations, with a human review step before any detected change informs guidance. Subscriber-facing alerts are planned as a follow-on.

2026-06-29

Added

Free policy preview. A watermarked preview of your generated NIST AI RMF policy now appears on the results page before you download the full package.

Added

Security & Trust page. A dedicated page covering how AIShield handles your data, the third-party services involved, and how to report a security concern.

2026-06-28

Added

Google Gemini is now a governed technology option in the survey.

Changed

Improved the survey experience on mobile — a more compact risk gauge and better use of available screen width.

2026-06-19

Added

SEC Regulation S-P added as a compliance option for organizations governed under GLBA.