Change Log
Notable changes and improvements to AIShield365.
2026-09-15
Your survey is saved, and every email we send you links back to it. The confirmation page, your package email, and every governance update carry a link that reopens your answers read-only. The link does not expire and is personal to you: anyone you forward it to can see your answers.
SecureShield365 Platinum clients can now sign in to edit their saved survey. Open your survey link and sign in with your Microsoft account to change your answers. Saved changes apply to your governance updates immediately, and your package is rebuilt only when you choose Regenerate my package. The link on its own remains read-only.
Manage your notification preferences straight from your saved survey. Opening your saved assessment gives you a direct route to change how often you hear from us, or to unsubscribe, without going back to an update email.
Signed-in SecureShield365 clients now see their account in the top right of every page, with a Sign out button.
Sign in to keep up to ten posture profiles. The free plan includes two. When you reach that limit, the profile switcher now offers a Microsoft sign-in, and AIShield365 customers who sign in can hold up to ten profiles and switch between them.
2026-09-14
Governance digests now lead each change with what to do about it. Every item in the email and the attached PDF opens with a plain verdict — action needed, action if you use this, or awareness only — followed by its severity where one has been graded, and the changes within each platform are ordered by that verdict rather than by severity. The platform is named once, at the head of its group, and a change that spans several vendors lists them all on its own line. Critical and High changes are still lifted into the "Act now" strip at the top, which is where urgency gets answered.
The results page no longer makes you wait for your package. Submitting your email now returns immediately; the governance package is generated in the background and the download email arrives when it's ready. Previously the button held you on the page for the whole build, which could take minutes for a large posture.
2026-09-13
SecureShield365 clients can unlock the Microsoft governance controls by signing in. The Microsoft section's subscriber-only controls now unlock with a Microsoft Entra sign-in against the Patriot tenant instead of remaining display-only.
2026-09-10
Where your code lives and where it's hosted are now their own questions. Source-code platforms (GitHub, GitLab, Azure DevOps) and cloud hosting (Microsoft Azure, AWS, Google Cloud, Vercel) moved out of the general technology list into dedicated questions — so a team that only wants chat governance isn't asked about repositories, and hosting choices get their own governance context.
Microsoft Azure hosting now carries its licensing shape, including where the app runs and the relevant Microsoft Defender for Cloud add-ons.
2026-09-07
The EU AI Act is now a selectable compliance framework. Choosing it maps your posture against the Act's obligations and enforces the controls it requires, alongside the existing NIST AI RMF, NIST CSF, and ISO/IEC 42001 alignments.
2026-09-06
Named posture profiles. Keep more than one posture — for example a permissive developer profile and a locked-down default — switch between them, and edit without losing unsaved changes.
Locally hosted and open-source AI is now governable. Organizations running their own models get survey coverage and generated guidance for that deployment shape.
GitLab and Azure DevOps join GitHub as governed source-code platforms, including GitLab Duo coverage.
Amazon (Bedrock and Amazon Q) and xAI (Grok) are now governed technology options.
2026-09-05
Cursor is now a governed technology, with license tiers from Hobby through Enterprise.
Governance update and package delivery emails have a new design.
2026-09-04
Security audit scripts now ship in your package. The ZIP includes read-only audit scripts (Bash and PowerShell) that inspect a machine's deployed Codex configuration and report PASS, FAIL, or ABSENT for each control, mapped to the same control IDs as your policy.
2026-08-28
Every control now carries a severity — Critical, High, Medium, or Low. Severity badges appear on the survey, the results page orders accepted risks most-severe-first, and the policy preview gains a Severity column.
Governance digests now match your posture. Subscribers only receive changes touching the vendors they actually selected, and every governance email includes a link to widen or narrow that vendor list without redoing the survey.
Digest emails now open with a short executive summary, with the full per-change detail attached as a PDF.
Survey answers now survive a browser refresh.
Governance update emails now carry Patriot's take. Each vendor change a subscriber receives is now labelled with what it asks of them — Action needed, Action if you use this, or Awareness only — followed by why it bears on their posture and Patriot's recommendation, in the same voice as the survey's consultant notes.
Notification preferences page. Change how often you hear from us, or opt out entirely, from the link in every governance email.
ChatGPT Computer History is now a governed control.
The release monitor now covers every governed vendor, including OpenAI's ChatGPT and Codex release notes, GitHub, Vercel, and Google Gemini.
2026-08-26
ISO/IEC 42001:2023 alignment. Every survey control now carries its ISO/IEC 42001 Annex A mapping alongside its NIST AI RMF and NIST CSF references, and the generated policy gains an Annex A alignment appendix written as a Statement of Applicability extract. ISO 42001 is also selectable as a compliance obligation in the CISO Persona Selector. AIShield now says explicitly on the Security page that ISO/IEC 42001 is a *certifiable* standard and that an alignment mapping is not a certification.
Claude Memory is now governed — org-wide availability, the sensitive-topics setting, and memory's reach across Claude surfaces are covered by survey controls and consultant guidance.
2026-08-17
Your package now includes a Statement of Work. The ZIP carries an AIShield365 Statement of Work document tailored to your selections, sized to the controls you chose — a starting point for scoping implementation help.
2026-08-11
Choose to be notified when governed AI settings change. Survey completion now offers an optional, unticked-by-default subscription: pick a cadence — as changes happen, or a daily, weekly, or monthly summary — and AIShield emails you when a vendor changes something your governance posture depends on. Every email carries a manage/unsubscribe link.
2026-07-29
Automated release monitoring (foundation). AIShield now monitors the AI vendors it governs — Claude, OpenAI, and Microsoft — for product and release-notes changes that affect its governance recommendations, with a human review step before any detected change informs guidance. Subscriber-facing alerts are planned as a follow-on.
2026-06-29
Free policy preview. A watermarked preview of your generated NIST AI RMF policy now appears on the results page before you download the full package.
Security & Trust page. A dedicated page covering how AIShield handles your data, the third-party services involved, and how to report a security concern.
2026-06-28
Google Gemini is now a governed technology option in the survey.
Improved the survey experience on mobile — a more compact risk gauge and better use of available screen width.
2026-06-19
SEC Regulation S-P added as a compliance option for organizations governed under GLBA.