---
title: Release notes 2025 | Access Control
description: Learn about the new features and improvements implemented in Access Control
documentId: access-control-release-notes-2025
locale: en-US
---

## October 2025

<Accordion title="October 29, 2025">

- **Improvement**

  New account recovery flow: when an administrator reactivates a deactivated user, the system automatically sends an email with instructions to reset the password and regain access. The user has up to 48 hours to complete the process. During this period, the account status remains **Pending** until completion.

</Accordion>


## July 2025

<Accordion title="July 31, 2025">

- **New user interface**

  We introduced a completely redesigned interface aligned with the platform’s look and feel, providing a more seamless and integrated experience while retaining existing functionalities.

</Accordion>

<Accordion title="July 14, 2025">

- **Security improvements**

  **Inactive user**

  - Automatic deactivation of inactive users: accounts without access for 90 days are automatically disabled, with reactivation performed by users with edit permissions.

  **Password policy**

  - New password policy: the minimum length is now **12 characters**, maintaining complexity requirements (number, uppercase letter, lowercase letter, and special character). Existing passwords remain valid until changed.
  - Password history: reuse of the last four passwords is not allowed.
  - Threat protection: logins identified as threats are automatically blocked.

</Accordion>


## June 2025

<Accordion title="June 12, 2025">

- **Bug fixed**

  We fixed a UI issue that impacted the correct rendering of the list of *roles* assigned to users with many policies in the Firefox browser.

</Accordion>


## April 2025

<Accordion title="April 07, 2025">

- **PCI compliance requirement**

  Logged-in users who remain inactive for 15 minutes are automatically signed out, in accordance with PCI standards.

</Accordion>
