Daniel Barranquero
4cc2710418
feat(ui): show linked Jira issues on findings and report already-ticketed sends
...
The finding detail drawer shows the Jira issue linked to the finding (key
as a link to Jira, last known status) fetched from GET /jira-issues after
the panel paints, cached per finding and silently absent on APIs without
the endpoint. Sending findings to Jira now reads skipped_count / skipped
from the task result: findings that already have an open issue are reported
with their keys instead of counting as failures, and an all-skipped dispatch
is a success.
2026-08-25 17:40:00 +02:00
Daniel Barranquero
1ced1af07e
chore(api): flag the temporary SDK pin in pyproject.toml
...
Reminder next to the pinned line so the master lock bump is not forgotten
before the PR leaves draft.
2026-08-25 17:39:53 +02:00
Daniel Barranquero
d8a9878a2c
chore(api): pin the SDK to the Jira issue reference branch while in draft
...
Temporary: points api/uv.lock at prowler-cloud/prowler#12539 so this draft
can run against Jira.send_finding() returning the issue key and
Jira.get_issues_status(). To be replaced by a master lock bump once #12539
is merged, before this PR leaves draft.
2026-08-25 16:59:17 +02:00
Daniel Barranquero
8097b8e012
feat(api): track Jira issues per finding and skip already-ticketed findings
...
New RLS table jira_issues keyed on (integration, provider, finding uid) that
stores the Jira issue key, URL and last observed status for every finding
sent to Jira. send_findings_to_jira() pre-checks the batch in bounded
chunks, refreshes the status of linked issues in bulk, skips findings whose
issue is still open (reported as skipped_count / skipped), creates a
replacement issue when the linked one is closed or deleted in Jira, and
reserves the slot before calling Jira so concurrent runs cannot duplicate.
Read-only GET /api/v1/jira-issues exposes the links with provider-scoped
visibility. Rows are removed with the provider.
2026-08-25 16:58:40 +02:00
Daniel Barranquero
53be73c2ac
feat(api): add finding labels, finding URL and tenant info to Jira issues
...
send_findings_to_jira() now passes issue_labels (prowler, prowler-{provider},
prowler-{severity}, prowler-{check_id} and prowler-finding-{sanitized uid}),
a finding_url built from the new DJANGO_UI_BASE_URL setting (empty by
default, so self-hosted deployments emit no link unless configured) and the
tenant name as tenant_info. The label sanitizer is local to the API so it
does not depend on an unreleased SDK symbol.
2026-08-25 16:29:19 +02:00
Gabriel and pedrooot
8a4cc8780d
feat(kubernetes): include cluster name in compliance reports ( #12506 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
2026-08-25 11:08:04 +02:00
Pepe Fagoaga
cd4d2a27e3
chore(lighthouse): rename not tested to not connected ( #12523 )
2026-08-25 09:21:18 +02:00
9898cf7364
feat(m365): add defender_domain_dmarc_records_published check ( #11936 )
...
Co-authored-by: Claude Fable 5 <noreply@anthropic.com >
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com >
Co-authored-by: hdy2001 <56308320+hdy2001@users.noreply.github.com >
2026-08-24 16:49:36 +02:00
83d8cfa829
fix(aws): treat security groups on Batch compute environments as used ( #12458 )
...
Co-authored-by: hackertwinten <193916571+hackertwinten@users.noreply.github.com >
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com >
2026-08-24 16:18:56 +02:00
mintlify[bot]
5202a68cf0
docs: brand tone and writing style fixes ( #12510 )
...
Co-authored-by: mintlify[bot] <109931778+mintlify[bot]@users.noreply.github.com>
2026-08-24 11:17:37 +02:00
Hugo Pereira Brito
e3a3acc799
fix(api): upgrade sqlparse to 0.6.0 ( #12509 )
2026-08-24 08:47:29 +02:00
Pablo Fernandez Guerra (PFE)
3e000faa31
feat(ui): add Slack disconnect and revoked-credential recovery ( #12437 )
2026-08-21 12:42:47 +02:00
Jonathan Nguyen and Hugo P.Brito
f39c92b8f8
feat(bedrock): add model artifact and guardrail grounding security checks for the AWS provider ( #12459 )
...
Co-authored-by: Hugo P.Brito <hugopbrit@gmail.com >
2026-08-21 10:50:34 +01:00
Pablo Fernandez Guerra (PFE)
823efc5ab1
feat(ui): pick a Slack channel and verify it ( #12436 )
2026-08-21 11:45:24 +02:00
Pablo Fernandez Guerra (PFE)
75d7fa5006
feat(ui): add Slack integration connect flow ( #12435 )
2026-08-21 10:49:46 +02:00
Prowler Bot and prowler-bot
db25484ccb
feat(aws): Update regions for AWS services ( #12472 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2026-08-20 16:02:56 +01:00
Johannes Engler and Hugo P.Brito
3da4209ee7
feat(stackit): add ske_cluster_no_public_endpoint check ( #11943 )
...
Co-authored-by: Hugo P.Brito <hugopbrit@gmail.com >
2026-08-20 13:01:01 +01:00
acb6ff0425
feat(providers/huaweicloud): add vpc_security_group_open_egress check ( #12209 )
...
Co-authored-by: tomitobio <tomitobio@users.noreply.github.com >
Co-authored-by: Hugo P.Brito <hugopbrit@gmail.com >
2026-08-20 10:52:13 +01:00
Pablo Fernandez Guerra (PFE)
ba564af4f4
fix(ci): unblock the Python runtime download in blocked-egress jobs ( #12490 )
2026-08-20 10:48:16 +02:00
Eugene C. and Hugo P.Brito
0b9791ffdc
feat(ecr): add ecr_repository_image_no_secrets check ( #12123 )
...
Co-authored-by: Hugo P.Brito <hugopbrit@gmail.com >
2026-08-18 11:10:07 +01:00
Prowler Bot and prowler-bot
f6defefb58
chore(changelog): v5.39.1 forward-sync to master ( #12483 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2026-08-18 11:32:20 +02:00
ye11oc4t and Hugo P.Brito
f3224d0988
fix(ses): evaluate all identity authorization policies ( #12464 )
...
Co-authored-by: Hugo P.Brito <hugopbrit@gmail.com >
2026-08-17 14:19:45 +01:00
Pepe Fagoaga
450e6ba553
chore(api): drop temporary SDK pin overrides after cryptography cap bump ( #12473 )
2026-08-17 13:42:09 +02:00
2cd93fe119
fix(sdk): skip undescribed ECS task definitions ( #12217 )
...
Co-authored-by: Nguyễn Công Thuận Huy <nguyencongthuanhuy@gmail.com >
Co-authored-by: Hugo P.Brito <hugopbrit@gmail.com >
2026-08-17 12:42:06 +01:00
Pablo Fernandez Guerra (PFE)
f807b22ea6
ci: lint .github markdown and fix the violations it exposed ( #12290 )
2026-08-17 13:00:32 +02:00
Pepe Fagoaga
b6e9967da6
fix(deps): make published wheels installable and add package checks ( #12467 )
2026-08-17 12:34:11 +02:00
Hugo Pereira Brito
16e62f7514
ci(labeler): cover existing provider labels ( #12476 )
2026-08-17 11:33:22 +01:00
Adrián Peña
13ce9436b3
chore: update Trivy to 0.74.0 ( #12466 )
2026-08-17 10:25:28 +02:00
mintlify[bot]
d3ced63397
fix(docs): typos and grammar ( #12468 )
...
Co-authored-by: mintlify[bot] <109931778+mintlify[bot]@users.noreply.github.com>
2026-08-17 09:21:56 +02:00
Adrián Peña
758b696ca5
feat(ui): highlight imported providers ( #12447 )
2026-08-17 08:53:14 +02:00
Pepe Fagoaga
0d3ce45374
fix(pypi): bump to pypa/gh-action-pypi-publish v1.14.2 ( #12456 )
2026-08-14 14:57:07 +02:00
Alejandro Bailo
f35666ff0a
fix(ui): settle scan auto-refresh safely ( #12455 )
2026-08-14 11:48:08 +02:00
Pedro Martín
0758c3585d
feat(rolesanywhere): flag profiles with unscoped sessions ( #12416 )
2026-08-13 17:06:24 +02:00
dd882c70e7
chore(release): Bump versions to v5.40.0 ( #12443 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
Co-authored-by: Josema Camacho <josema@prowler.com >
2026-08-13 13:49:26 +02:00
Hugo Pereira Brito and Pablo F.G
d05c9fbb31
feat(ui): add trial usage sidebar banner ( #12420 )
...
Co-authored-by: Pablo F.G <pablo.fernandez@prowler.com >
2026-08-13 11:36:59 +01:00
Josema Camacho
7bde42ffb9
docs: update attack paths documentation for grouped graphs ( #12440 )
2026-08-13 12:25:14 +02:00
Pepe Fagoaga
0d3df0fd0b
chore(changelog): v5.39.0 release highlights ( #12432 )
2026-08-13 12:08:15 +02:00
Pedro Martín
ab996417e6
fix(ci): bump Trivy to v0.73.0 to fix CVE-2026-46600 ( #12444 )
2026-08-13 12:04:51 +02:00
Prowler Bot and prowler-bot
5f109bc00e
chore(changelog): v5.39.0 ( #12433 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2026-08-13 09:01:51 +02:00
Pepe Fagoaga
472e04f4cc
docs(triage): manual PASS verification for MANUAL findings ( #12431 )
2026-08-12 15:46:54 +02:00
Rubén De la Torre Vico
b848aace33
docs(mcp): document the Cloud organization tools and Jira dispatch options ( #12427 )
2026-08-12 15:05:24 +02:00
Pedro Martín
94c20eb9fe
feat(ui): add CMMC compliance framework ( #12414 )
2026-08-12 14:52:09 +02:00
02df22ca19
fix(html): escape provider identity fields in report header ( #12424 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com >
Co-authored-by: pedrooot <56402503+pedrooot@users.noreply.github.com >
2026-08-12 13:58:31 +02:00
Hugo Pereira Brito and Josema Camacho
de64df11b9
fix(api): normalize social account names ( #12413 )
...
Co-authored-by: Josema Camacho <josema@prowler.com >
2026-08-12 12:41:44 +01:00
Pedro Martín
37ebd9b6fd
fix(cmmc): remove stale config_requirements ( #12425 )
2026-08-12 12:29:43 +02:00
Pedro Martín
a28487cbff
fix(ci): suppress .NET runtime CVE temporarily ( #12426 )
2026-08-12 12:16:14 +02:00
Rubén De la Torre Vico
68471d2a0e
feat(ui): add Manage Lighthouse AI role permission ( #12412 )
2026-08-12 10:19:20 +02:00
Pablo Fernandez Guerra (PFE)
d41b2eaa0f
docs: add the Azure Management Groups onboarding tutorial ( #12389 )
2026-08-12 09:15:32 +02:00
Pablo Fernandez Guerra (PFE)
b480907484
feat(ui): onboard Azure subscriptions from a Management Group ( #12386 )
2026-08-12 09:07:43 +02:00
Pablo Fernandez Guerra (PFE)
6d7bc8a86e
test(ui): consolidate the providers page integration suites ( #12383 )
2026-08-11 18:50:10 +02:00