Resources

Purplemet Cloud 1.36.0 New Features

,

July 28, 2026

|

min read

Updates and new features

Purplemet Cloud 1.36.0 is now available! This new version features several updates and enhancements compared to the previous version, as described hereafter.

Web Applications – Site Safety and Web Risk Detection

Purplemet now detects malicious and unwanted content on your analyzed web applications — malware, phishing, and unwanted software — helping you protect your visitors and prevent damage to your reputation. The detection is powered by Google Web Risk and runs automatically during each analysis, with no configuration required on your side.

    The new "Web Application by Web Risk" dashboard widget, a donut chart breaking down web applications by threat category: Malware, Social Engineering, Harmful Software and Unknown.

    Web Applications – Richer Reports and Exports

    The per-web-application Summary table, shared by all five report types (Web Application, Domain, Certificate, IP Address, and Tag), now includes four new facts:

    The Web Applications export and API now also expose the final destination URL of a redirect chain, instead of only the first hop. This makes it possible to identify the actual external identity provider (for example OneLogin) a web application redirects to.

    Left Sidebar and Tags – Visible to Every Role

    The left main sidebar now always displays every menu, whatever your role. Entries your role cannot access are greyed out and non-clickable instead of being hidden, with a tooltip explaining why access is denied — including the minimum required role, when applicable. No access right is added or removed by this change.

    As part of this, Operators gained read-only access to the Tags section (view only — creation, edition, and deletion remain disabled).

    Certificates – Expiration Notifications Restricted to Active Web Applications

    Certificate expiration notifications (upcoming and expired) are now sent only when the certificate is linked to at least one active web application. Certificates linked only to disabled or deleted web applications — or to none at all — no longer generate expiration alerts, keeping your notifications focused on what actually matters.

    Join 100+ Organizations and Secure Your Web Attack Surface with Purplemet