Updates and new features
Purplemet Cloud 1.36.0 is now available! This new version features several updates and enhancements compared to the previous version, as described hereafter.
Web Applications – Site Safety and Web Risk Detection
Purplemet now detects malicious and unwanted content on your analyzed web applications — malware, phishing, and unwanted software — helping you protect your visitors and prevent damage to your reputation. The detection is powered by Google Web Risk and runs automatically during each analysis, with no configuration required on your side.

Web Applications – Richer Reports and Exports
The per-web-application Summary table, shared by all five report types (Web Application, Domain, Certificate, IP Address, and Tag), now includes four new facts:
The Web Applications export and API now also expose the final destination URL of a redirect chain, instead of only the first hop. This makes it possible to identify the actual external identity provider (for example OneLogin) a web application redirects to.
Left Sidebar and Tags – Visible to Every Role
The left main sidebar now always displays every menu, whatever your role. Entries your role cannot access are greyed out and non-clickable instead of being hidden, with a tooltip explaining why access is denied — including the minimum required role, when applicable. No access right is added or removed by this change.
As part of this, Operators gained read-only access to the Tags section (view only — creation, edition, and deletion remain disabled).
Certificates – Expiration Notifications Restricted to Active Web Applications
Certificate expiration notifications (upcoming and expired) are now sent only when the certificate is linked to at least one active web application. Certificates linked only to disabled or deleted web applications — or to none at all — no longer generate expiration alerts, keeping your notifications focused on what actually matters.


