September 28, 2026 SaaS Alerts release notes

Fortify Action Processor 3.96.0

Enhancements

Additional Intune snapshot types are supported

Snapshots now support Intune managed app configurations, default app protection policies, Settings Catalog policies, device configuration templates, and administrative templates.

Additional Intune backup types are supported

Backups now support additional Intune device configuration policy families and Intune device compliance policies.

Additional Microsoft 365 backup types are supported

Backups now support Entra ID named locations, authentication strengths, Exchange transport rules, Defender for Office 365 policy families, Teams policy and settings families, and Microsoft Purview DLP, retention, insider risk, alert, and information barrier policies.

Intune device configuration snapshots support device filters

Device filters can now be imported as part of Intune device configuration snapshots.

Conditional Access snapshots allow IP named-location parameters to be edited

Included and excluded IP-based named location parameters can now be modified within Conditional Access snapshots.

Backup and restore details provide additional information

Restore details now record skipped references and warnings. The backups interface also distinguishes restored users from recreated users.

Fixes

Intune device configuration application handles existing policies more accurately

Policy application now detects existing Intune device configuration policies that have the same name.

Conditional Access snapshot updates apply correctly to assigned organizations

Changes to snapshot parameters are now applied to organizations that are already assigned to the snapshot.

Snapshot drift correction operates more reliably

Issues that could cause certain snapshot policies to repeatedly enter drift-correction cycles have been resolved.

Large backup items are processed more effectively

Improvements have been made to backup processing for scenarios involving large numbers of relationships.

Exchange transport rule restoration supports data classification conditions

Exchange transport rule snapshots can now apply data-classification conditions correctly.

Ask AI - MSFT Agent

Enhancements

Intune policy deployment status is easier to review

The assistant now provides more detailed visibility into Intune policy deployment status. You can determine whether Settings Catalog and Endpoint Security policies, including antivirus, EDR, firewall, and attack surface reduction policies, are deploying successfully. Results include successful, failed, and conflicting check-ins, along with affected devices and configuration settings when failures occur.

Approval requests provide more detailed change information

Approval requests now include the specific item affected by each change, such as a device, user, mailbox, or policy. This makes it easier to review requests and distinguish between similar objects before approving changes. Additional details are available in Review details in the web portal and within individual changes in Teams.

Microsoft permission requests are more precise and transparent

When additional Microsoft permissions are required, the assistant now requests only the minimum permissions needed to complete the task. Permission requests also include Microsoft's description of each permission, providing greater visibility into the access being granted.

Fixes

BitLocker recovery key validation works correctly

Checks for BitLocker recovery keys stored in Microsoft Entra now return accurate results. Organizations with the required read-only permission can verify whether recovery keys are present.

Intune policy deployment reporting is more accurate

Device counts are now reported more accurately for Intune policy deployments. The assistant better differentiates between devices and check-ins and no longer incorrectly reports policies as not deploying when policy matching is unsuccessful.

Intune device, policy, and setting counts are reported consistently

Improvements to counting logic provide more reliable totals for devices, policies, and settings, ensuring summaries align with the underlying results.

Incomplete Microsoft 365 responses are identified clearly

When Microsoft 365 returns incomplete data, such as a partial list of policy settings, the assistant now indicates that the results may be incomplete and explains the reason.

Multi-step changes complete more reliably

Multi-step operations, such as copying policies between organizations, now handle previously completed steps more effectively and provide clearer reporting on the outcome of each step.

Missing lists and reports are handled more clearly

When a referenced file, report, or list is unavailable, the assistant now clearly identifies the issue and provides alternative options, including supplying the information manually or rebuilding the results from previously defined criteria.