Release Notes
Release notes of SwissSign Signature Service. The release date corresponds to the release of the software, not the release of the cloud service.
| Type | Change |
|---|
| Added | Assets compression enabled by default (LS-3165) |
| Type | Change |
|---|
| Added | New workflow picker for signing request (LS-3229) |
| Added | The signing request overview displays signature level and regulation if available (LS-3230) |
| Added | Buyers of signature packs are informed about qualified signature and regulation if available (LS-3233) |
| Fixed | Fixes user that cannot send a request when switching to a workflow with pre-assigned signatories (LS-3291) |
| Fixed | Fixes pre-assigned signatories automatically added when editing signatories (LS-3295) |
| Fixed | Release the lock on a document when removing a signatory from a request (LS-3308) |
| Fixed | Fixes filename not supporting UTF-8 when downloading a file (LS-3327) |
| Fixed | Fixes enrollment callback for additional devices not sent (LS-3314) |
| Fixed | Fixes signature confirmation not working in an ordered signing request with SwissID linking (LS-3331) |
| Type | Change |
|---|
| Added | The client loads faster (LS-3165) |
| Fixed | Loading spinner appears at the very beginning (LS-3330) |
| Fixed | Fixes exception when putting an invisible signature in a landscape document (LS-3267) |
| Type | Change |
|---|
| Added | Managers and assistants can add or remove signatories from a signing request (LS-3032) |
| Added | Updated view to manage a signing request (LS-3053) |
| Added | Updates database schema to allow replication (LS-3031) |
| Added | Support for landscape documents (LS-3267) |
| Added | Support for linking SwissID to internal accounts (LS-3136) |
| Fixed | Support for filenames with non-ASCII characters (LS-3269) |
| Fixed | Fixes error when downloading documents as an assistant (LS-3198) |
| Fixed | Fixes error when clicking "not now" with a linked SwissID account (LS-3189) |
| Fixed | Fixes OAuth authorization in high availability mode (LS-3183) |
| Fixed | Fixes report not being fetched when administrator is managing multiple organizations (LS-3134) |
| Fixed | Fixes user not being redirected to the signing room after accepting the invitation in some cases (LS-3113) |
| Fixed | Fixes copy button for document or request reference not working anymore (LS-3059) |
| Fixed | Fixes request not found when coming from a mobile notification (LS-2920) |
| Fixed | Fixes an error when the same user is added twice in a signing room with different email addresses (LS-2267) |
| Fixed | Removes an irrelevant button to delete a signing room in the user console (LS-2263) |
| Type | Change |
|---|
| Added | Checks that documents submitted by the web client are matching the initial envelope (LS-3240) |
| Added | Handles server error when submitting a rejection message (LS-2941) |
| Added | Support for limiting number of stored visual signature per user (LS-3150) |
| Fixed | Fixes support for dynamic response in redirectTo for API requests (LS-3253) |
| Fixed | Fixes hyperlinks not correctly displayed in the viewer (LS-3220) |
| Fixed | Fixes wrong locale applied after a redirection from a protected link (LS-3175) |
| Fixed | Remove unnecessary requests when preparing documents (LS-3148) |
| Fixed | Fixes custom title in signing request not being translated (LS-3081) |
| Fixed | Fixes last signature field highlighted instead of the first one (LS-2938) |
| Fixed | Fixes signing steps reset when adding a visual signature (LS-2923) |
| Fixed | Fixes parallel signatory previewing document not informed of another signatory rejecting the request (LS-2700) |
| Type | Change |
|---|
| Added | Limit the number of visual signatures per user and the size of images (LS-3126) |
| Added | Allows forwarding of HTTP headers from mobile SDK to the workflow engine (LS-2985) |
| Fixed | Fixes signing an envelope with SMS authentication (LS-3176) |
| Fixed | Fixes contracts in parallel signing still pending after they are refused or after an error (LS-1435) |
| Type | Change |
|---|
| Fixed | Fixes enrollment callback for additional devices not sent (LS-3314) |
| Type | Change |
|---|
| Fixed | Fixes error when clicking "not now" with a linked SwissID account (LS-3189) |
| Fixed | Fixes error when downloading documents as an assistant (LS-3198) |
| Type | Change |
|---|
| Fixed | Fixes hyperlinks not correctly displayed in the viewer (LS-3220) |
| Fixed | Fixes locale not being updated from query params (LS-3228) |
| Type | Change |
|---|
| Fixed | Fixes signing an envelope with SMS authentication (LS-3176) |
| Fixed | Fixes OAuth authorization in high availability mode (LS-3183) |
| Type | Change |
|---|
| Added | Support for limiting number of stored visual signature per user (LS-3150) |
| Fixed | Fixes wrong locale applied after a redirection from a protected link (LS-3175) |
| Type | Change |
|---|
| Added | Limit the number of visual signatures per user and the size of images (LS-3126) |
| Type | Change |
|---|
| Added | Support for linking SwissID to internal accounts (LS-3136) |
| Fixed | Fixes report not being fetched when administrator is managing multiple organizations (LS-3134) |
| Type | Change |
|---|
| Fixed | Remove unnecessary requests when preparing documents (LS-3148) |
| Type | Change |
|---|
| Fixed | Fixes websign.domainName being unnecessarily required even if inbox is disabled (LS-2969) |
| Fixed | Fixes error when creating a signing request via API with no document (LS-3002) |
| Fixed | Fixes OIDC provider being displayed even if no UI is configured (LS-3049) |
| Fixed | Fixes user not being redirected to the signing room after accepting the invitation in some cases (LS-3113) |
| Type | Change |
|---|
| Fixed | Fixes user authenticating via SMS not being properly informed when the code expires (LS-3004) |
| Fixed | Fixes custom title in signing request not being translated (LS-3081) |
| Type | Change |
|---|
| Added | Added pre-assigned signatories in the signing request. They are configurable in the workflow and might be editable by the manager. |
| Added | Added signatory's message when rejecting a signing request. This option is configurable. |
| Fixed | Fixes invitation email not taking into account language set for a signatory in the signing request (LS-1585) |
| Type | Change |
|---|
| Fixed | Fixes group in an envelope options not being checked when using drag and drop (LS-2989) |
| Fixed | Fixes back button not working when selecting a signature on mobile (LS-2704) |
| Fixed | Fixes signature picker on mobile opening and closing without letting the user choose (LS-2925) |
| Type | Change |
|---|
| Added | Added a task to configure a per-state retention period for contracts and automatically clean them up (LS-1609) |
| Fixed | Fixes workflow not being available for superadmin because of incorrect assignment restrictions (LS-2984) |
| Type | Change |
|---|
| Fixed | Fixes enrollment callback for additional devices not sent (LS-3314) |
| Fixed | Fixes signature confirmation not working in an ordered signing request with SwissID linking (LS-3331) |
| Changed | Remove user registration check on RA for Swisscom QES and AdES (LS-3361) |
| Type | Change |
|---|
| Added | Support for linking SwissID to internal accounts (LS-3136) |
| Type | Change |
|---|
| Fixed | Fixes signing an envelope with SMS authentication (LS-3176) |
| Type | Change |
|---|
| Fixed | Fixes websign.domainName being unnecessarily required even if inbox is disabled (LS-2969) |
| Type | Change |
|---|
| Fixed | Fixes custom title in signing request not being translated (LS-3081) |
| Fixed | Fixes users required to log in although they have already an active session (LS-3070) |
| Type | Change |
|---|
| Fixed | Fixes group in an envelope options not being checked when using drag and drop (LS-2989) |
| Type | Change |
|---|
| Fixed | Fixes workflow not being available for superadmin because of incorrect assignment restrictions (LS-2984) |
| Type | Change |
|---|
| Added | Can restrict access to superadmin to given LDAP groups (LS-2983) |
| Fixed | Fixes error when revoking permission shortly after admin accepted invitation (LS-2301) |
| Fixed | Fixes users not able to sign when identity documents are more than 5 years old (LS-2591) |
| Fixed | Fixes drag and drop for electronic seal request (LS-2187) |
| Type | Change |
|---|
| Added | Adds a button to fill in all signature fields at once for electronic signature mode (LS-2998) |
| Fixed | Fixes side panel not disabled when drawing a signature (LS-2893) |
| Fixed | Fixes timeout page not displayed on mobile or in request with envelope (LS-2899) |
| Fixed | Fixes timeout page rendering on small screen (LS-2901) |
| Fixed | Fixes signatures manager stuck on loading when signing an envelope (LS-2924) |
| Type | Change |
|---|
| Fixed | Fixes a vulnerability allowing an attacker to bypass SMS authentication and see a document when the attacker has the same username and can steal the victim's link (LS-2888) |
| Type | Change |
|---|
| Added | Suggests a list of pre-defined and translated names and descriptions when configuring a workflow (LS-2748) |
| Added | Validates the postcode in the billing address (LS-2921) |
| Added | Adds support to specify multiple document names in SCS API (LS-2949) |
| Type | Change |
|---|
| Fixed | Fixes restrictions on visual signature not being enforced correctly (LS-2657) |
| Fixed | Fixes preference to automatically apply signature not being consistent for multiple users in the same browser (LS-2692) |
| Fixed | Fixes inconsistent state when completing the steps to apply signature very quickly (LS-2743) |
| Fixed | Fixes signature fields not appearing on mobile when there are multiple in a document (LS-2744) |
| Fixed | Fixes signature not appearing when first name and last name are not given (LS-2902) |
| Fixed | Fixes confirmation code not appearing in the modal on small screen (LS-2967) |
| Type | Change |
|---|
| Fixed | Fixes LTV extension not being added to envelope contracts (LS-1372) |
| Fixed | Increases default signature container size for certification workflow and makes it configurable (LS-2948) |
| Type | Change |
|---|
| Fixed | Fixes invalid page state when user is refreshing the page with document details view opened automatically through deep link. (LS-2745) |
| Type | Change |
|---|
| Fixed | Fixes issues when form filling is disabled with document prepared for electronic signature. (LS-2703) |
| Fixed | Fixes UI glitch on mobile device that prevent user from selecting a signature field. (LS-2711) |
| Fixed | Fixes issue preventing a user to add new visual signatures after preparing documents in an; envelope. (LS-2738) |
| Fixed | Adds missing view for unauthorized users, with switch account option. (LS-2887, LS-2935) |
| Type | Change |
|---|
| Added | Adds new security settings for a signing room which allow administrators deciding whether room managers and assistants are allowed to manage users and permissions of the signing room. (LS-2617) |
| Added | Adds new security settings for a signing room which allow administrators deciding whether assistants are allowed to sign documents within the signing room. (LS-2621) |
| Added | Displays email in the support tool table. (LS-2907) |
| Changed | Enhances user lookup feature in the different views of the application to prevent suggesting user that are not allowed to be selected in the given view's context. (LS-2622) |
| Changed | Enhances web notifications integration to notify users for signing request reminders. (LS-2751) |
| Fixed | Disables by default Hazelcast telemetry feature to prevent outbound analytics connection. (LS-2757) |
| Removed | Removes remote video identification integration with Swisscom Trust Services as the service has been decommissioned. (LS-2697) |
| Type | Change |
|---|
| Added | Adds possibility to apply branding on the new Web Client UI. (LS-2408, LS-2898, LS-2749) |
| Added | Adds user confirmation when user leave the signature process before confirmation (when redirect URL is defined). (LS-2658) |
| Fixed | Hides signature settings menu when the contract is configured with invisible signature. (LS-2659) |
| Fixed | Shows read-only form fields with a black/white color scale. (LS-2660) |
| Fixed | Replaces incorrect icon in the signature picker with the correct one. (LS-2663) |
| Fixed | Disables by default Hazelcast telemetry feature to prevent outbound analytics connection.; (LS-2757) |
| Type | Change |
|---|
| Fixed | Disables by default Hazelcast telemetry feature to prevent outbound analytics connection. (LS-2757) |
| Type | Change |
|---|
| Fixed | Disables by default Hazelcast telemetry feature to prevent outbound analytics connection. (LS-2757) |
| Type | Change |
|---|
| Fixed | Fixes company logo in email template that was not resized correctly in some email clients. (LS-1726) |
| Fixed | Fixes issue where signatory's inbox could not be loaded if it contains a signing requested submitted through APIs that was previously removed from the signing room. (LS-2752) |
| Fixed | Fixes issue with identification workflow, where signatory is getting access denied in case he's already member of the signing room as a manager (LS-2753) |
| Type | Change |
|---|
| Fixed | Fixes issue where signature can't be manually positioned on document previously prepared but reopened in a later stage. (LS-2747) |
| Fixed | Fixes issue when visual signatures are not synchronized . (LS-2747) |
| Fixed | Handles server error with a dedicated user message when an error occurs due to outdated request status. (LS-2750) |
| Fixed | Adds missing button in document preview mode to let user start signing. (LS-2632) |
| Fixed | Fixes UI glitch with step indicator in mobile view which was overlapping the document view. (LS-2600) |
| Type | Change |
|---|
| Added | Adds possibility to remove badge count attribute from notifications for improved performance. (LS-2736) |
| Type | Change |
|---|
| Fixed | Fixes issue where visual signature not applied to the document if user has selected a preferred signature. (LS-2742) |
| Type | Change |
|---|
| Added | Redirects user to the signing client within browser page and redirects user back to previous page when user has completed or canceled signature. (LS-2562) |
| Added | Adds static configuration to restrict workflow usage per API (signing room / SCS). (LS-2384) |
| Added | Adds static configuration to restrict workflow usage per organisation. (LS-2571, LS-2574) |
| Changed | Hide organisation name from manager's signing room list when it is part of the public organisation. (LS-2665) |
| Fixed | Enhancements of signing room and inbox view for mobile browsers. (LS-2561) |
| Fixed | Fixes signing room settings initialization issue. (LS-2701) |
| Type | Change |
|---|
| Added | Adds possibility to skip existing signature verification check when new response is received, to support use case such as multi signature for documents prepared for electronic signature mode. (LS-2278) |
| Type | Change |
|---|
| Added | Enhances UI and UX for desktop and mobile browsers. (LS-1508) |
| Added | Enhances visual signature selection, with possibility for a user to store preferred signature. (LS-2424) |
| Added | Adds web resource caching for faster initialisation on desktop and mobile browsers. (LS-2691) |
| Changed | Nutrient (formerly known as PSPDFKit) upgraded to version 1.3.0. Licence key shall be updated. |
| Changed | websign.pspdfkit-license-key replaced by websign.nutrient-license-key. |
| Removed | Removes websign.pdf-annotations-enabled application property and associated feature |
| Type | Change |
|---|
| Fixed | Fixes issue where authentication view not displayed in correct language when process started from web client. (LS-2684) |
| Type | Change |
|---|
| Fixed | Fixes company logo in email template that was not resized correctly in some email clients. (LS-1726) |
| Fixed | Fixes issue where signatory's inbox could not be loaded if it contains a signing requested submitted through APIs that was previously removed from the signing room. (LS-2752) |
| Fixed | Fixes issue with identification workflow, where signatory is getting access denied in case he's already member of the signing room as a manager (LS-2753) |
| Type | Change |
|---|
| Added | Adds possibility to skip existing signature verification check when new response is received, to support use case such as multi signature for documents prepared for electronic signature mode. (LS-2278) |
| Added | Adds possibility to remove badge count attribute from notifications for improved performance. (LS-2736) |
| Type | Change |
|---|
| Fixed | Fixes issue where authentication view not displayed in correct language when process started from web client. (LS-2684) |
| Type | Change |
|---|
| Added | Adds support of LDAP authentication for superadmin users. (LS-1000) |
| Added | Adds possibility to bind a SwissID account to a user account from the internal IdP or a third-party IdP, allowing to use Qualified Electronic Signature from SwissSign by any account. (LS-2380) |
| Added | Adds possibility to create new signature fields on a PDF document using SCS API. (LS-2483) |
| Added | Adds support to Microsoft GraphAPI as an alternative to SMTP for sending e-mails. (LS-2545) |
| Added | Enhances identification workflows to support identity renewal. (LS-2555) |
| Changed | Logging enhancements (downgrading verbose logs). (LS-1450) |
| Changed | Component upgraded to Spring Boot 3.4.x. (LS-2474) |
| Type | Change |
|---|
| Changed | Component upgraded to Spring Boot 3.4.x. (LS-2474) |
| Type | Change |
|---|
| Changed | Component upgraded to Spring Boot 3.4.x. (LS-2474) |
| Type | Change |
|---|
| Changed | Component upgraded to Spring Boot 3.4.x. (LS-2474) |
| Type | Change |
|---|
| Changed | Component upgraded to Spring Boot 3.4.x. (LS-2474) |
| Type | Change |
|---|
| Changed | Component upgraded to Spring Boot 3.4.x. (LS-2474) |
| Type | Change |
|---|
| Added | Adds possibility to create and enable to groups a new Web Application, that can be used for Web Notifications. (LS-2493) |
| Added | Adds possibility to configure Firebase push notification for Web Applications. (LS-2494) |
| Added | Adds REST APIs to register and unregister push notification token for a Web Notification. (LS-2496) |
| Added | Adds REST APIs to send notification to a specific application. (LS-2497) |
No changes
| Type | Change |
|---|
| Fixed | Adds additional logs when new device is enrolled and new session is established. (LS-2583) |
| Type | Change |
|---|
| Fixed | Implements retry mechanism when loading WEBSITE contract in case DNS can't be resolved at first time by the WebView. (LS-2565) |
| Type | Change |
|---|
| Added | Adds possibility to skip previous signatures verification when getting response from a client to prevent issue for workflow that is flattening the document prior signature. (LS-2278) |
| Type | Change |
|---|
| Fixed | Fixes PDF signature dictionary parsing issue which was preventing signing specific flattened documents. LS-2544 |
| Type | Change |
|---|
| Fixed | Adds additional logs when new device is enrolled and new session is established. (LS-2499) |
| Type | Change |
|---|
| Added | Adds new assistant permission in signing room, with lower access rights than a manager to prevent destructive operations. (LS-1721) |
| Added | Adds possibility to prevent an administrator from managing other administrators of its organisation. (LS-1718) |
| Added | Adds support tools for an administrator, to manage users of its organisation (visibility limited to users with at least one permission). (LS-1719) |
| Added | Enhances signing room usage view from administrator console to show more information about data currently containing in the signing room. (LS-1720) |
| Added | Automatically refresh documents view in signing room when window is resumed from background. (LS-2252) |
| Added | Adds search input in the signing room list from the manager console. (LS-2253) |
| Added | Adds support for Jaeger tracing platform. (LS-1458) |
| Added | Adds warning banner when no workflow is enabled for a signing room. (LS-2255) |
| Added | Displays signing request initiator in the documents list. (LS-2436) |
| Changed | User permissions in signing room are moved in a dedicated settings view. (LS-1725) |
| Changed | Uploading document from the UI now sends a multipart form data request instead of JSON request body. (LS-2305) |
| Fixed | Fixes duplicated call to the backend while opening support tools. (LS-2490) |
| Fixed | Fixes Signing Room User endpoint to correctly return users with expected permission when the filter manager was set, excluding users with pending invitation. (LS-2510) |
| Type | Change |
|---|
| Fixed | Stores large objects in PostgresSQL as oid instead of text to prevent issues when running vacuumlo tool. (LS-2194) |
| Removed | Removed support for Entrust signing services |
| Type | Change |
|---|
| Fixed | Stores large objects in PostgresSQL as oid instead of text to prevent issues when running vacuumlo tool. (LS-2194) |
| Type | Change |
|---|
| Added | Exposes attribute mobileApplicationIdentifier from the EnrollmentData projection, to identify the app bound to the enrollment data. (LS-2456) |
| Added | Adds mobileApplicationIdentifier filtering for /{username}/enrollmentData endpoint. (LS-2456) |
| Type | Change |
|---|
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.9, Common-IO 2.18.0 (LS-1933, LS-2174, LS-2288) |
| Type | Change |
|---|
| Fixed | Fixes issue where inbox cannot be opened if it contains a signing request submitted by API and previously removed from the signing room. (LS-2518) |
| Fixed | Fixes issue with identification workflow, where signatory is getting access denied in case he’s already member of the signing room as a manager (LS-2753) |
| Type | Change |
|---|
| Added | Adds possibility to skip existing signature verification check when new response is received, to support use case such as multi signature for documents prepared for electronic signature mode. (LS-2278) |
| Type | Change |
|---|
| Fixed | Fixes PDF signature dictionary parsing issue which was preventing signing specific flattened documents. LS-2544 |
| Type | Change |
|---|
| Fixed | Fixes pagination issue in support tools when page is refreshed. (LS-2230) |
| Fixed | Fixes race condition issue that prevent a manager accepting an invitation when single invitation flag is enabled for an organization, and user has multiple pending invitations from different signing rooms. (LS-2486) |
| Fixed | Fixes issue where cancel button doesn't work properly in new request modal when a request is being sent. (LS-2485) |
| Type | Change |
|---|
| Fixed | Enhancing authentication modal for desktop and mobile devices to support signing service requiring larger space. (LS-2491) |
| Type | Change |
|---|
| Fixed | Fixes pagination issue in support tools when result is filtered by a search query. (LS-2457) |
| Fixed | Fixes sanitization of email address input field in submit request modal to avoid invalid invitations. (LS-2437) |
| Type | Change |
|---|
| Changed | Uses different label keys for the buttons on the error screen to allow for customization in customer projects. (LS-2438) |
| Type | Change |
|---|
| Fixed | Updates third-party dependency to fix IPv6 addresses parsing issue. (LS-2439) |
| Type | Change |
|---|
| Added | SwissID integration: configures account email as login hint parameter to support upcoming changes of the SwissSign Qualified Electronic Service . (LS-1808) |
| Fixed | Fixes invalid german label in Terms and Conditions screens (placeholder not correctly replaced). (LS-2358) |
| Type | Change |
|---|
| Fixed | Fixes invalid signing client state by preventing user to modify the visual signature while the document is not in edition mode. (LS-2308) |
| Type | Change |
|---|
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.9. (LS-2288) |
| Fixed | Fixes a regression where a new user cannot sign up when Hazelcast is enabled. (LS-2307) |
| Fixed | Fixes ACL inconsistencies when manager permissions is being revoked from the superadmin tools. (LS-2316) |
| Type | Change |
|---|
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.9. (LS-2288) |
| Fixed | Fixes an issue in the PAdES LTV extension process that failed when the document being extended contained an existing signature with a revoked or expired certificate. (LS-2317) |
| Type | Change |
|---|
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.9. (LS-2288) |
| Type | Change |
|---|
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.9. (LS-2288) |
| Type | Change |
|---|
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.9. (LS-2288) |
| Type | Change |
|---|
| Fixed | Fixes regression with Admin APIs that wrongly map HTTP 404 response code into HTTP 401. (LS-2286) |
| Type | Change |
|---|
| Added | Enhances synchronousRss workflow to support ENVELOPE contracts. (LS-1637) |
| Added | Adds new sms-auth signing service with hash signing and LTV capability that aims to replace rssWithSmsAuth workflow. (LS-2216, LS-1261) |
| Fixed | Fixes an issue in the PAdES LTV extension process that failed when the document being extended contained an existing third-party signature that does not support LTV extension. (LS-2291) |
| Type | Change |
|---|
| Fixed | Fixes an issue with SCS polling APIs that failed to retrieve the signature status for batch PDF signing requests when the envelope was rejected by the user. (LS-2323) |
| Type | Change |
|---|
| Fixed | Fixes issue with visual mark applied upside down on document with custom page orientation and when disableFormFilling is set to true. (LS-2268) |
| Type | Change |
|---|
| Fixed | Fixes regression that prevent user from opening a document for signature when signing-invitation-protection is set to NONE. (LS-2256) |
| Type | Change |
|---|
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.8, Common-IO 2.18.0 (LS-1933, LS-2174) |
| Fixed | Swisscom SMS Gateway: adds missing attribute sent to the SMRequest. (LS-2186) |
| Fixed | Fixes a front-end issue that prevented managers from submitting multiple large file documents even though the size limit was not reached. (LS-1699) |
| Fixed | Fixes issue where whitelabelled error page was displayed when a non-SwissID accepts an identification workflow document. (LS-1851) |
| Type | Change |
|---|
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.8, Common-IO 2.18.0 (LS-1933, LS-2174) |
| Type | Change |
|---|
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.8, Common-IO 2.18.0 (LS-1933, LS-2174) |
| Type | Change |
|---|
| Added | Adds possibility to configure a default authentication provider to ensure no document can be accessed without explicit user authentication. (LS-1704) |
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.8, Common-IO 2.18.0 (LS-1933, LS-2174) |
| Fixed | Fixes issue where a document prepared for electronic signature mode can't be signed when disableFormFilling mode is enabled. (LS-1934, LS-1692) |
| Type | Change |
|---|
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.8, Common-IO 2.18.0 (LS-1933, LS-2174) |
| Fixed | Swisscom SMS Gateway: adds missing attribute sent to the SMRequest. (LS-2186) |
| Type | Change |
|---|
| Added | Adds T&Cs versioning, allowing an IT administrator to force all users accepting again new terms and conditions. (LS-1647) |
| Added | Adds support of Swisscom SMS Gateway as SMS provider. (LS-1672) |
| Added | Adds optional company name entry in the billing address. (LS-1670) |
| Fixed | Fixes Drag & Drop feature to upload files to be added to a signing request. (LS-1684) |
| Fixed | Fixes issue where users can't log in properly in the minutes following an attempt of signing an identification request. (LS-1685) |
| Fixed | Fixes regression of 2024.2.0 that was not serializing Paged object properly (sort attribute wrongly encapsulated in an array). (LS-1844) |
| Fixed | Fixes UI glitches on buttons present in modal. (LS-1584) |
| Fixed | Fixes the clickable area of the Add Documents button in the Submit Request modal. (LS-1674) |
| Fixed | Adds error message when an uploaded file is being rejected by the malware scanner. (LS-1232) |
| Fixed | Enhances data retention scheduled task to avoid database locks when large amount of requests have to be removed at once. (LS-1809) |
| Fixed | Fixes database constraint prevent a pricing plan to be activated on multiple organization. (LS-1878) |
| Removed | Removes the legacy custom Tomcat proxy configuration that rewrote the host using the public URL. This mechanism must now be handled by a proper reverse proxy configuration. (LS-1907) |
| Type | Change |
|---|
| Added | Adds support of SMS Auth OAuth2 provider to force user to authenticate with SMS before accessing the document. (LS-1653) |
| Changed | Minor UI optimizations to enable new branding customizations. (LS-1650) |
| Type | Change |
|---|
| Added | Adds support of Swisscom SMS Gateway as SMS provider. (LS-1672) |
| Added | Adds new OAuth Authorization server mode to allow standard OAuth user authentication using SMS OTP. (LS-1652) |
| Type | Change |
|---|
| Changed | Downgrades Java to version 17 to match official Android support. (LS-1648) |
| Type | Change |
|---|
| Fixed | Fixes occasional crashes on iOS 18. (LS-1666) |
| Type | Change |
|---|
| Added | Forwards loginHint attribute of SwissID users to the workflow engine to provide support to the SwissSign Wallet. (LS-1808) |
| Fixed | Fixes race condition issue that prevent a manager accepting an invitation when single invitation flag is enabled for an organization, and user has multiple pending invitations from different signing rooms. (LS-2486) |
| Fixed | Fixes pagination issue in support tools when result is filtered by a search query. (LS-2457) |
| Fixed | Fixes pagination issue in support tools when page is refreshed. (LS-2230) |
| Type | Change |
|---|
| Fixed | Update third-party dependency to fix IP Address parsing issue preventing user with an IPv6 to open a session from a mobile device. (LS-2439) |
| Type | Change |
|---|
| Fixed | Enhancing authentication modal for desktop and mobile devices to support signing service requiring larger space. (LS-2491) |
| Type | Change |
|---|
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.9, Common-IO 2.18.0 (LS-1933, LS-2174, LS-2288) |
| Fixed | Fixes issue where error page was displayed when a non-SwissID accepts an identification workflow document. (LS-1851) |
| Fixed | Fixes regression that prevent user from opening a document for signature when signing-invitation-protection is set to NONE. (LS-2256) |
| Fixed | Fixes regression with Admin APIs that wrongly map HTTP 404 response code into HTTP 401. (LS-2286) |
| Fixed | Fixes ACL inconsistencies when manager permissions is being revoked from the superadmin tools. (LS-2316) |
| Fixed | Fixes an issue with SCS polling APIs that failed to retrieve the signature status for batch PDF signing requests when the envelope was rejected by the user. (LS-2323) |
| Type | Change |
|---|
| Added | Enhances synchronousRss workflow to support ENVELOPE contracts. (LS-1637) |
| Added | Adds new sms-auth signing service with hash signing and LTV capability that aims to replace rssWithSmsAuth workflow. (LS-2216, LS-1261) |
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.9, Common-IO 2.18.0 (LS-1933, LS-2174, LS-2288) |
| Fixed | Fixes an issue in the PAdES LTV extension process that failed when the document being extended contained an existing third-party signature that does not support LTV extension. (LS-2291) |
| Fixed | Fixes an issue in the PAdES LTV extension process that failed when the document being extended contained an existing signature with a revoked or expired certificate. (LS-2317) |
| Type | Change |
|---|
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.9, Common-IO 2.18.0 (LS-1933, LS-2174, LS-2288) |
| Type | Change |
|---|
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.9, Common-IO 2.18.0 (LS-1933, LS-2174, LS-2288) |
| Fixed | Disables signature management tool when document is not in edition mode to prevent inconsistent behaviour. (LS-2308) |
| Type | Change |
|---|
| Changed | Third-party dependencies upgrade : Spring Boot 3.3.9, Common-IO 2.18.0 (LS-1933, LS-2174, LS-2288) |
| Type | Change |
|---|
| Fixed | Fixes Drag & Drop feature to upload files to be added to a signing request. (LS-1684) |
| Fixed | Fixes issue where users can't log in properly in the minutes following an attempt of signing an identification request. (LS-1685) |
| Fixed | Fixes file size constraint in the UI preventing users to multiple large files in separated requests. (LS-1699) |
| Fixed | Fixes regression of 2024.2.0 that was not serializing Paged object properly (sort attribute wrongly encapsulated in an array). (LS-1844) |
| Fixed | Fixes UI glitches on buttons present in modal. (LS-1584) |
| Fixed | Fixes the clickable area of the Add Documents button in the Submit Request modal. (LS-1674) |
| Fixed | Adds error message when an uploaded file is being rejected by the malware scanner. (LS-1232) |
| Fixed | Enhances data retention scheduled task to avoid database locks when large amount of requests have to be removed at once. (LS-1809) |
| Type | Change |
|---|
| Changed | Downgrades Java to version 17 to match official Android support. (LS-1648) |
| Type | Change |
|---|
| Fixed | Fixes occasional crashes on iOS 18. (LS-1666) |
| Type | Change |
|---|
| Changed | Component upgraded to Spring Boot 3.3.x. (LS-1538) |
| Added | Adds possibility for an administrator to force a user accepting an invitation with an OIDC account matching the invitation email. (LS-1119) |
| Added | Enhances support tools with the possibility to view and revoke user permissions . (LS-1472) |
| Added | Enhances support tools with the possibility to view logs of signatures made by a user. (LS-1473) |
| Added | Enhances support tools with the possibility to view and manage devices of a user. (LS-1587) |
| Added | Adds possibility to force the OTP code sent by SMS to a magic number (0000) to ease testing . (LS-1548) |
| Added | Integrates SwissID Identity Step Up allowing to prompt users to get a remote identification for workflows requiring a verified identity. (LS-1602) |
| Added | Adds new identification workflow to ease remote onboarding use cases with SwissID (LoT1 and LotT2). (LS-1605) |
| Added | Enhances SCS APIs with the possibility to customize the behaviour of the signing web client (allow print, allow download and allow sign all features). (LS-1577) |
| Added | Enhances SCS APIs with the possibility to send multiple PDF documents at once for electronic signature use case. (LS-1547) |
| Changed | Manager's documents view updated with enhanced UI for uploading signing request. (LS-1604) |
| Fixed | Fixes issue where a manager can't send invitation reminder to a pending signatory. (LS-1568) |
| Fixed | Updates labels in the popup suggesting the manager to sign the documents recently submitted. (LS-1662) |
| Fixed | Fixes issue where the signing room name was not correctly updated after being renamed by a manager. (LS-1356) |
| Type | Change |
|---|
| Changed | Component upgraded to Spring Boot 3.3.x. (LS-1538) |
| Type | Change |
|---|
| Changed | Component upgraded to Spring Boot 3.3.x. (LS-1538) |
| Type | Change |
|---|
| Added | Adds support for Hazelcast. (LS-1578) |
| Added | Adds possibility to enable download and print options for a PDF using contract's meta data. (LS-1576) |
| Added | Adds possibility to disable sign all feature using contract's meta data. (LS-1576) |
| Changed | Component upgraded to Spring Boot 3.3.x. (LS-1538) |
| Type | Change |
|---|
| Added | Adds support for Hazelcast. (LS-1578) |
| Added | Adds possibility to force the OTP code sent by SMS to a magic number (0000) to ease testing . (LS-1548) |
| Changed | Component upgraded to Spring Boot 3.3.x. (LS-1538) |
| Fixed | Fixes vulnerability issue on the management API endpoint that can be used with invalid credentials. (LS-1693) |
| Type | Change |
|---|
| Changed | Component upgraded to Spring Boot 3.3.x. (LS-1538) |
| Type | Change |
|---|
| Changed | Ground work for Spring Boot 3.3.x upgrade. The component still runs Spring Boot 2.7.18. (LS-1538) |
| Type | Change |
|---|
| Fixed | Fixes crash when trying to sign PDF document and back-end server is still version 2.16.x or older. (LS-1565) |
| Type | Change |
|---|
| Changed | Updates SDK and build tools to iOS 18 / XCode 16. (LS-1588) |
| Fixed | Fixes crash when trying to sign PDF document and back-end server is still version 2.16.x or older. (LS-1581) |
| Type | Change |
|---|
| Fixed | Enhances data retention scheduled task to avoid database locks when large amount of requests have to be removed at once. (LS-1809) |
| Type | Change |
|---|
| Fixed | Fixes vulnerability issue on the management API endpoint that can be used with invalid credentials. (LS-1693) |
| Added | Adds support for Hazelcast. (LS-1578) |
| Type | Change |
|---|
| Added | Adds support for Hazelcast. (LS-1578) |
| Type | Change |
|---|
| Fixed | Update third-party dependency to fix IP Address parsing issue preventing user with an IPv6 to open a session from a mobile device. (LS-2439) |
| Type | Change |
|---|
| Changed | Downgrades Java to version 17 to match official Android support. (LS-1648) |
| Type | Change |
|---|
| Fixed | Fixes issue where a manager can't send invitation reminder to a pending signatory. (LS-1568) |
| Type | Change |
|---|
| Fixed | Support proxy-related system properties (http.proxyHost, http.proxyPort, http.nonProxyHosts) for TSA and CRL/OCSP related requests (LTV). (LS-1556) |
| Type | Change |
|---|
| Fixed | Improved data loading performance when browsing audit trail entries from the GUI. (LS-1569, LS-1574) |
| Type | Change |
|---|
| Fixed | Fixes crash when trying to sign PDF document and back-end server is still version 2.16.x or older. (LS-1565) |
| Type | Change |
|---|
| Fixed | Fixes crash when trying to sign PDF document and back-end server is still version 2.16.x or older. (LS-1581) |
| Type | Change |
|---|
| Added | Adds standalone tool to ease migration/copy of file storage (filesystem/s3) from one destination to another. Includes utility to search and delete orphan files that are not referenced anymore in the database. (LS-1443) |
| Added | Adds new support view for superadmin console to list all users registered into the system, browse their signing rooms and provide possibility to remove a user from the room (LS-1462, LS-1463, LS-1464, LS-1471) |
| Added | Enhances Signature Creation Service (SCS) APIs with the possibility to configure the signature client with a redirection URL, that will be loaded in the user's browser after signature. (LS-1511) |
| Added | Adds MDC logging to all logs from the server, including the username performing the action, its IP address and a request ID. (LS-1305) |
| Changed | Updates Java to version 21. (LS-1429) |
| Type | Change |
|---|
| Added | Enhances synchronousRss workflow with the possibility to apply an electronic seal without certification permission. (LS-1561) |
| Added | Development of a new standalone tool to ease migration/copy of file storage (filesystem/s3) from one destination to another. Includes utility to search and delete orphan files that are not referenced anymore in the database. (LS-1443) |
| Added | Adds MDC logging to all logs from the server, including the username performing the action, its IP address and a request ID. (LS-1305) |
| Changed | Updates Java to version 21. (LS-1429) |
| Type | Change |
|---|
| Added | Adds MDC logging to all logs from the server, including the username performing the action, its IP address and a request ID. (LS-1305) |
| Changed | Updates Java to version 21. (LS-1429) |
| Type | Change |
|---|
| Added | Adds possibility to force user going through an authorization flow with an identity provider (OAuth2, OpenID Connect) when accessing a document. (LS-1455) |
| Changed | Updates Java to version 21. (LS-1429) |
WARNING: Known issue: this version can't be used to sign PDF contracts with a back-end older than version 2024.0.0. This issue will be fixed in the upcoming maintenance release
| Type | Change |
|---|
| Added | Adds possibility to redirect user to another application after signing contract. (LS-1416) |
| Added | Visual mark applied to PDF are now generated server-side for a consistent rendering across platforms. (LS-1328) |
| Changed | Adds support for AGP 8 and latest Android build tools, upgrades Java to version 21. (LS-1388) |
WARNING: Known issue: this version can't be used to sign PDF contracts with a back-end older than version 2024.0.0. This issue will be fixed in the upcoming maintenance release
| Type | Change |
|---|
| Added | Adds possibility to redirect user to another application after signing contract. (LS-1417) |
| Added | Visual mark applied to PDF are now generated server-side for a consistent rendering across platforms. (LS-1329) |
| Fixed | Fixes issue that prevent URL from WEBSITE contract type to be loaded through the proxy server. (LS-1549) |
| Type | Change |
|---|
| Fixed | Enhances data retention scheduled task to avoid database locks when large amount of requests have to be removed at once. (LS-1809) |
| Type | Change |
|---|
| Fixed | Fixes vulnerability issue on the management API endpoint that can be used with invalid credentials. (LS-1693) |
| Type | Change |
|---|
| Fixed | Fixes occasional crashes on iOS 18. (LS-1666) |
| Type | Change |
|---|
| Fixed | Fixes issue where a manager can't send a reminder to a user with pending invitation. (LS-1568) |
| Type | Change |
|---|
| Fixed | Improves performance while browsing the audit trail with large amount of audit trail entries. (LS-1569) |
| Type | Change |
|---|
| Fixed | Updates synchronousRss workflow to add the possibility to not set any DocMDP permission to the document (standard seal instead of Certification). (LS-1561) |
| Fixed | Support proxy-related system properties (http.proxyHost, http.proxyPort, http.nonProxyHosts) for TSA and CRL/OCSP related requests (LTV). (LS-1556) |
| Type | Change |
|---|
| Fixed | Fixes WEBSITE contract type that were not loaded through the server proxy. (LS-1549) |
| Fixed | Uses username as default name for PDF visual signature when firstname and lastname is not provided. (LS-1560) |
| Type | Change |
|---|
| Added | Adds support to Hazelcast for distributed session. (LS-1497) |
| Fixed | Fixes issue where data retention scheduling task was not removing signing request with CERTIFIED state after the data retention period configured. (LS-1412) |
| Fixed | Adds missing delivery options attributes in the signing request callback DTO. (LS-1434) |
| Fixed | Fixes incorrect german label. (LS-1535) |
| Fixed | Fixes regression from serialSignaturesWithElectronicSeal that prevent workflow to complete correctly. (LS-1540) |
| Fixed | Adds timezone in the signing report email. (LS-1432) |
| Type | Change |
|---|
| Added | Adds support to Hazelcast for distributed session. (LS-1497) |
| Type | Change |
|---|
| Added | Adds support to Hazelcast for distributed session. (LS-1497) |
| Type | Change |
|---|
| Fixed | Fixes parsing issue with specific PDF encoding that was preventing clients to submit response to the server. (LS-1491) |
| Fixed | Ignores inconsistent PDF signature dictionary from previous signatures when validating digital signature received from a client. (LS-1476) |
| Type | Change |
|---|
| Fixed | Fixes database migration 2024.0.0 that prevent user to download a signing request created before the migration. (LS-1441) |
| Fixed | Fixes regression from 2024.0.0 where a contract cannot be rejected with MS SQL Server database. (LS-1447) |
| Fixed | Fixes incorrect german translation for parallel signing labels and general improvements. (LS-1448, LS-1421) |
| Fixed | Prevents HTML injection in some user inputs by stripping HTML tag. (LS-1379) |
| Type | Change |
|---|
| Fixed | Fixes issue that was delaying the document availability in Let's Sign from 5 to 10 seconds after signature (Postgres SQL databases only). (LS-1414) |
| Fixed | Fixes issue where a document cannot be signed due to an error while adding LTV information into the document. (LS-1465) |
| Type | Change |
|---|
| Fixed | Fixes issue where not all documents of an envelope get signed with Sign All feature. (LS-1246) |
| Fixed | Forces white background to the visual signature when an image is selected to prevent a grey border to be visible around the image. (LS-1446) |
| Changed | Changes default date pattern displayed in the visual mark to be influenced by user's locale. (LS-1449) |
| Type | Change |
|---|
| Added | Adds possibility for an administrator to configure delivery options policy for a specific workflow. (LS-1209) |
| Added | Enhances SigningRequest API with the possibility of adding additional recipient allowed to download the signing document at the end of the process. (LS-1210) |
| Added | Adds possibility for a manager to add additional recipient allowed to download the signing request at the end of the process (if allowed by workflow's policy). (LS-1211) |
| Added | Adds possibility for a manager to select signing order (sequential or parallel) when creating a signing request. Parallel order means that all signatories can sign the document at the same time. (LS-1358) |
| Added | Enhances SCS APIs for doc signing with the possibility to retrieve a unique URL to the Web Client for signing the document from a browser. (LS-1289) |
| Changed | Implements a retry policy with exponential backoff strategy for callback sent to endpoints configured in REST APIs. (LS-334) |
| Fixed | Prevents downloading of unsupported documents (Adobe Dynamic XFA Forms, PDF documents not starting with %PDF prefix). (LS-1216, LS-772) |
| Fixed | Prevents Let's Sign from being automatically translated by built-in browser plugins to avoid misleading translations. (LS-1335) |
| Fixed | Adds support for adding signature fields into already signed documents in Document Upload API. (LS-1223) |
| Fixed | Updates database migration to allow upgrading directly from version 2.13.x and lower to version 2.15.x. (LS-1390) |
| Fixed | Update Docker images to use Tomcat 9.0.88 and JRE 11.0.23_9. (LS-1368, LS-1408) |
| Fixed | Fixes Upload Document API to prevent existing signature(s) of uploaded documents being erased when adding an additional signature field. (LS-1223) |
| Type | Change |
|---|
| Added | Adds new workflow for parallel signature. (LS-1317) |
| Added | Adds APIs to allow third-party developer to provide additional generic data to push notification sent to mobile devices. (LS-1265) |
| Added | Adds client APIs to allow SDKs to acquire and release lock for a contract. (LS-1352) |
| Fixed | Fixes custom font loading issues due to missing installed tools that prevent system to start up. (LS-1380) |
| Fixed | Fixes issue where only the last signature contains the revocation data (LTV) after the end of the signing process. (LS-1248) |
| Fixed | Fixes issue where visual signature could not be generated server-side if the a signature graphic is specified. (LS-1399) |
| Type | Change |
|---|
| Added | Adds new REST APIs for sending push notification to a user or a device. (LS-1266) |
| Fixed | Downgrades info/debug logs that were too verbose. (LS-1306) |
| Removed | Removes BRMS and Geolocation rules. (LS-1166) |
| Removed | Removes Distribution server module. (LS-1165) |
| Removed | Removes Analytics module. (LS-1241) |
| Removed | Removes In-House apps. (LS-1241) |
The following SDK features of the Security Server are now deprecated and will be removed in a future release from the back-end and the SDK:
- Single Sign-On
- User inactivity timeout
- Copy / Paste prevention
- Offline mode
| Type | Change |
|---|
| Added | Adds possibility to configure web app's locale when generating URL. (LS-1345) |
| Added | Adds support for parallel signature workflow. (LS-1361) |
| Fixed | Fixes issue where a user with a username containing 3 consecutives + characters cannot sign a document. (LS-1391) |
| Fixed | Shows error to the user when the prepared document is not accepted by the back-end (e.g rejected by malware scanner). (LS-1243) |
| Fixed | Fixes issue where form fields can still be edited when user needs to position its signature. (LS-1244) |
| Fixed | Fixes issue where not all documents of an envelope get signed with Sign All feature. (LS-1246) |
| Type | Change |
|---|
| Added | Adds support for parallel signature workflow. (LS-1354) |
| Changed | Adds Root Detection library to the app (previously in SmartContract SDK). (LS-1257) |
| Changed | Upgrades minSDK version to API 26 (Android 8.0). (LS-1357) |
| Removed | Removes unused appcenter binary from the app. (LS-1277) |
| Type | Change |
|---|
| Added | Adds support for parallel signature workflow. (LS-1355) |
| Changed | Adds Jailbreak detection library to the app (previously in SmartContract SDK. (LS-1258) |
| Fixed | Fixes issue where audit trail's signature are not valid due to iOS date time formatting. (LS-1331) |
Prior to version 2024.0.0, the Let's Sign and SmartContract projects were released separately. Their historical release notes are provided below.
| Type | Change |
|---|
| Fixed | Fixes custom font loading issues due to missing installed tools that prevent system to start up. |
| Fixed | Fixes issue where only the last signature contains the revocation data (LTV) after the end of the signing process. |
| Fixed | Fixes issue with synchronousRss workflow when IP address needs to be added to the audit trail |
| Type | Change |
|---|
| Changed | Web: Visual mark is now generated server-side |
| Fixed | Web: Fixes issue that prevent a user to sign a document if its username contains three consecutive '+' characters. |
| Fixed | Web: Fixes issue when using "Sign all" feature with envelope |
| Type | Change |
|---|
| Changed | Updates default branding and design updated |
| Type | Change |
|---|
| Changed | Web: Visual mark is now generated server-side |
| Type | Change |
|---|
| Fixed | Fixes regression from Document Upload API where document with new signatures fields could not be signed on a mobile app. Signature fields are now ignored for document containing a digital signature |
| Fixed | Updates database migration to allow upgrading directly from version 2.13.x and lower to version 2.15.x. |
| Fixed | Update Docker images to use Tomcat 9.0.88 and JRE 11.0.23_9 |
| Type | Change |
|---|
| Changed | Implements a retry policy with exponential backoff strategy for callback sent to endpoints configured in REST APIs |
| Fixed | Prevents downloading of unsupported documents (Adobe Dynamic XFA Forms, PDF documents not starting with %PDF prefix) |
| Fixed | Prevents Let's Sign from being automatically translated by built-in browser plugins to avoid misleading translations |
| Fixed | Adds support for adding signature fields into already signed documents in Document Upload API |
| Type | Change |
|---|
| Added | Added possibility for an admin and superadmin to see and copy into the clipboard the identifiers of the different objects (signing room, organization, etc.) |
| Fixed | Fixed PostFinance Checkout bean initialization that was sometimes missing on specific environments |
| Type | Change |
|---|
| Changed | Android, iOS: Updated default theme with new Let's Sign branding |
| Type | Change |
|---|
| Added | Added the ability to scan all input files on an ICAP server for malware. |
| Added | Added the signer's IP address to the Let's Sign audit trail report when enabled. |
| Added | Added support of PostFinance Checkout as new payment provider for pre-paid signature packs |
| Type | Change |
|---|
| Fixed | Fixed issue where the workflow engine may enter in particular rare circumstances in an infinite loop, flooding log files and audit trail with endless entries |
| Fixed | Updated Docker image for Tomcat to version 9.0.83 |
| Fixed | Fixed regression from v.2.14.2 where bad ACLs were granted to new signatories of an organisation with the single invitation setting enabled. |
| Type | Change |
|---|
| Fixed | Fixed public organization checkbox incorrect initialization in superadmin view |
| Fixed | Fixed incorrect german label |
| Type | Change |
|---|
| Fixed | iOS: Fixed issue where user input not correctly persisted in signed file when field input is still focused while accepting document. |
| Type | Change |
|---|
| Fixed | Fixed issue where signing room could not be deleted by an administrator if it contained a pending signing request assigned to a manager with a pending invitation. |
| Fixed | Returns proper error when API account is trying to fetch a signature from SCS APIs initiated by a different organisation. |
| Type | Change |
|---|
| Fixed | Web: Fixed visual rendering of the TEXT signature preview |
| Type | Change |
|---|
| Added | Uses, if available, the preferred first name (urn:swissid:first_name) for the SwissID OIDC provider. |
| Fixed | Fixed regression introduced in app version 2.13.0 where signing request could not be sent to new signatories if organization had enabled single invitation setting. |
| Fixed | Fixed an issue that prevented a signing room from being deleted if a document was recently uploaded. |
| Type | Change |
|---|
| Added | Web: Added possibility to disable sign allow feature with meta data signAllFeatureDisabled |
| Fixed | Web: Fixed edge case issue where document would not display correctly after using the Sign All feature. |
| Fixed | iOS: Fixed regression introduced in app version 2.22.0 where user could not draw or image signature anymore |
| Changed | Android: Fixed issue with SwissID Sign Qualified Electronic Signing service |
| Changed | Web: Improved user experience by moving reset button to a dedicated card |
| Type | Change |
|---|
| Added | Audit Trail: Added possibility to store in Audit Trail the IP Address of the device for each trail triggered by a client. |
| Changed | Web: Updated default theme with new Let's Sign branding |
| Type | Change |
|---|
| Added | Web/Android/iOS: Added possibility to restrict type of visual signature using meta data |
| Fixed | Android/iOS: Fixed gray border displayed around uploaded signature image |
| Fixed | iOS: Inconsistent Behavior of Back Button After Signature Application |
| Changed | Web: Updated default theme with new Let's Sign branding |
| Changed | Updated iOS application SDK to version 16 |
| Changed | Updated Android application target SDK to version 33 |
| Type | Change |
|---|
| Fixed | Fixed sign now functionality for managers when Inbox feature is disabled in system's configuration. |
| Type | Change |
|---|
| Fixed | Fixed encoding of responseID attribute sent in doc signing callback which did not use same encoding as returned from signaturesSignDoc API. |
| Type | Change |
|---|
| Added | Added multi-domain capability in SCS APIs |
| Added | Added confirmation hints in admin/superadmin views when an object has been saved |
| Changed | Admin: Signing rooms and related configuration not visible when only SCS profiles have been activated to the organisation |
| Changed | Remove email notification when managers send signing request to themselves. |
| Type | Change |
|---|
| Added | Added possibility to filter pending invitations by the manager permission flag |
| Added | Added possibility to send a signing request to a new user without having to initiate an invitation first |
| Added | Added doc signing capabilities in SCS APIs with callback and polling options to retrieve the signature status |
| Added | Added possibility to cancel a signature request using SCS APIs |
| Added | Added possibility to configure an automatic expiration timeout to signature request submitted through SCS APIs (doc and digest) |
| Type | Change |
|---|
| Fixed | Prevented a user to be selected multiple as a signatory |
| Fixed | Added hint indicating if user has a pending invitation while sending signing request |
| Fixed | Various security patches applied |
| Type | Change |
|---|
| Fixed | Web: Fixed gray border displayed around uploaded signature image |
| Fixed | Web: Fixed issue where first page pdf was displayed after placing visual signature |
| Fixed | Web: Fixed visual signature ratio that was not locked on resize |
| Fixed | Web: Fixed visual signature not correctly resized on document with landscape orientation |
| Type | Change |
|---|
| Added | Added possibility for a superadmin to select data storage to be used for an organisation (can be activated by configuration). |
| Added | Added possibility for a manager to browse and search all documents for a specific signatory |
| Added | Added possibility for a manager to download an audit report of a signing request (can be activated by configuration) |
| Added | Added possibility for a manager to see whether a selected signatory has already accepted the invitation into the signing room or not |
| Changed | Reminder and expiration notices are not sent at a fixed time on a daily basis anymore but at regular intervals based on signing request creation date. |
| Changed | Increased size of the drag and drop documents view |
| Fixed | Fixed placeholder's value in cancelation notice email |
| Fixed | Do not accept PDF document that are not eligible for signature (PDF permission dictionary restricts form filling or digital signature features) |
| Fixed | Fixed domain name restrictions input from admin settings that was discarding changes when input is loosing focus |
| Fixed | Removed duplicated scroller on document details view on Windows OS |
| Fixed | Fixed close button size on document details view |
| Fixed | Fixed issue where expiration notice was not sent at the time of the expiration |
| Fixed | Fixed rendering issue on administrator's GUI where icons become invisible when no workflow is configured for the organisation |
| Fixed | Restrict SameSite attribute for all cookies (Strict or Lax) |
| Type | Change |
|---|
| Added | Added possibility to filter signing requests per signatory |
| Added | Added new API in Signing Request endpoint to retrieve the signing invitation for a signatory |
| Added | Added new SignatureOptions attribute skipNotifications allowing to disable all email notifications for a signing request |
| Added | Added new SignatureOptions attribute sendIntermediateCallbacks to register for intermediate signing request callbacks in case of collective signature |
| Added | Added new endpoint for UploadDocument API /admin/api/v3/organizations/{organizationId}/rooms/{signingRoomId}/documents. The previous endpoint /admin/api/v3/documents is deprecated and will not be available in future API version |
| Changed | The state EXPIRED for a signing request introduced in 2.10.0 is now used for signing request's callback object |
| Fixed | Fixed search query for SigningRequest API that was not retrieving requests for signatories with a pending invitation. |
| Type | Change |
|---|
| Fixed | Web: Set 'SameSite=Strict' attribute for all cookies |
| Fixed | Web: Update Moment.js library to address vulnerability CVE-2022-24785 |
| Type | Change |
|---|
| Added | Added dedicated logs when signing request is being downloaded by a user |
| Added | Added additional logs when the system fails to process completed signing request callback |
| Fixed | Fixed issue where signing room from public organization could not be deleted by a manager |
| Fixed | Fixed issue where ZIP files containing signed documents for an envelope was corrupted |
| Changed | Prevent administrators from creating workflows using a SCS profile |
| Type | Change |
|---|
| Added | Added possibility to verify the presence of OIDC claims when user is logging in |
| Added | Update letssign-rss signing service to support Let's Sign SCS APIs |
| Fixed | Updated Apache Commons Text to address 0-day vulnerability CVE-2022-42889 |
| Fixed | Fixed My account's view initialization when opened on a slow network |
| Changed | Update base docker images in order to use Java 11.0.17_8 to address vulnerabilities CVE-2022-3602 and CVE-2022-3786 |
| Type | Change |
|---|
| Added | Expose new Signature Creation Service (SCS) APIs in OpenAPI |
| Changed | Marking SigningRoom-level APIs for digest signature as deprecated. Signature Creation Service API should be used as an alternative |
| Fixed | Fixed OpenApi definition for SigningRequestCallback model (invalid byte array attributes definition) |
| Fixed | Added missing Conflict (409) response code from Invitation API when trying to invite a user that is already member of the signing room |
| Fixed | Fixed wrong OpenApi definition for SignatureLog model (changed required attributes to nullable) |
| Type | Change |
|---|
| Added | Added warning to administrator when no workflow is configured in its organisation |
| Added | Added support for S3 files storage |
| Added | Added new EXPIRED state to signing requests to differentiate canceled and expired requests |
| Added | Added suffix to signed files downloaded from the GUI |
| Fixed | Fixed admin views that were wrongly displayed when windows was resized |
| Type | Change |
|---|
| Fixed | Fixed web client labels that were not translated upon language change |
APIs V2 are released. To take advantages of new APIs, the base path of the APIs must be updated from /admin/api/ to /admin/api/v2/.
The changes listed below are listing the differences.
- SmartContract iOS SDK: Fixes an issue where PKCS#7 signature generated by the SDK are not valid due to a bad date formatting when device is configured with 12 hours format.
- SmartContract iOS SDK: Fixes an issue where PKCS#7 signature generated by the SDK are not valid after the iOS app is uninstalled and reinstalled
- WYSIWYS Android SDK: Fixes issue where document cannot be loaded in read-only if application cache directory is not available
- WYSIWYS Android SDK: Fixes issue where document's state not correct after document being disposed
- Workflow Engine: Rejects invalid PCKS#7 signature received by client apps
- SmartContract Android SDK: Update SDK to make legacy SQLCipher dependency optional if the Secure Storage API (
Services#getSenseContext()) of the SDK is not used by the application. Dependency net.zetetic:android-database-sqlcipher can be safely excluded from the classpath.
- SmartContract Android SDK: Key generated by signing service are now invalidated by Operating System if a new biometric is enrolled in system settings
- SmartContract iOS SDK: iOS SDK upgraded to version 17
- Workflow Engine: Sends a silent notification to mobile devices when a contract is canceled to refresh notification badge
- Workflow Engine: Adds new API to generate visual mark for a given contract
- SmartContract SDK: Exposes new API to disenroll a user in the backend in addition to the client side.
- Web client: Adds possibility to disable form filling (read-only) documents by adding contract's metadata 'disableFormFilling'
- Workflow engine: Fixes issue where state machine falls into an endless loop if an unexpected error happened in callback action
- Web client: Adds option to disallow form filling for a document
- WYSIWYS SDK: Fixes issue where editable fields are not saved unless keyboard is dismissed
- SmartContract Android SDK: Added an option to disable alarms (PlayStore requirements)
- SmartContract SDK: Root/Jailbreak detection removed from the SDK
- SmartContract SDK: Crash reporter feature removed from the SDK
-
Workflow Engine: fixes an issue that could cause the workflow engine to go into an infinite loop when two different contracts are sent to the same users at exactly the same time due to a database deadlock.
-
Workflow Engine: handle correctly invalid JSON payload for envelope contracts
- WYSIWYS iOS SDK: Automatically saved text from text field if documents get signed while keyboard is displayed
- Workflow Engine / Web client: Adds possibility to binds an ICAP malware scanner to scan allow incoming data from REST APIs (back-ends / clients endpoints)
- Web client: Fixes auto generated signature font and padding
- WYSIWYS iOS SDK: Fixes issue where PDF form document is read-only if a another document was previously opened
- Web client: Allow to hide "Sign All" button through a contract's metadata
- Android / iOS clients: Added support of SwissID Sign signing provider
- Workflow Engine / Audit trail: Added possibility to log IP address of end-user in audit trail (disabled by default)
- Web client: Added possibility to open web client with multi pending contracts to be signed by a given repository (simple electronic signature workflows only)
- WYSIWYS SDK / Clients: Adds possibility to restrict the type of signature to be used by end-user at signing time
- Adds possibility to have stateless web client with file system or S3 storage support
- Web client: improves color contrast to be compliant with WCAG 2.0 rules
- Web client: shows a cancel button within the header when a redirect url is available for the given URL
- Audit Trail / Web Client / Security server: default branding updated
- Android SDK: Added support for Android API 33
- iOS SDK: Added support for iOS SDK 16
- WYSIWYS iOS SDK: Fixes 'No password saved' error when opening a new document due to concurrency issue with local database
- Updated PSPDFKit Web framework to latest minor release
- Updated Angular to 14.2.x
- Fixes issue on web client where a gray border was shown around visual signature generated with a JPEG image
- Fixes issue on web client where the read scrolls up to the first page after a document gets prepared
- Fixes issue on web client where visual signature not rendered correctly on document with specific orientation value
- Locks ratio of visual signature manually resized in web client
- Fixes issue where generic error page was displayed in web client instead of the document not found view
- Fixes CVE vulnerabilities by updating Twilio SMS library to version 9.4.0
- Adding possibility to store files related to a contract in different data storage (filesystem, S3 bucket)
- Fixes CVE-2022-24785 Vulnerability on Moment.js library
- Adding SameSite attribute with strict level to websign cookies
- Prevent mobile apps being able to override x-sense-* HTTP headers
- Add new workflow for remote digest signature
- Add new signing service supporting Let's Sign SCS APIs
- Add support for Amazon S3 storage as file storage system
- Update Spring Boot framework to version 2.7
- Web client: Fix issue where application does not load when username of the signatory starts with
+ character
- Workflow Engine: Fix issue while adding LTV extension to documents already signed by third-party apps
- Web client: Disable PDF form flattening before first signature of a document to allow post-processing of PDF document
- Web client: Fix issue where visual signature not correctly added in Electronic Signature mode
- Web client: Fix freeze issue when visual signature is removed using back button
- Web client: Add support for dynamic signature graphic in visual signature
- Web client: Fix signature description not correctly translated upon language change
- Built-in workflows: Fix issue with
synchronousRss workflow and DIGEST payload
- Built-in workflows: Fix error logging when canceling multi signature contracts
- Clients: Update default estimatedSignatureSize to 32767 to avoid PDF/A compatibility issues
- WYSIWYS iOS SDK: Fix crash with nested signatures fields
- Workflow Engine: Update Contract's DTO model to include the underlying child contracts created by the workflow
- Built-in workflows: Push notification enhancements (contract's id embedded in the push, added possibility to configure title and to skip notification through meta data)
- SMS Auth Workflow: Added support of Twilio SMS provider
- Audit trail: Added information about TSP and signature status in remote signature request events
- Clients: Updated PSPDFKit to latest minor releases
- Security server: added possibility to customize enrollment code format
- Security server: added possibility to configure a public store app as identification only
- Security server: added possibility to create domain without identities sync
- Security server: added possibility to create new security group
- Security server: added enrollment timestamp in EnrollmentData projection
- Security server: Fix issues with admin GUI when running in Tomcat 9.0.59+
- Security server: Add support for new apple store hostname in public stores configuration
No changes in this release
- Built-in Workflows: Added PAdES support for built-in workflows
- Built-in Workflows: Added support for adding LTV data to documents signed with built-in workflows
- Added support for Prometheus for all modules
- Web client: UX improvements
- Web client: Added possibility to redirect user to another website after a signature is complete
- Fix 0-day vulnerability (CVE-2022-22965)
No changes in this release
- WYSIWYS iOS SDK : Various fixes improving SDK stability
- WYSIWYS Android SDK: Expose SignatureMode class that was wrongly obfuscated
- Web client: Fix misplaced annotation after document flattening
- Web client: Fix storage issue with locally persisted visual signatures
- Web client: Fix CSP policy that prevent loading custom fonts from iFrame
- Web client: Fix label of "Close" button when editing signatures
- Built-in Workflows: Added possibility to prevent contract data from being deleted when processed
- Built-in Workflows: Added possibility to send an event to a contract to erase all data from the system
- Workflow Engine: Added APIs to manage visual signatures created by users
- Workflow Engine: Added OpenAPI specification for server APIs
- Built-in Workflows: Added new generic built-in workflows (rss, rssWithSmsAuth, synchronousRss) that can be used with any built-in signing service
- Android SDKs: Added support for Android API 30
- Clients: Added possibility to add multiple signatures per signatory on document specifically prepared for electronic signature
- Clients: Added visual signature synchronization between devices and platforms