Releases: Keeper-Security/Commander
Release 17.2.9
Keeper Commander release version v17.2.9
New Features
- Implemented
teams-app-setupcommand for Microsoft Teams integration - Added
launch_credentialssupport to pam project import and pam project extend commands - Added Kubernetes config generation to PAM import tooling
- Added example PAM import generator script
Improvements
- Fixed stdout/stderr separation for POSIX-compliant piping
- Upgraded
keeper_pam_webrtc_rsto >= 2.0.1
Bug Fixes
- Suppressed noisy "Successfully authenticated with Persistent Login" message in batch mode
- Fixed aging row mapping bug that could map aging columns to wrong records when rows had identical content
- Fixed staleness scope for filtered compliance queries to prevent full enterprise sync on filtered runs
- Fixed MSP node resolution and enforcement JSON output
Full Changelog: v17.2.8...v17.2.9
Release 17.2.8
Keeper Commander release version v17.2.8
New Features
- Added --aging flag to compliance report with record aging data (created, last_modified, last_rotation, last_pw_change)
- Added --username and --team filters to all compliance subcommands
- Added --resolve-teams flag to sfr and team-report for expanding team filter to individual team members
- Added pam project extend command
- Added --keeper-db-proxy (-kdbp) flag to pam tunnel edit for pamDatabase records
- Added --launch-user (-lu) flag to pam connection edit for setting launch credentials
- Updated SaaS commands to use new saasConfiguration record type
- Added Enforcement and Managed Node Details to enterprise-info Roles output
Improvements
- Incremental compliance data sync with per-user staleness tracking to avoid full re-fetches on warm cache
- Per-user cache invalidation for filtered compliance reports — only stale users are fetched from the API
- Dynamic chunking with probe timeouts for preliminary compliance data fetching
- Client-side request timeouts to prevent indefinite hangs during compliance sync
- Enterprise and MSP command improvements
Bug Fixes
- Fixed trickle ICE handling for pam launch command
- Fixed lsf returning "No shared folders found" when no search string was provided
- Fixed cc and ls commands to restore regex search behavior
- Fixed invalid base64 handling
- Fixed ACL lookup skipping for configuration records (which have no parent)
- Prevented PAM records from being used in One-Time Shares
- Filtered false-positive record_password_change events in compliance report (first-set events discarded)
Full Changelog: v17.2.7...v17.2.8
Release 17.2.7
Keeper Commander release version v17.2.7
New Features
- Added JIT (Just-In-Time) and AI features to PAM project import
Improvements
- Improved Gateway lookup - when missing or not shared, fallback to
pam/get_configuration_controllerAPI - Updated commander help and command list validation logic to include aliases
Bug Fixes
- Fixed
pam action debug infowhen viewing a PAM configuration - Fixed duplicate attachments during
slack-app-setup - Fixed GitHub Issues #1783 & #1791
- Fixed websocket connection timing for newer websockets library
- Quieted noisy logs and added checked fields
Full Changelog: v17.2.6...v17.2.7
Release 17.2.6
Keeper Commander release version v17.2.6
New Features
supershell: claude-code-like interface for executing commands- CLI search: token-based matching by default (tokens can appear in any order)
- Service mode:
--self-destruct-flagnow returns share-url response
Improvements
supershell: enhanced focus indicators with green left border showing active panesupershell: improved text selection with double-click word selection and auto-copysupershell: vim-style scrolling (j/k, Ctrl+d/u) in shell output panesupershell: improved help screen with consistent theme-aware colorsaction-report: use fetch_audit_event function to query events
Bug Fixes
- Fixed
supershellcopy, batch mode output, and ngrok domain handling
Full Changelog: v17.2.5...v17.2.6
Release 17.2.5
Keeper Commander release version v17.2.5
Improvements
- Discovery: bug fixes and improvements
msp update: improvementspam launch: establish ssh sessions with ssh key credentials only- Automate Docker-Service Mode & Slack app configuration
- Fix compliance-report chunking for >5000 users
- Enterprise command improvements and bug fixes
Full Changelog: v17.2.4...v17.2.5
Release 17.2.4
Keeper Commander release version v17.2.4
Improvements
- Batch Mode: do not write help information to stdout
Full Changelog: v17.2.3...v17.2.4
Release 17.2.3
Keeper Commander release version v17.2.3
Improvements
- Service mode bug fixes
Full Changelog: v17.2.2...v17.2.3
Release 17.2.2
Keeper Commander release version v17.2.2
New Features
- SuperShell: a full screen TUI vault browser
pam launchcommand: launches a connection to a PAM resource- Reset password during login flow
Improvements
compliance report: bug fixes and improvements- Discovery: Rule Engine Changes
Full Changelog: v17.2.1...v17.2.2
Release 17.2.1
Keeper Commander release version v17.2.1
New Features
- QRC implementation using MLKEM
- Added
healthchecksupport in service mode
Improvements
- KEPM addon support for MSPs
record-historycommand: JSON outputpedm scimcommand: make password argument optional
Full Changelog: v17.2.0...v17.2.1
Release 17.2.0
Keeper Commander release version v17.2.0
New Features
pedm scimcommand: populates KEPM collections with Azure and AD users and groups- Gateway scaling
Improvements
- Graph endpoints refactoring
Full Changelog: v17.1.18...v17.2.0