Summer (Q3) 2025 Release

Secret Server on Platform

  • AWS Secret Manager Integration (now in GA) – Unify and automate AWS secret management with Delinea Vault.

    • Centralized Management of AWS Secrets – Use the Delinea Vault as a single source of truth for AWS Secrets.

    • Master Secret Linking – Link a master secret from the Delinea Vault to Azure and/or AWS Cloud secrets for unified management.

    • Secret Lifecycle Management – Easily handle the full lifecycle of secrets with centralized management, including updates and automated rotations to maintain security and compliance.

    • Learn more about this capability at AWS Secret Manager.

  • External Secrets (now in GA) – Discover and manage external vaults effortlessly with centralized, multi-vault operations.

    • Auto-List and Manage External Vaults: Automatically discover all external vaults with a single connection.

    • Seamless Multi-Vault Management: Manage multiple vaults and secrets, including bulk operations, for improved efficiency.

    • Learn more about this update at External Secrets.

  • Platform Upgrade Center (PUC) (now in GA) – now includes Entra ID Support for faster onboarding.

Delinea Credential Manager (DCM)

  • DCM (now in GA) – is a new browser extension that securely autofills credentials from Secret Server. Built on enterprise-grade tech, DCM offers a smoother, more integrated experience across Secret Server and the Delinea Platform—replacing the Web Password Filler. Some of the features available with DCM:

    • Easy Vault Access – Search, request, edit secrets, autofill TOTP, and launch web apps with auto-save—no typing needed. Available in browsers and the Delinea mobile app.

    • Centralized Admin Controls – Apply MFA, session recording, and approval workflows to any credential for stronger security.

    • Business User Experience – Intuitive interface for non-technical users to access and manage credentials seamlessly.

    • Learn more about this capability at Delinea Credential Manager.

Iris Authorization

  • Iris Authorization (in Private Preview) – Automate secret access approvals with context-driven insights and risk-aware decision making.

    • Automates secret access approvals using access justifications, tickets, risk signals, and patterns.

    • Provides clear, context-driven recommendations to assist decision-makers.

    • Speeds up approvals, reduces manual effort, and improves security consistency.

    • Learn more about this capability at Delinea Authorization Powered by Iris AI.

Continuous Identity Discovery (CID)

  • Active Directory (AD) Discovery (now in GA) – This update adds:

    • Same engine can scan multiple domains, reducing the need to install an engine per domain.

    • Multiple engines can be installed under the same site for increased uptime.

    • Domains and credential configuration has been moved to the sources page.

    • Learn more about this update at Continuous Identity Discovery.

Secure AI & LLMs with Privilege Control for Cloud Entitlements (PCCE)

  • AI & LLMs Security – Gain full visibility, governance, and security for AI agents and LLMs in your environment.

    • Full Visibility into AI & LLMs – Discover AI agents and LLMs in Azure with detailed metadata, reputation insights, and risk analysis—including self-managed deployments.

    • AI Reporting & Governance – Centralized reports for identity, compliance, and legal teams to monitor AI usage and enforce governance.

    • AI Security Posture Management (AISPM) – New “AI Security” checks detect misconfigurations, risky access, and exposed AI agents or LLMs.

    • Learn more about this capability at Protecting AI & LLMs within Cloud Apps.

Analytics

  • Analytics (in Public Preview) – Analytics provides deeper visibility into user behavior and risk, helping organizations strengthen their security posture. New enhancements added:

    • Apply identity platform login policies based on a user’s assessed risk level.

    • New widget under Analytics dashboard to show login locations and risky users count over time.

    • New alerts including access to crown jewel secret, unusual access to secrets and first-time action.

    • Learn more about this new service at Analytics.

Iris Auditing

  • Iris Auditing(in Public Preview) – transcribe the activity in the session recordings for further analysis. Features include:

    • Analyze Secret Server, PRA, and PCS sessions with automatic action labeling.

    • Detect suspicious user behaviors and flag risky activities.

    • Get AI-powered session summaries to streamline reviews and investigations.

    • Learn more about this new capability at Working with Iris Auditing.

Privileged Remote Access (PRA)

  • Private Web Applications (in Public Preview)

    • Access private web apps securely without VPN using browser-native connectivity.

    • Provide SSL/TLS encrypted public URLs for safe and seamless access.

    • Learn more about this capability at Accessing Private Web Apps with PRA.

  • Keyboard Shortcuts for Copy & Paste in PRA (now in GA)

    • Copy and paste text seamlessly between local machines and remote RDP/SSH targets.

    • Use OS-specific shortcuts like Ctrl-C/Ctrl-V based on the remote system.

    • Learn more about these updates at Clipboard .

  • PRA Linux Engine to Platform Engine Upgrade (in Public Preview)

Connection Manager (CM)

  • Connection Manager 2.7 Release (now in GA)

    • Launch websites and auto-fill credentials directly from Connection Manager with your preferred Delinea browser extension.

    • Connection Manager now backs up config files and updates without needing a restart.

    • Connection Manager error messages are clearer and more actionable.

    • Internal browser authentication disabled by default; can be re-enabled by admins.

    • More updates and enhancements are detailed in these release notes.

Privilege Control for Servers

  • Linux Profile Management (in Private Preview) –Add user profiles and define default profile attributes so you can manage Linux and UNIX users on the platform.

    • Manage Linux/Unix profiles natively within the platform to streamline AD bridging.

    • Provision profiles via policy targeting and import in bulk for easy migration.

    • Preserve home directories and user IDs for seamless Linux/Unix environment integration.

    • Learn more about this capability at Managing Linux/UNIX Profiles.

  • Active Directory Rapid Discovery (in Public Preview) – AD Rapid Discovery maintains continuous synchronization between Active Directory (AD) and the Delinea Platform.

    • Detect AD machine changes near real-time to keep PCS inventory up-to-date.

    • Enable faster policy deployment without waiting for scheduled syncs.

    • Learn more about this capability at AD Rapid Discovery Workload.

  • Device Code Flow MFA (in Private Preview) – Seamless MFA redirection with full platform support—no RADIUS required.

    • Redirect MFA call from a non-interactive session to your workstation – no RADIUS required.

    • Unlock any MFA capability available within the Platform such as FIDO2 and SSO.

    • Learn more about this capability at Device Code Flow.

  • Duo Auth API MFA (in Private Preview) – Perform push notifications from DUO in a non-interactive session at the host without a RADIUS Server. Learn more about this capability at Build an Auth API Duo Application.

Inventory

  • Permissions on Collections (now in GA) – You can now assign granular permissions to computer collections, allowing precise control over which computers end users can view and interact with. This capability was promoted to GA. Learn more about this new capability at Assigning User Permissions on Collections.

  • Collections for Remote & Web Applications (in Private Preview) – Organize remote and web apps into collections with fine-grained permissions to enforce least-privilege access and enhance security.

    • Collections – Group Remote and Web Apps into Collections for easier management.

    • Fine-Grained Permissions – Control who can view, launch, or manage app access at the collection level.

    • Stronger Security – Enforce least-privilege access and align with internal security policies.

    • Learn more about this new capability at Creating a New Remote App or Web App Collection.

Identity & Federation

  • Entra ID (now in GA) – introducing a direct API integration with Microsoft Entra ID, offering seamless SSO login and MFA using Entra ID credentials. New enhancements were added as part of the GA release:

    • Deletion Detection Propagation – Keep your directory and the Platform in sync by automatically detecting user or group deletions.

    • Secret Server UI Usability Updates – Improve efficiency and discoverability by browsing and paging through Entra ID users and groups without needing to enter search terms first, and by using new filters when sharing secrets or setting folder permissions.

    • Paging Support for Users & Groups – Improved performance and usability when managing large directories.

    • Configure Allowed Groups – Limit Platform visibility to a set of approved Entra ID (or AD) groups for tighter access control.

    • Entra ID Delinea-Managed Registered App – Simplify setup with a few clicks directly in the Platform.

    • Learn more about this integration at Entra ID API Integration.

  • Federation Automated Group Mapping (now in GA) – This feature dynamically creates and assigns groups based on group claims received from the IdP during user authentication, eliminating the need for manual configuration. This enhancement saves time, reduces effort, and minimizes the risk of human error when group mapping at scale. Learn more about this new capability at Automated Group Mapping.

Marketplace & Integrations

  • New and Updated Integrations:

    • SCIM On-Prem v4.7.1 – Maintenance release

    • Terraform v3.0 – Added support for ephemeral resources

    • Jenkins v2.0.0 – Retrieve secrets using custom credentials

    • RabbitMQ Helper v12.2.0 – Upgraded Erlang and RabbitMQ versions

    • UiPath v3.0.0 – Added Platform and caching support

    • ConnectWise v4.0.1 – Upgraded to Platform authentication

    • All ServiceNow integrations – Now Yokohama Certified

  • ServiceNow Integration with Delinea Platform PCS (in Private Preview)

    • Request privileged access to Delinea-managed computers directly from ServiceNow.

    • Automated approval and authentication policy creation for secure access.

    • Enforce security policies and compliance via ServiceNow workflows.

    • Learn more about this integration at ServiceNow.

Other Updates

  • Engine Management Platform Improvements

    • Updated Site and Engine Management Permissions to allow PRA to select sites on Platform users for more flexible and granular site assignments.

    • Learn more about these updates at Account Permissions and Roles.

  • Combined Discovery (now in GA)

    • Single interface for Cloud Identity and Secret Server discovery.

    • New Create dialog offers marketplace info during setup.

    • Simplifies and streamlines discovery configuration.

    • Learn about this update at Combined Discovery .