Enhanced scan schema
Importer support for richer collector records, including signature/provenance fields, while preserving compatibility with older JSONL scans.
Signature-aware binary evidence
PE Authenticode, Mach-O code-signature, ELF hardening, kernel-module signature clues, certificate URLs, hashes, and provenance flow into detail views.
Signed release collectors
Production downloads are synchronized to 0.7.5, with the Windows collector signed by AstroSec LLC and every published artifact covered by checksums.
Archive detection
ZIP, TAR, RAR, 7-Zip, LHA, CAB/MSU, package, and firmware-style containers are recorded for analyst follow-up without unpacking them on constrained systems.
Hash search
Find files by SHA-256 across visible scans, with collector-side hash capture and an opt-out for tiny targets.
Measured import path
Normal PG18 imports now batch large scan-row writes, with benchmarked gains and row-count parity checks instead of guesswork.
Embedded collectors
Windows, macOS, Linux x64, ARM64, ARM32, OpenWrt/Entware ARMv7, MIPS, and PowerPC builds are represented in production downloads.
Scoped beta access
Organizations, groups, users, MFA, Google sign-in, and role-aware scan visibility are now part of the hosted flow.
Software Genomics guidance
Groups can now be explained as fleet-drift boundaries when scans are repeatable, while random uploads remain scan similarity.
Actionable dashboard cards
Files With CVEs and Binary Signals counters open filtered result rows for immediate analyst review.
CVE matching guardrails
Centralized expert rules reduce noisy filename-only matches, platform/vendor mismatches, and component-scoped advisories that do not apply to sibling binaries.
Production polish
Collector update alerts, top-level security feeds, deploy checks, materialized matching progress, and local preview workflows were tightened.