Release Note
2.3.7 (9.15 2026)
- Email provider enhancement for extract 'Service' and 'Status' field from email title
- Fix preserve alert info not preserve firing info bug
- Fix SNOW call back not deal with 7 day’s ago alerts issue
- Not write deduplicate alert info into SNOW notes when assign ticket
- Some UI loading and query toggle switch enhancement
2.3.6 (8.31 2026)
- Show instance type (single alert or sub-alert) in exported csv
- Support assign ticket to group alert and add alert detail notes in the ticket after assign
- Add alert URL in ticket notes
- Fix unassigned alerts bug
- Fix over 7 days sub-alert not query able in group alert bug
- Fix workflow icon missing bug
2.3.5 (8.1 2026)
- Support un-assign alert
- Group alert behavior enhancement:
- One alert only belong to one Group alert
- Sub-alerts remain in their current group instead of being correlated again / move to other group
- New alerts use the first matching correlation rule, ordered by rule name asc
- Support configure correlation interval (Group created time vs last firing time) in correlation rule
- Performance issue fix:
- Add complex CEL validation: if the logic caculator(|| / &&) is more than 15, need add has() for all fields in CEL
- Fox bug of evaluate complex CEL casue high CPU
- UI add collapse / expand sub-alert button
- Two new MCP tools: get alert history and enrich single alert
2.3.4 (6.26 2026)
- Fix AI execution table missing execution_time
- Add get_ai_report_by_fingerprint api for MCP
2.3.3 (6.15 2026)
- PAT for guest user
- Group alert interval enhance
- Batch enrich write audit log
- Pre-formatting mapping save field into alert body
- Fix group alert severity color mismatch with single alert issue
2.3.2 (5.29 2026)
- Fix SNOW call back fail due to workflow log been clear issue
- Fix create SNOW ticket fail to post sub-alert info ticket issue
- Group Alert detail page show activity
- Fix maintence editing cel query been cut issue
2.3.1 (5.15 2026)
- Group Alert enhancement:
- Sub-alerts will be acked when Group alert been self assign
- Remove group alert description format
- All column select able in feed for both group alert and single alert
- Fix correlation rule table column height issue
- AI chat dialog style enhancement
- Append alert info into snow ticket when assign ticket
- Correlation rule support version control
- EMS MCP PAT(Personal Access Token) online
- Mapping / Extraction rule support dry run
2.3.0 (4.29 2026)
- Group Alert enhancement:
- Only more than 1 sub-alert will be shown as a group alert
- Feed page support query based on Group Alert
- Fix Group Alert detail only show 20 sub-alerts bug
- Group alert has own facet different with single alert
- Enhance mouse hover color to deep orange to easier identify alerts among the group
- Update MCP introduction page for new PAT auth
- New MCP tool for Group Alert
- Switch AI agent to new server side agent(replace N8N)
- Fix some popup dialog close slow issue
- Fix security issue for backend service
2.2.9 (4.17 2026)
- EMS support auth via PAT
- New note_history field store history notes:
- Adjust Group alert detail page format and make link fields clicked able
- Add loading mask when clicking some slow response button
- Enhance group alert status change slow issue
- Always load latest data when view group alert body and open enrich window
- Disallow "status" field in enrich API/method payload
- Correct correlation rule interval calculation base on last firing time
- Add ai_runbook field when configure correlation rule
2.2.8 (4.10 2026)
- Enable Workflow version revert
- Enhance the retention of original alert resolution information in alert history.
- Fix Alert View Fields function "service" fields cannot load bug
- Fix UI security issue
- Fix backend log security issue
- Fix deduplication rule interval bug
2.2.7 (3.27 2026)
- Manual run workflow list order by recent used and frequent used.
- Preserving name, severity, description fields when "resolved" alert come in.
- Group alert enhancement
- Fix refresh page will lose cel query bug
2.2.6 (3.20 2026)
- Group Alert
- AI report scoring
- Support for batch changing alert status
- Optimize performance and user experience when manually changing alert status
- Fix SNMP provider alert body u0000 issue
- Add sub-status for each alert: auto_recover/manual_resolved/escalated_resolved/auto_resolved
- Add flapping_count field for flapping with auto-recover alerts
2.2.5 (3.10 2026)
- Enhance time line show time range and re-order action
- Fix history table last receive time format issue
- Make alert table column width able to change
- EMS MCP
- Deduplication rule show history version and revert
- Enhance deduplication instantiation interval use resolved time
- Alert API query limit to 15 days
- Alert drop history support record count number only
- Change alert status api support
changed_by parameter
2.2.4 (2.27 2026)
- Enhance view alert and enrich always shows the latest data
- Run workflow enhancement to prevent duplicate trigger
- Extraction rule fix with support regex
- User Group with Role
- Mapping/Extract load slow issue fix
- Facets bound to preset
- Enhance cel query exception go back remain the query in the input
- Support Export ai report as PDF
2.2.3 (2.3 2026)
- Sync user group from myid group to EMS.
- Support edit/add/delete role on page.
- Enhance delete confirm dialog.
- AI Rule support wait time before trigger AI Agent.
- AI button support draggable.
- Fix bug of not able scroll in Timeline.
- Fix cel append bug when uncheck in facets.
- Fix pagination not working.
2.2.2 (1.27 2026)
- Support preset group re-order via drag and drop.
- Show the operator's profile picture and name on alert timeline.
- Support unicode character in alert body for Emsv1 provider.
- Support Emsv1 provider using eventName to match the corresponding severity (for ems1.0 migration).
- Show caculate duration for feed and preset count.
- Fix bug of one rule execution fail impact others for mapping and extraction.
2.2.1 (1.21 2026)
- Enable preset group share to user group.
- Thousandeyes provider support field "service".
- Splunk provider support pass "status".
- EMSV1 provider support level=0 for resolve alert.
- Snmptrap provider for extract ip/host/port to alert body.
- Enable multi line in cel query input.
- Able to resize the width of side bar.
- Fix view alert detail bug.
- Fix save preset column selection bug.
2.2.0 (1.9 2026)
- Remain alert detail pop up page stay after action on it.
- Extract some key fields out of json to table column for query performance enhance. (schema details)
- Support user group.
- Support preset group.
- Support "has" for query cel.
- Enhance the loading performance of the mapping rule page.
- Enhance manual refresh button behaviour, continue show refreshing until query finished.
- Add convert for unsupported unicode character for Prometheus provider.
- EMSV1 provider support pass level "0" to resolve alert.
- Fix cel validation inconsistent bug when save preset.
- Fix pagination "NaN" bug.
2.1.9 (12.22 2025)
- Extract the fields from the Alert event as new columns to the lastAlert.
- Add unit second for AI rule timeframe and set as default.
- Fix page number bug after cel searching.
2.1.8 (12.09 2025)
- Alert timeline support load more (1000 records).
- Preset alerts count change to not display as default.
- Enhance AI trigger rule cel verification.
- Enhance multiple selection of correlation rule attributes.
- Support trigger pagerduty via api key.
- Fix pagerduty provider api key validation bug.
2.1.7 (12.02 2025)
- Add workflow trigger based on alerts count and suppression time
- EMS show alerts data for 30 days only
- Enhance AI analysis report table default column
- Enhance preset alerts count calculation job for reduce DB load
2.1.6 (11.25 2025)
- Support feed pagination jump to specific page
- Add time selection in date picker
- Timeline store all status change
- Remove the limit of snow provider create inc
- Show "update by" and "create by"for deduplication
- Last received show real timestamp in history page
- Fix AI agent position bug
2.1.5 (11.18 2025)
- Remove the 1 ticket vs 10 alerts limit when auto change alert status from SNOW callback
- Add share alert button in alert menue
- Fix bug: show wrong name abbreviation of assignee when batch assign alerts
2.1.4 (11.11 2025)
- AI report page add passive feedback collection
- Mapping rule add cel match condition function
- Subscriber Pending status from SNOW and set Alerts as Pending accordingly
- Add Pending, Resolve related fields
- Add fields blocklist function
- Add alert blocklist function
2.1.3 (10.27 2025)
- Manual run AI analysis in AI chat bot
- AI bot support mutilple session
- Correlation rule page load fields performance enhancement
- Add alert fingerprint quick search function in alert detail page
- Webex teams provider support send message with teams card
- Add AI feedback module in AI analysis report page
- Add download csv button in mapping rule setting
- Enable auto/manual failover and failback
- Bugfix:
- Fix deduplication rule page provider shown as 'main' bug
2.1.2 (10.14 2025)
- Enable bulk resolve alerts
- Enable bulk enrich ticket url
- Add AI module for auto/manual trigger AI agent Analysis
2.1.1 (9.23 2025)
- Enable extraction and mapping rule version tracking and rollback
- Record "assignTime", "resolvedTime" and "resolvedDuration" to alert.
- Bugfix:
- Fix portal unexpected repeated auto refresh bug.
- Fix when alerts come in batches, only the first alert is processed by the deduplication rule.
- Fix microsoft email provider fail to convert events bugs.
2.1.0 (9.17 2025)
- Enable alerts simple search.
- Enhance incidents cel search for enriched fields.
- Add incident payload page.
- Persistence column setting per user and preset.
- Enhance em7 provider severity mapping and event status.
- Support pre-formatting mapping.
- Enhance Splunk provider formatting.
- Enable export alerts to csv.
- Add notification popup when set page refresh interval and do manual refresh.
- Enhance deduplication rule:
- Support set priority for match rule.
- Support set interval when create a new alert object.
- Fix bug of data could not be queried over 50,000 alerts.
2.0.9 (8.29 2025)
- Enable the EM7 Provider.
- Enable page auto-refresh to replace Websocketi.
- Enhance sidebar number.
- Support search function on the incident page.
- Improve deduplication rules:
- More accurate deduplication rules with cel match conditions.
- Added an option "alert_instantiation" to support the recreation of alert objects if the alert is resolved.
2.0.8 (8.18 2025)
- Batch enrich for ticket assign.
- Enriched fields select able in column selection.
- Make Severity bar wider.
- Invalid json format auto fix for Splunk integration.
- Fix startAT sort bug.
2.0.7 (8.8 2025)
- Enhance incident ui in alert sidebar.
- Report error when enrich alert failed.
- Pagerduty provider supports inc details
- Enable new workflow history modal.
2.0.6 (8.1 2025)
- Support assignee able query via cel.
- Enable alert detail column configuration in ui.
- Enable mapping rule edit and add from ui.
- Enhance table column limit.
- Fix acknowledge alert status set to firing bug.
2.0.5 (7.21 2025)
- Enable bulk assign alert to someone.
- Enhance pre-formatting extraction support bulk alerts.
- Remain assignee for an alert, not overwrite if new alert come.
- Order the failed events dropdown list.
- Show more fields in alert detail page.
- Add hyper link on build number to release notes.
- Show alert run workflow records in alert detail page.
- Bugfix:
- Fixed "Process CSV" save mapping rule without select matcher bug.
- Fixed previous matcher field was retained when modifying the mapping rule.
2.0.4 (7.11.2025)
- New Alerts auto push in UI.
- Show better format in workflow execute result with n8n.
- Email provider enabled in Prod.
- Some internal bug fix:
- Fix linked provider query bug
- Email provider add sync lock
2.0.3 (7.4.2025)
- Enable default "kburl" field (https://ciscowebex.servicenowservices.com/kb_find.do?sysparm_search=" + alertname)
- Show markdown format on incident workflow execution result details.
- Add some time related fields for emsv1 provider.
- Disable posthog.(stop sending hits data to keep)
- Add payload validation for emsv1 provider.
- Enhance linked provider calculate logic.
- Enhance Cel query 400 error.
2.0.2 (6.24.2025)
- Enable SSO login.
- Fix CEL query 500 error issue.
- SNOW ticket callback for resolve incident and alert.
- Email provider for receive Email events.
- Fix installed provider / Api key not sync issue.
- Web style change.
2.0.1 (6.16.2025)
- Enable Webex Teams Provider for notification.
- Enable Webex SNOW Provider for ticketing.
- Fix Workflow template 500 issue.
- Fix session timeout / signin out go to blank page issue.
- Some UI enhance: show keep/ems version, re-direct doc link.
- Enhance EMSV1 provider for alert time and service field.
- Short DNS and Certs for EMS v2:
- Prod: csgems.prod.webex.com
- BTS: csgems.stage.webex.com
- Bugfix and enhance:
- Fix history page data export related bug and enhance.
- Escalation Rule support match with service.