August 12th, 2026
Improved

This release brings Jira two-way sync to automated scans, makes scan setup and vetting requests clearer, and fixes eight issues across pentest, vulnerability, and API scanning flows.
Jira Two-Way Sync for Automated Scans – Two-way sync now works with automated scans, not just pentests. Once it's enabled, changes made in either system carry across to the other, exactly as they already do for pentests. Reach out to support to get access.
Smarter Scan Setup Defaults – When your plan supports only one scan type or subtype, Astra preselects it instead of asking you to step through the choice.
Clearer Vetting Credits – The Request Vetting flow now labels available requests more clearly, so you can see how many you have left before you submit.
Improved Vulnerability Completion Copy – Messaging now correctly refers to marking business-acceptable findings as accept risk, instead of using misleading false-positive wording.
More Useful Astranaut Bot Replies – Customer-facing comment replies from Astranaut Bot now carry more of the detail you need.
Restarting Pentest Scans – Fixed an issue that prevented some pentests from being restarted from certain progress states.
Automated Scan Finding States – In Auto Pentests, vulnerabilities reported by Bounty Hunters or Structured Pentesters now get reported directly in Unsolved status.
Vulnerabilities Page Pagination – Changing the page number in the URL no longer opens an empty page when findings exist.
HAR File Uploads – Fixed errors that could appear while adding a new HAR file during API scanning setup.
Pentest Scan Start Failures – Fixed an internal server error that could block a pentest scan from starting.
Duplicate Jira Tickets – Fixed a regression that created Jira tickets for automated scans when users had only set them up for pentests.
Endpoint Details Layout – Fixed endpoint URL overflow in the import endpoint details sheet.
Bounty Hunter Report Status – The report widget now reflects the correct status more reliably.