2025-11-06 November Release Notes

New and Improved Features

New Functionalities

  • Restricted Fields: The new Restricted Fields functionality allows you to hide contact details from view.
    • Users with the appropriate permissions can enable or disable restricted fields, as well as view and edit their data.
  • Surveys: Surveys can now be published in the Self-Service Portal as open forms that collect responses directly into the CRM system.
  • Survey Responses: The response block can now also be used in Mass Events, Tickets, Campaigns, Projects, and Accounts.
    • For example, responses to surveys sent through a campaign are displayed directly under the campaign without any additional filtering.
  • Mass Event Registrations: With the new Edit function, users can correct registration details directly in the CRM.

CRM

  • Product Tax: When creating a new product, tax is automatically activated and uses the default tax percentage defined in the settings (including 0% cases).
  • Audit Trail: Administrators can now view changes and other events directly from the Admin Settings interface.
  • User Search: When searching for a user, results now display the user’s profile picture alongside their name, making it easier to identify the correct person.
  • Record Creation: The X close icon has been removed from the top corner of the new record creation view to prevent accidental closure.
  • Announcement Visibility: Announcements can now be targeted to appear only on the Dashboard. Previously, an announcement was visible on the Dashboard only if it was set to appear in all modules.
  • Dynamic Dates: A new option has been added to use dynamic date rules in Dashboard charts and campaign conditions.
    • Users can search and update views based on criteria such as “last week’s join date” without fixed dates. The views automatically refresh according to the selected time range.
  • Conditions: Defining conditions in campaign segments, dashboard elements, and triggers has been simplified. Fields with multiple options can now be added in a single row, and the options are automatically treated as “OR” conditions.
  • Mass Event Drill-in: In drill-in views, the mass event name now functions as a clickable link.
  • Report Generator:
    • Reports now support displaying staff data in mass events.
    • Reporting now supports displaying contact details alongside responses.

Notifications

  • Discussion Notifications: If defined in the field settings, the responsible user now automatically receives a notification about new discussions in the field, even if they were not tagged.
  • Notification Viewing: General usability of notifications has been improved.

Removed Features

  • Admin Settings: Only legacy tools/functions have been removed.
  • System Messages: The old System Messages feature has been disabled. Legacy system messages no longer send notifications.
  • Dashboard Charts: Legacy goal data can no longer be used in charts.
  • RSS Module: The long-deprecated RSS module has been permanently removed.

Self-Service Portal

  • Phone Number Country Code: Added a country code selector from which users can choose the country and area code (e.g., +358). The default country can be defined per form.
  • Email Validation: Forms now validate the email address structure more accurately. Invalid addresses such as “hi@hi” are not accepted without a domain ending (e.g., .fi or .com).
  • Date Rules: Date fields can now have rules that block past or future dates, or allow only a limited date range (e.g., ±30 days).
  • Allowed Value Ranges: In membership and donation forms, an acceptable range can be defined for numeric and percentage fields.
  • VAT/Business ID Validation: Added validation for Finnish and Swedish VAT/Business IDs. The active validation can be selected in the settings.

Security Update

  • Passwords:
    • Changing a password now requires entering the current password. This improves security and prevents unauthorized change attempts.
    • Changing a password automatically logs the user out of all other active sessions.
    • Forgot your password? link usage has been limited, and the email link is valid only for a restricted time period.
  • Security Protocol: TLS 1.3 has been enabled alongside TLS 1.2, and outdated or less secure encryption methods have been removed.
    • If you have a custom API integration, we recommend ensuring that your API client supports TLS 1.2 or 1.3.
  • External Sources: The interface no longer displays content originating from external sources.
    • This prevents potentially harmful data from being processed within the CRM.
  • File Uploads: An error message is now displayed if a file is not in an allowed format.
  • Cookies and Sessions: Security policies have been tightened: all cross-site requests are now blocked by default.
    • If you have a custom interface that relies on sessions, please contact us and we will help you migrate to JWT-based authentication.
  • Several minor security vulnerabilities in the CRM system have been fixed.

Fixes

  • Issue where the field order in the dashboard filter was not displayed correctly in the list view.
  • Issue where the pagination in the recycle bin did not work as expected.

Instruction updates

To reflect the changes in the update, we have also updated the following instructions:

 

Was this article helpful?

Related Articles