New and Improved Features
New Functionalities
- Restricted Fields: The new Restricted Fields functionality allows you to hide contact details from view.
- Users with the appropriate permissions can enable or disable restricted fields, as well as view and edit their data.
- Surveys: Surveys can now be published in the Self-Service Portal as open forms that collect responses directly into the CRM system.
- Survey Responses: The response block can now also be used in Mass Events, Tickets, Campaigns, Projects, and Accounts.
- For example, responses to surveys sent through a campaign are displayed directly under the campaign without any additional filtering.
- Mass Event Registrations: With the new Edit function, users can correct registration details directly in the CRM.
CRM
- Product Tax: When creating a new product, tax is automatically activated and uses the default tax percentage defined in the settings (including 0% cases).
- Audit Trail: Administrators can now view changes and other events directly from the Admin Settings interface.
- User Search: When searching for a user, results now display the user’s profile picture alongside their name, making it easier to identify the correct person.
- Record Creation: The X close icon has been removed from the top corner of the new record creation view to prevent accidental closure.
- Announcement Visibility: Announcements can now be targeted to appear only on the Dashboard. Previously, an announcement was visible on the Dashboard only if it was set to appear in all modules.
- Dynamic Dates: A new option has been added to use dynamic date rules in Dashboard charts and campaign conditions.
- Users can search and update views based on criteria such as “last week’s join date” without fixed dates. The views automatically refresh according to the selected time range.
- Conditions: Defining conditions in campaign segments, dashboard elements, and triggers has been simplified. Fields with multiple options can now be added in a single row, and the options are automatically treated as “OR” conditions.
- Mass Event Drill-in: In drill-in views, the mass event name now functions as a clickable link.
- Report Generator:
- Reports now support displaying staff data in mass events.
- Reporting now supports displaying contact details alongside responses.
Notifications
- Discussion Notifications: If defined in the field settings, the responsible user now automatically receives a notification about new discussions in the field, even if they were not tagged.
- Notification Viewing: General usability of notifications has been improved.
Removed Features
- Admin Settings: Only legacy tools/functions have been removed.
- System Messages: The old System Messages feature has been disabled. Legacy system messages no longer send notifications.
- Dashboard Charts: Legacy goal data can no longer be used in charts.
- RSS Module: The long-deprecated RSS module has been permanently removed.
Self-Service Portal
- Phone Number Country Code: Added a country code selector from which users can choose the country and area code (e.g., +358). The default country can be defined per form.
- Email Validation: Forms now validate the email address structure more accurately. Invalid addresses such as “hi@hi” are not accepted without a domain ending (e.g., .fi or .com).
- Date Rules: Date fields can now have rules that block past or future dates, or allow only a limited date range (e.g., ±30 days).
- Allowed Value Ranges: In membership and donation forms, an acceptable range can be defined for numeric and percentage fields.
- VAT/Business ID Validation: Added validation for Finnish and Swedish VAT/Business IDs. The active validation can be selected in the settings.
Security Update
- Passwords:
- Changing a password now requires entering the current password. This improves security and prevents unauthorized change attempts.
- Changing a password automatically logs the user out of all other active sessions.
- Forgot your password? link usage has been limited, and the email link is valid only for a restricted time period.
- Security Protocol: TLS 1.3 has been enabled alongside TLS 1.2, and outdated or less secure encryption methods have been removed.
- If you have a custom API integration, we recommend ensuring that your API client supports TLS 1.2 or 1.3.
- External Sources: The interface no longer displays content originating from external sources.
- This prevents potentially harmful data from being processed within the CRM.
- File Uploads: An error message is now displayed if a file is not in an allowed format.
- Cookies and Sessions: Security policies have been tightened: all cross-site requests are now blocked by default.
- If you have a custom interface that relies on sessions, please contact us and we will help you migrate to JWT-based authentication.
- Several minor security vulnerabilities in the CRM system have been fixed.
Fixes
- Issue where the field order in the dashboard filter was not displayed correctly in the list view.
- Issue where the pagination in the recycle bin did not work as expected.
Instruction updates
To reflect the changes in the update, we have also updated the following instructions:
- File Limits in CRM-service
- Public Surveys
- Restricted Fields
- Restricted fields – Setup and Management