1Password SaaS Manager #780
New
- App Catalog – Additional Approval Tiers: There is no longer a limit on the number of approval levels that can be configured for access request workflows. This applies to both the default approval settings (Settings > App catalog > Default approval) and per-application access policies (Application > Access policy > Approval). Organizations that need sign-off from a manager, app owner, and IT team can now configure as many approval stages as required.
- ADP – Cost Center Code Mapping: The ADP integration now correctly maps cost center data using the “Cost Numbers” organizational unit type. This improves accuracy for organizations that use the Business Unit field to store company names rather than cost center codes.
- Asana – Public Projects Guidance: The Asana integration now includes a clear note explaining that the Create task step only syncs task data for public projects. This is reflected in the integration setup and help documentation, reducing confusion for teams working with private projects.
- (Closed beta) AI Consumption Chart – Filtering: The AI consumption chart now supports additional filtering options to make it easier to analyze spend and usage data by specific dimensions.
Fixed
- App Catalog – Cancel Access Request: Fixed an issue where users were unable to cancel a pending access request from within the App catalog.
- App Catalog – Message Task Assignees: Fixed an issue where messages couldn’t be sent to Task assignees from within the App catalog.
- Temporary Access – Expiry Job: Fixed a bug that caused the temporary access expiry job to fail silently since March 2026. Users granted temporary access were not automatically deprovisioned when their access period ended. Affected access requests have been identified and remediated.
- Contracts – License Population Delay: Fixed a delay where licenses manually assigned to users did not appear immediately in the Contract UI’s overview or contracts drawer. Licenses now reflect correctly without requiring a page refresh or needing to sign in again.
- BambooHR – API Migration: Updated the BambooHR integration to use BambooHR’s new Datasets v2 API, replacing the deprecated Custom Report API. This makes sure people data continues to sync reliably.
- dbt – Connection Fix: Fixed a connection failure that prevented organizations from successfully connecting to the dbt integration. The integration was calling an incorrect API endpoint; requests are now routed correctly.
- Xero – Spend Transaction Date Parsing: Fixed an issue where certain Xero transaction descriptions with non-standard date range formats weren’t being parsed correctly, resulting in inaccurate spend period data.
- KrispAI – SCIM URL for Large Accounts: Fixed an issue where KrispAI accounts with more than 100 users received an incorrectly formatted SCIM provisioning URL, which prevented user provisioning from completing successfully.
- Atlassian – OAuth Refresh Token Handling: Fixed an issue where expired Atlassian OAuth refresh tokens were classified as temporary failures, causing the integration to retry indefinitely rather than prompting for reconnection. Connections with an expired token will now correctly surface a reconnection prompt.
- Microsoft Entra ID – Directory Roles for Mixed-Case User Principal Names: Fixed an issue where users with directly assigned Entra directory roles (such as Global Administrator) didn’t have those roles reflected in SaaS Manager when Microsoft returned their User Principal Name in mixed case (for example,
User@domain.com). - GitHub – Improved Organization Slug Validation: Improved handling of invalid or malformed GitHub organization slugs during sync, reducing errors for organizations with atypical slug configurations.
