> For the complete documentation index, see [llms.txt](https://docs.material.security/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.material.security/whats-new/previous-releases/1.15-to-1.43/version-1.19.md).

# Version 1.19

{% @arcade/embed url="<https://app.arcade.software/share/uE1I5mK08jQtSFCDWSN3>" flowId="uE1I5mK08jQtSFCDWSN3" %}

We've made some exciting changes in our new Unified Detections! All of your current default settings and configurations migrate; they may just be in a new location.

{% hint style="success" %}
**Pro Tip!**

Can't find a page in the app? Use **⌘K** or the search bar in the top left to open Spotlight, then search for and navigate to the page you're looking for.
{% endhint %}

## Posture Management Migration

We merged the Posture Management product with our new Detections to increase effectiveness. Now, you'll see the previous Posture Management reports broken into more precise detections that you can take action on and track over time.

For example, the previous "Which Google Workspace accounts don't have MFA enabled" report now displays in two detections:

* **Account does not have a registered MFA factor in Google Workspace**
* **Account is an admin and does not have a registered MFA factor in Google Workspace**

<figure><img src="https://content.gitbook.com/content/ksjM8NywYRSHu1IlfxdP/blobs/7Qqa4Oe8QKxUQNn4r8zs/image.png" alt=""><figcaption><p>Some reports are now multiple detections</p></figcaption></figure>

{% hint style="success" %}
Learn more about our new unified detections and how to use them [here](/getting-started/fundamentals/detect.md).
{% endhint %}

Use these tables to find the detections that the data in previous Posture Management reports are now located in.

### Data Breaches

| Previous Report Name                                                  | New Detection(s)                                                                                                         |
| --------------------------------------------------------------------- | ------------------------------------------------------------------------------------------------------------------------ |
| Which accounts are part of public data breaches?                      | Account is present in a known data breach                                                                                |
| Which apps used in my organization were part of public data breaches? | Issues created by the detection "Account is present in a known data breac&#x68;**"** include app information as evidence |
| Which partners were part of public data breaches?                     | This report has been sunset.                                                                                             |

### Groups

| Previous Report Name                                       | New Detection(s)                                                                                                                                                                                                                                                                                         |
| ---------------------------------------------------------- | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Which Google Groups allow external users to post messages? | <ul><li>Google group with VIP members has weak moderation settings and allows external senders to post</li><li>Google group has weak moderation settings and allows external senders to post</li><li>Google group allows external senders to post</li><li>Google group allows external members</li></ul> |

### Mail Forwarding

| Previous Report Name(s)                                                                                                                                                                            | New Detection(s)                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               |
| -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| <ul><li>Which Google accounts are using auto-forwarding?</li><li>Which Microsoft 365 accounts are using auto-forwarding?</li><li>Which accounts forward work email to personal accounts?</li></ul> | <ul><li>Account forwarded a sensitive email to a personal account</li><li>Account automatically forwards all emails externally</li><li>Account automatically forwards all emails to a freemail domain</li><li>Account automatically forwards a subset of emails externally</li><li>Account automatically forwards a subset of emails to a freemail domain</li><li>Account forwarded an email to a personal account</li><li>Account automatically forwards all emails internally</li><li>Account automatically forwards a subset of emails internally</li></ul> |

### Multi-Factor Authentication (MFA)

| Previous Report Name                                    | New Detection(s)                                                                                                                                                                                                                                  |
| ------------------------------------------------------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Which Google Workspace accounts don’t have MFA enabled? | <ul><li>Google account does not enforce MFA</li></ul>                                                                                                                                                                                             |
| Which Microsoft 365 accounts don’t have MFA enabled?    | <ul><li>Microsoft Account used a non-phishing-resistant MFA factor to log in</li><li>Account does not have a registered MFA factor in Microsoft 365</li><li>Account has a non-phishing-resistant MFA factor registered in Microsoft 365</li></ul> |
| Which Google accounts have MFA bypasses?                | <ul><li>Google account syncing using IMAP/POP</li><li>Google account is using application-specific passwords</li></ul>                                                                                                                            |

### Partners

| Previous Report Name                              | New Detection(s)                                                                         |
| ------------------------------------------------- | ---------------------------------------------------------------------------------------- |
| Which partners have the most sensitive content?   | None. Relocated to **Reports->Sensitive Content** as "Where was sensitive content sent?" |
| Which partners were part of public data breaches? | Account is present in a known data breach                                                |

### Sensitive Content

| Previous Report Name                                    | New Detection(s)                                   |
| ------------------------------------------------------- | -------------------------------------------------- |
| What unprotected sensitive content exists in mailboxes? | None. Relocated to **Reports->Sensitive Content**. |
| Which partners have the most sensitive content?         | None. Relocated to **Reports->Sensitive Content**. |

### Third-party Apps

| Previous Report Name                                                  | New Detection(s)                          |
| --------------------------------------------------------------------- | ----------------------------------------- |
| Which apps have OAuth access to Google accounts?                      | None. **Relocated to Reports->Apps**.     |
| Which apps are used in my organization?                               | None. Relocated to **Explorer->Apps**.    |
| Which apps perform unprotected account access requests over email?    | None. Relocated to **Reports->Apps**.     |
| Which apps used in my organization were part of public data breaches? | Account is present in a known data breach |

***

## View Material Detections for All Categories

You can now view all Material Detections in one list, sort and filter that list, view descriptions, related issues, and more — all in once place. [Learn more here](/learn-more/risk-areas/email-threats/detect.md).

<figure><img src="https://content.gitbook.com/content/ksjM8NywYRSHu1IlfxdP/blobs/rVtntvGL3JEMRtwP1aSR/image.png" alt=""><figcaption><p>Material Detections</p></figcaption></figure>

You can also configure default remediation and response directly from the detection. Learn more here.

***

## Permissions Updates

We made some updates to our roles and permissions:

Triage Admin is now **Global Analyst**.

1. This role can see all issue types and the associated metadata and content directly tied with the issue across all tenants (e.g. flagged message or file contents)
2. To search, users need the **Content Admin role**

<figure><img src="https://content.gitbook.com/content/ksjM8NywYRSHu1IlfxdP/blobs/tV9yqRl2wpKmSOIKSTDe/image.png" alt=""><figcaption><p>Admin Roles</p></figcaption></figure>

***

## File Data Protection New Location

File Data protection is now included in Material Detections and [behaves the same as it did previously](/learn-more/risk-areas/email-data-security.md).

To view File-related Detections:

1. From the left navigation, click **Detections**.
2. Click **Filters**, then **Entity Type**, then select **File.**

To view File-related Issues:

1. From the left navigation, click **Issues**.
2. Click **Filters**, then **Entity Type**, then select **File**.

***

## Email Data Protection New Location

To view your Dashboards, Access Requests, and Force Unlock jobs:

1. From the left navigation, click **Email Redaction.**
2. Click **Email Redaction:**

<figure><img src="https://content.gitbook.com/content/ksjM8NywYRSHu1IlfxdP/blobs/0p4oI5QtDREazeP40IPD/image.png" alt=""><figcaption><p>Email Redaction</p></figcaption></figure>

***

## Email Threats New Location

[Email Threats](/learn-more/risk-areas/email-threats.md) (formerly Phishing Protection) are now nested under Issues:

<figure><img src="https://content.gitbook.com/content/ksjM8NywYRSHu1IlfxdP/blobs/p47LKItrwnMLEDJDdTPt/image.png" alt="" width="224"><figcaption><p>Email Threats New Location</p></figcaption></figure>

***

## Accounts New Location

Accounts are now located in the Explorer:

<figure><img src="https://content.gitbook.com/content/ksjM8NywYRSHu1IlfxdP/blobs/Ld36TfkGYZ3TfUTmLuZo/image.png" alt="" width="233"><figcaption><p>Accounts New Location</p></figcaption></figure>

***

## Give Feedback

Share your experience with or feedback about an issue or detection!

1. Open any Detection or Issue.
2. Press `⌘K` to open Spotlight.
3. Choose **Give Feedback** to send comments directly to our Product team.

<figure><img src="https://content.gitbook.com/content/ksjM8NywYRSHu1IlfxdP/blobs/vQ916GzaFHQ86NQiGZZl/image.png" alt="use the keyboard shortcut command plus k to find the give feedback option" width="375"><figcaption><p>Shortcut to Give Feedback</p></figcaption></figure>


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.material.security/whats-new/previous-releases/1.15-to-1.43/version-1.19.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
