Product Updates & Roadmap
Changelog
Keep track of the latest platform releases, security enhancements, CLI tools, and architecture updates in IOBend.
v2.2.0
September 5, 2026LATEST RELEASEEnterprise RBAC & PBAC Authorization, Dynamic Navigation & AWS S3 Cloud Branding 🚀
Granular RBAC + Policy-Based Access Control (PBAC)
- Unified Policy Engine: Seamlessly evaluates built-in system roles (
Workspace Owner,Workspace Admin,Project Admin,Developer,Viewer) and custom roles. - Privilege Delegation Guardrails: Mathematical assertion preventing privilege escalation across team member assignments.
- Explicit Policy Matrix: Fine-grained policy rules with conditional evaluations (MFA requirement, IP allowlisting, and environment restrictions).
AWS S3 Visual Identity & Cloud Storage
- S3-Backed Logos: Direct upload and automatic cleanup of workspace and project logos on AWS S3.
- Secure Streaming Proxy: Authenticated proxy endpoint (
/api/v1/logos/[...key]) eliminating 403 Forbidden errors from private S3 buckets. - Local Development Fallback: Automatic Base64 fallback when running without cloud S3 credentials.
Multi-Project Roles & Workspace-Confined Visibility
- Multi-Project Role Assignment: Users can belong to a workspace and multiple projects with independent roles (e.g. Workspace Developer + Project Admin).
- Workspace-Confined Visibility: Strict isolation between Private (Restricted to assigned members) and Workspace-Wide (Internal to workspace) projects.
- Dynamic Role-Based Navigation: Sidebar automatically renders platform and organization features tailored strictly to the user's role and permission matrix.
v2.1.0
August 24, 2026Zero-Trust KMS Encryption, Shamir's Secret Sharing & IaC Integration 🔒
- Zero-Trust KMS Architecture: Hardware-backed AWS KMS master encryption combined with local envelope encryption.
- Shamir's Secret Sharing: Threshold key reconstruction allowing distributed emergency key recovery across workspace officers.
- Terraform & IaC Sync: Direct synchronization of secrets into Terraform Cloud, OpenTofu, and AWS Secrets Manager.
- Build Agents & Runtime Registry: Dedicated runner fleet management with live status monitoring and runtime isolation.
- Automated Security Audits: Continuous vulnerability scanners for open CVEs and leaked credentials in CI pipelines.
v2.0.0
August 8, 2026Enterprise Multi-Tenant Workspaces & Real-Time Audit Trail 🏢
- Multi-Tenant Architecture: Instant workspace context switching, custom visual identity, and subscription tier enforcement.
- Soft Deletion & 30-Day Recovery: Accidental deletion safeguards with a 30-day grace period and one-click workspace recovery.
- Immutable Real-Time Audit Trail: Complete cryptographic activity logging for secret reads, team member changes, and administrative actions.
- Secret Dependency Graphs: Interactive visual mapping showing secret flows across services, pipelines, and cloud targets.
v1.1.0
July 19, 2026Major Roadmap Release — 14 New CLI Commands & Security Suite ⚡
- Unified Dev Server (
iobend dev): Boot database containers, inject secrets, and launch dev scripts in 1 command. - Auto-Injected Execution (
iobend run): Execute scripts with environment secrets injected directly intoprocess.env. - Environment Context Switching (
iobend env switch): Instant hot-swapping between development, staging, and production environments. - Secret Leak Protection (
iobend hook): Git pre-commit scanner preventing accidental commits of plaintext API keys. - AI Config Scaffolding (
iobend ai generate): Natural language scaffolding for configs, Dockerfiles, and CI workflows.
v1.0.0
July 17, 2026Initial Public Release 🚀
- Launched the IOBend Developer Productivity Platform.
- Released the core CLI with secure sync and secret management.
- Introduced the AI assistant for Dockerfile and CI/CD generation.
- Added role-based access control for organizations.
- Launched Hobby, Pro, and Team pricing tiers.
Looking for technical documentation?
Explore our comprehensive CLI commands, API references, and architecture guides.
