# Identity Mesh — April 2, 2026

**Release Date**: April 2, 2026\
**Release Type**: Feature + Bug Fix

------------------------------------------------------------------------

## Overview

This release delivers four key improvements: an AI assistant for investigating your Mesh data in plain language, detailed explanations for asset risk scores and risk tags, additional asset attributes in the asset list and detail views, and a fix to identity correlation and merging.

------------------------------------------------------------------------

## New features

### Mesh AI assistant

An AI assistant is now available in the dashboard. You can ask questions about your assets, identities, and risks in plain language and get answers grounded in your own data.

**Key capabilities:**

- Open the assistant from anywhere in the dashboard using the floating action button.

- Ask free-form questions or start from guided prompts, for example "Show me expiring certificates".

- The assistant only sees data your account is permitted to see, and your organization's data stays fully isolated.

- Sensitive values such as personal information and credentials are automatically filtered before any request leaves the platform.

- Rate each response with thumbs up or thumbs down.

- AI interactions are recorded in the audit log.

**Not included in this release:**

- A usage analytics view for the assistant

- Review and approval of outbound data before it is sent

- Advanced feedback workflows such as flagging and escalation

- Multi-region and data residency controls

- Write operations — the assistant cannot make changes, for example renewing a certificate

------------------------------------------------------------------------

### Detailed explanations for asset risk scores and tags

You can now see a detailed explanation of why a risk score or risk tag was assigned to an asset, which speeds up triage and helps you decide on remediation.

**What's included:**

- **Simple risks** (for example an orphan asset): a dialog states the condition plainly — for example "This asset has no assigned owner" or "This asset is not linked to any hardware asset."

- **Policy-based risks** (for example an asset that is not compliant with a post-quantum cryptography policy): the dialog shows the outcome of the policy assessment and lists the specific attributes that did not comply, along with the name of the triggering policy.

- **Multiple risk tags**: each tag opens its own explanation.

- Explanations are available from the Risks section of the asset detail view.

- Risk tags in the asset list show a summary tooltip on hover.

**Edge cases:**

- If risk data is missing, a generic explanation is shown.

- Long explanations open in a dismissible dialog.

**Known limitations:**

- Risk explanations are currently available for software assets. Machine and certificate asset detail views do not yet show a Risks section; this is planned for a future release.

- Selecting a risk score shows a severity label (for example "Low Risk") but not yet a full score breakdown.

- Explanations for the "Insufficient information" risk tag may not list every missing attribute.

------------------------------------------------------------------------

### Additional asset attributes in the asset list and detail views

The asset list and asset detail views now display additional key attributes.

**Attributes added:**

| Attribute            | Applies to                 | Description                              |
|----------------------|----------------------------|------------------------------------------|
| OS version           | Machine assets             | Operating system version                 |
| Product attribute    | Software assets            | Normalized product name                  |
| Mesh unique asset ID | All asset types            | Stable identifier assigned by Mesh       |
| External ID          | All asset types            | Identifier from the source system        |

**Behavior:**

- All four attributes appear in both the asset list table and the asset detail page.

- If an attribute is not populated for an asset, a dash (`-`) is displayed.

- OS version and Product attribute apply only to their respective asset types.

**Data availability:**

- OS version and product values depend on data from your connected sources and may show a dash until the next connector sync completes.

------------------------------------------------------------------------

## Bug fixes

### Identity correlation and merging fix

Fixed a bug where some identity correlation records were not resolved even though the matching user record existed, so identity merging was skipped for those users.

**Fix:**

- Correlation processing now resolves these records and completes identity merging for the affected users.

- Correlation jobs now run with less contention, improving reliability on large data sets.

**Impact:**

- Resolves stale identity correlation data in environments where this condition existed.

- Improves identity deduplication and risk score accuracy for the affected identities.

------------------------------------------------------------------------

## Known issues

| Issue | Affected area | Status |
|----|----|----|
| OS version and product values show a dash (`-`) for machine and software assets until connector sync completes | Machine asset list, software asset list | Awaiting connector data sync |
| Selecting a risk score shows a severity label only, not a full score breakdown | Asset detail — risk score | Planned for a future release |
| Transitive or indirect identity correlations do not resolve automatically | Identity correlation | Planned for a future release |
