> For the complete documentation index, see [llms.txt](https://docs.prismacloud.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.prismacloud.io/release-notes/prisma-cloud-release-information/features-introduced-in-2023/features-introduced-in-october-2023.md).

# Features Introduced in October 2023

Learn what’s new on Prisma® Cloud in October 2023.

## New Features Introduced in October 2023

* [New Features](#new-features1)
* [Security Fix](#security-fix1)
* [API Ingestions](#api-ingestions1)
* [New Policies](#new-policies1)
* [Policy Updates](#policy-updates1)
* [REST API Updates](#rest-api-updates1)
* [Deprecation Notice](#deprecation-notices)

## New Features

| FEATURE                                                                                                                                                                                                                                                               | DESCRIPTION                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| <p><strong>Cloud Discovery and Exposure Management</strong></p><p><em><mark style="background-color:orange;"><strong>Secure the Infrastructure</strong></mark></em></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>         | <p><a href="https://docs.prismacloud.io/en/enterprise-edition/content-collections/administration/subscribe-to-cdem">Cloud Discovery and Exposure Management</a> is a new subscription that uses machine learning to discover internet-exposed and unmonitored assets within your cloud infrastructure, and enables you to secure these exposed assets with a single click. The assets are seamlessly onboarded to Prisma Cloud.</p><p>When you subscribe, the <strong>Discovery and Exposure Management</strong> dashboard provides visibility into your attack surface and surfaces the top risks and exposure by country . The findings on <strong>Inventory > Unmanaged Assets</strong> enable you to investigate further based on the insights about your shadow assets exposed to the internet and enhance your security posture.</p><p><img src="/files/nFgFHxb8HU3anH43KMM7" alt="" data-size="original"></p>                                                                                                                                                                                                                                            |
| <p><strong>Code to Cloud Dashboard</strong></p><p><em><mark style="background-color:orange;"><strong>Secure Code to Cloud</strong></mark></em></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                              | <p>Prisma Cloud’s <a href="https://docs.prismacloud.io/en/enterprise-edition/content-collections/dashboards/dashboards-code-to-cloud">Code to Cloud Dashboard</a> provides you with a comprehensive assessment of the health of your cloud security posture. Highlights include:</p><ul><li><strong>Latest Events Tracker—</strong> Alerts you to potential threat activity across your software development lifecycle.</li><li><strong>Code & Build, Deploy, Runtime Inventory—</strong> Track and view risks and vulnerabilities identified in every phase of the software development lifecycle.</li><li><strong>Custom Collections—</strong> Group asset views to focus on specific teams, business units or applications.</li></ul><p><img src="/files/K3i3LyEsA34kbdqrH1cJ" alt="" data-size="original"></p>                                                                                                                                                                                                                                                                                                                                              |
| <p><strong>Compute Workloads in Asset Inventory</strong></p><p><em><mark style="background-color:orange;"><strong>Secure the Infrastructure</strong></mark></em></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>            | <p>Prisma Cloud Asset Inventory now includes a summarized view of <a href="https://docs.prismacloud.io/en/enterprise-edition/content-collections/cloud-and-software-inventory/compute-workloads-inventory">Compute Workloads</a> (containers images and hosts) across your entire workload for discovery, risk assessment, and securing the runtime.</p><p><img src="/files/ajuNcSVaaSn3ITyWGOgX" alt="" data-size="original"></p><p>The findings on <strong>Inventory > Compute Workloads</strong> help you to assess the impact of the vulnerable container images and hosts on your application lifecycle, identify the top impacting vulnerabilities based on critical CVEs, and identify the Cloud providers for the vulnerable hosts along with the other metadata.</p>                                                                                                                                                                                                                                                                                                                                                                                   |
| <p><strong>Vulnerabilities Dashboard</strong></p><p><em><mark style="background-color:orange;"><strong>Secure Code to Cloud</strong></mark></em></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                            | <p>The <a href="https://docs.prismacloud.io/en/enterprise-edition/content-collections/dashboards/dashboards-vulnerabilities">Vulnerabilities Dashboard</a> gives you a holistic graphical view of all the vulnerabilities across your entire application lifecycle and narrows them down to the most critical and urgent ones, and the ones that are actionable. You get an overview of the top impacting vulnerabilities based on the CVEs, and the vulnerabilities impact by your app lifecycle in a CBDR view.</p><p><img src="/files/nANR8VNdw09szQaBZnri" alt="" data-size="original"></p><p>The CBDR graph findings help you assess the vulnerable assets in your environment and make informed decisions to remediate or mitigate the risks.</p>                                                                                                                                                                                                                                                                                                                                                                                                         |
| <p><strong>Vulnerability Search on Investigate</strong></p><p><em><mark style="background-color:orange;"><strong>Secure Code to Cloud</strong></mark></em></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                  | <p>The <code>vulnerable where</code> RQL clause helps you to investigate the vulnerable assets in Prisma Cloud to assess the risk and take actions to remediate and mitigate the vulnerabilities.</p><p><img src="/files/BxBkqwDbNNjwWbodBXEX" alt="" data-size="original"></p><p>For example, with this <code>vulnerable where</code> RQL clause you can find all assets affected by a CVE ID, vulnerabilities with a CVSS score larger than 9, and vulnerabilities that are Exploitable, Patchable, and in Use.</p><p>Refer to the <a href="https://docs.prismacloud.io/en/enterprise-edition/content-collections/search-and-investigate/vulnerability-queries/vulnerability-query-attributes">Vulnerabilities Query Attributes</a>.</p>                                                                                                                                                                                                                                                                                                                                                                                                                      |
| <p><strong>API Endpoints Inventory</strong></p><p><em><mark style="background-color:orange;"><strong>Secure the Runtime</strong></mark></em></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                                | <p>Prisma Cloud Inventory now includes continuous discovery of all the API endpoints in your environment. This discovery helps you to prioritize the risks and understand your security posture as well as attack vectors.</p><p><img src="/files/EqlqwL8utZjdn2nUfAah" alt="" data-size="original"></p><p>The <a href="https://docs.prismacloud.io/en/enterprise-edition/content-collections/cloud-and-software-inventory/api-endpoints-inventory"><strong>Inventory > API Endpoints</strong></a> gives insights into the discovered endpoints with details on URL Path, the HTTP method, assets relationship, services, Cloud accounts, risk factors, the workload the API endpoints are associated with, and the discovery method.</p><p>The API risk profiling gives you insights on policies violated, findings, risk factors indicators, and the associate workload on which the endpoint is hosted.</p><p>Prisma Cloud uses existing WAAS runtime rules (agent-based and agentless) to scan traffic and AWS API Gateway configurations within your deployment to list the API endpoints.</p>                                                             |
| <p><strong>Prioritize and Remediate Risks</strong></p><p><em><mark style="background-color:orange;"><strong>Secure Code to Cloud</strong></mark></em></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                       | <p>Prisma Cloud <strong>Attack Path Analysis</strong> identifies and collects a wide range of security signals to assist with risk prioritization. These signals include vulnerabilities in cloud resources, public exposure of resources to the internet, overly permissive credentials, and threat context, such as potentially malicious traffic or IP addresses.</p><p>By intelligently analyzing and correlating these signals, along with considering the business context of an application or data at risk, Prisma Cloud can guide your security teams to address the most critical risks first. This level of prioritization ensures that your organization can focus on securing your most valuable assets while minimizing the risk of data breaches or other threats. Prisma Cloud helps you identify the <a href="https://docs.prismacloud.io/en/enterprise-edition/content-collections/governance/attack-path-policies">Attack Paths</a>, which are presented in a graph view and offer valuable security context to protect your assets against high-risk threats.</p><p><img src="/files/bgKl4ozUMQrymRqNZne1" alt="" data-size="original"></p> |
| <p><strong>Application Asset</strong></p><p><em><mark style="background-color:orange;"><strong>Secure the Source</strong></mark></em></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                                       | <p>Application Asset queries are added to the <a href="https://docs.prismacloud.io/en/enterprise-edition/en/enterprise-edition/content-collections/search-and-investigate/application-asset-queries/application-asset-queries">Search and Investigate</a> page, providing a graphical representation (graph) of your software development life cycle (SDLC) and enabling you to conduct a comprehensive analysis of security issues throughout your engineering environment. You will gain valuable insights into the assets in your environment and understand the relationships between them.</p><p><img src="/files/UnvwwECkAWkRKBmrh8qa" alt="" data-size="original"></p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| <p><strong>Repository Application Graph</strong></p><p><em><mark style="background-color:orange;"><strong>Secure the Source</strong></mark></em></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                            | <ul><li>Added the option to access the <a href="https://docs.prismacloud.io/en/enterprise-edition/content-collections/application-security/visibility/repositories">Repository Application Graph</a> through a dedicated sidecar. You can access this sidecar by selecting a repository in the repository inventory table of the Repositories page.</li><li>Removed query functionality from the Repository Application Graph.</li></ul><p><img src="/files/HFyi16eITPbb0UxeQvjA" alt="" data-size="original"></p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| <p><strong>Inventory - IaC Resources</strong></p><p><em><mark style="background-color:orange;"><strong>Secure the Source</strong></mark></em></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                               | <p>Prisma Cloud introduces inventory management for <a href="https://docs.prismacloud.io/en/enterprise-edition/content-collections/cloud-and-software-inventory/iac-resources">IaC Resources</a> on the console (<strong>Inventory > IaC Resources</strong>). The inventory gives you a comprehensive list of interconnected frameworks across diverse cloud accounts and repositories, delivering enhanced visibility into cloud resource management through the console.</p><p><img src="/files/FLmbuUqhvyR6teu16qHy" alt="" data-size="original"></p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                        |
| <p><strong>GCP Drift Detection and Drift Alerts</strong></p><p><em><mark style="background-color:orange;"><strong>Secure the Source</strong></mark></em></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                    | Prisma Cloud provides support for Terraform to GCP Drift Detection, enabling you to identify instances when configurations for resources on the Google Cloud Platform deviate from the Terraform specifications in your version control system (VCS). Additionally, you will receive alerts for any divergence of your resources from your Terraform configurations, enabling you to uphold consistency and security, ensuring that your infrastructure aligns with your desired configuration.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| <p><strong>Selective Scan for Organization Member Accounts</strong></p><p><em><mark style="background-color:orange;"><strong>Secure the Infrastructure</strong></mark></em></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p> | <p>Prisma Cloud introduces selective Agentless scanning for workloads and serverless functions for the member accounts within an organization for AWS, GCP and Azure. You can selectively enable or disable agentless or serverless scanning for individual member accounts or choose to scan the entire organization. By being selective you can incrementally add accounts for scanning and choose whether to scan all accounts in the organization or just some accounts.</p><p>Enable <strong>Organization Scan</strong> to scan all the accounts in the organization</p><p><img src="/files/yhstegdAof7Vek0wIj6j" alt="" data-size="original"></p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                         |
| <p><strong>Support for New Region on AWS</strong></p><p><em><mark style="background-color:orange;"><strong>Secure the Infrastructure</strong></mark></em></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                   | <p>Prisma Cloud now ingests data for resources deployed in the Israel region on AWS.</p><p>To review a list of supported regions, select <strong>Inventory > Assets</strong>, and choose Cloud Region from the filter drop-down.</p><p><img src="/files/G8GRamk7T3fcUem4aKbn" alt="" data-size="original"></p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |

## Security Fix

| <p>HTTP/2 Rapid Reset Attack Vulnerability (CVE-2023-44487)</p><p><em><mark style="background-color:orange;"><strong>Secure the Runtime</strong></mark></em></p><p><em><mark style="background-color:orange;"><strong>30.02.137</strong></mark></em></p> | <p>This security update in v31.02.137 for <strong>Runtime Security</strong> addresses the HTTP/2 Rapid Reset Attack Vulnerability (CVE-2023-44487).</p><ol><li>Go updated from 1.20.8 to 1.20.10 (<a href="https://go.dev/doc/devel/release#go1.20.10"><https://go.dev/doc/devel/release#go1.20.10></a>).</li><li>Go package "golang.org/x/net" was updated to version 0.17.0 (<a href="https://github.com/advisories/GHSA-4374-p667-p6c8"><https://github.com/advisories/GHSA-4374-p667-p6c8></a>).</li><li>The "nghttp2" package (installed in the Defender/Console images) updated by Red Hat (<a href="https://access.redhat.com/errata/RHSA-2023:5837"><https://access.redhat.com/errata/RHSA-2023:5837></a>).</li></ol><p><strong>Action</strong> - You do not need to make any updates to Compute console or the deployed Defenders.</p> |
| -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |

## API Ingestions

| SERVICE                                                                                                                                                                                      | API DETAILS                                                                                                                                                                                                                                                                                                        |
| -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |
| <p><strong>AWS DataSync</strong></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                                                                   | <p><strong>aws-datasync-task-execution</strong></p><p>Additional permissions required:</p><ul><li><code>datasync:ListTaskExecutions</code></li><li><code>datasync:DescribeTaskExecution</code></li><li><code>datasync:ListTagsForResource</code></li></ul><p>The Security Audit role includes the permissions.</p> |
| <p><strong>AWS Transfer Family</strong></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                                                            | <p><strong>aws-transfer-family-security-policy</strong></p><p>Additional permissions required:</p><ul><li><code>transfer:DescribeSecurityPolicy</code></li><li><code>transfer:DescribeServer</code></li><li><code>transfer:ListServers</code></li></ul><p>The Security Audit role includes the permissions.</p>    |
| <p><strong>AWS WAF</strong></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                                                                        | <p><strong>aws-waf-v2-rule-group</strong></p><p>Additional permissions required:</p><ul><li><code>wafv2:GetRuleGroup</code></li></ul><p>You must manually add or update the CFT template to enable the permission.</p>                                                                                             |
| <p><strong>Azure AD B2C</strong></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                                                                   | <p><strong>azure-active-directory-b2c-tenants</strong></p><p>Additional permission required:</p><ul><li><code>Microsoft.AzureActiveDirectory/b2cDirectories/read</code></li></ul><p>The Reader role includes the permission.</p>                                                                                   |
| <p><mark style="background-color:orange;">Update</mark> <strong>Azure Application Gateway</strong></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p> | <p><strong>azure-application-gateway</strong></p><p>The resource JSON for this API has been updated to include the <code>defaultPredefinedSslPolicy</code> field. The field defines the default TLS policy to use.</p>                                                                                             |
| <p><strong>Google Vertex AI AIPlatform</strong></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                                                    | <p><strong>gcloud-vertex-ai-aiplatform-feature-store</strong></p><p>Additional permissions required:</p><ul><li><code>aiplatform.featurestores.list</code></li><li><code>aiplatform.featurestores.getIamPolicy</code></li></ul><p>The Viewer role includes the permissions.</p>                                    |
| <p><strong>Google Vertex AI AIPlatform</strong></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                                                    | <p><strong>gcloud-vertex-ai-aiplatform-metadata-store</strong></p><p>Additional permission required:</p><ul><li><code>aiplatform.metadataStores.list</code></li></ul><p>The Viewer role includes the permission.</p>                                                                                               |
| <p><strong>Google Vertex AI AIPlatform</strong></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                                                    | <p><strong>gcloud-vertex-ai-aiplatform-tensor-board</strong></p><p>Additional permission required:</p><ul><li><code>aiplatform.tensorboards.list</code></li></ul><p>The Viewer role includes the permission.</p>                                                                                                   |
| <p><strong>Google Vertex AI AIPlatform</strong></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                                                    | <p><strong>gcloud-vertex-ai-aiplatform-index-endpoint</strong></p><p>Additional permission required:</p><ul><li><code>aiplatform.indexEndpoints.list</code></li></ul><p>The Viewer role includes the permission.</p>                                                                                               |
| <p><strong>OCI Cloud Guard</strong></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p>                                                                | <p><strong>oci-cloudguard-target</strong></p><p>Additional permissions required:</p><ul><li><code>CG\_TARGET\_INSPECT</code></li><li><code>CG\_TARGET\_READ</code></li></ul><p>You must update the Terraform template to enable the permissions.</p>                                                               |

## New Policies

New Attack Path policies are available. Log in to the Prisma Cloud console and filter for the list of available policies.

## Policy Updates

<table data-header-hidden><thead><tr><th></th><th></th></tr></thead><tbody><tr><td>POLICY UPDATES</td><td>DESCRIPTION</td></tr><tr><td><strong>Policy Updates—RQL</strong></td><td></td></tr><tr><td><p><strong>GCP Kubernetes Engine Clusters have Network policy disabled</strong></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p></td><td><p><strong>Changes—</strong> The RQL has been updated as per the current network policy settings for GCP Kubernetes Engine Clusters.</p><p><strong>Current RQL—</strong></p><pre><code>config from cloud.resource where cloud.type = 'gcp' AND api.name = 'gcloud-container-describe-clusters' AND json.rule = 'networkPolicy does not exist or networkPolicy.[*] is empty'
</code></pre><p><strong>Updated RQL—</strong></p><pre><code>config from cloud.resource where cloud.type = 'gcp' AND api.name = 'gcloud-container-describe-clusters' AND json.rule = networkConfig.datapathProvider does not equal ADVANCED_DATAPATH and (addonsConfig.networkPolicyConfig.disabled is true or networkPolicy.enabled does not exist or networkPolicy.enabled is false )
</code></pre><p><strong>Severity—</strong> Low</p><p><strong>Policy Type—</strong> Config</p><p><strong>Impact—</strong> Low. Existing alerts where the cluster is configured with <strong>ADVANCED_DATAPATH</strong> will be resolved as <strong>Policy_Updated</strong>. New alerts will be generated where it checks for <strong>Calico Kubernetes Network policy</strong> not being configured.</p></td></tr></tbody></table>

## Changes in Existing Behavior

| FEATURE                                                                                                                                                                                                                                               | DESCRIPTION                                                                                                                                                                                                                                                                                                                                                                                                                                                            |
| ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| <p><strong>Enhancement to Code Security Dashboards</strong></p><p><em><mark style="background-color:orange;"><strong>Secure the Source</strong></mark></em></p><p><em><mark style="background-color:orange;"><strong>23.10.2</strong></mark></em></p> | <p>From this release <a href="https://docs.prismacloud.io/en/enterprise-edition/content-collections/dashboards/dashboards-application-security">Code Security Dashboard</a> (<strong>Dashboard > Code Security</strong>) will support the <strong>Latest Code Review Scans</strong> widget to provide insights into real-time monitoring of coding errors, and security vulnerabilities.</p><p><img src="/files/6pY2uRyS7aCCUZuiozN3" alt="" data-size="original"></p> |

## REST API Updates

| CHANGE                                           | DESCRIPTION                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| ------------------------------------------------ | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| **Code to Cloud APIs**                           | <p>The following new endpoints are added to get data that is used for plotting the deploy and runtime trends on the Code to Cloud dashboard:</p><ul><li>List Deploy Trend - <a href="https://pan.dev/prisma-cloud/api/cspm/code-to-cloud-list-deploy-trend/">GET /c2c/api/v1/deploy/trend</a></li><li>List Runtime Trend - <a href="https://pan.dev/prisma-cloud/api/cspm/code-to-cloud-list-runtime-trend/">GET /c2c/api/v1/runtime/trend</a></li></ul>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| **Command Center APIs**                          | <p>The following new endpoints are available for the Command Center API:</p><ul><li>List Total Alerts by Severity - <a href="https://pan.dev/prisma-cloud/api/cspm/command-center-list-total-alerts-by-severity/">POST /api/v1/summary/{swimlane-type}</a></li><li>List Top N Assets - <a href="https://pan.dev/prisma-cloud/api/cspm/command-center-list-top-assets/">POST /api/v1/top-assets/{swimlane-type}</a></li><li>List Top Policies - <a href="https://pan.dev/prisma-cloud/api/cspm/command-center-list-top-policies/">POST /api/v1/top-policies/{swimlane-type}</a></li></ul>                                                                                                                                                                                                                                                                                                                                                                                                              |
| **Cloud Discovery and Exposure Management APIs** | New endpoints are available in the [Cloud Discovery and Exposure Management](https://pan.dev/prisma-cloud/api/cspm/cloud-discovery-and-exposure-management/) category to onboard cloud accounts and get details about the exposed or unmanaged assets.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                |
| **Collection APIs**                              | <p>The following new endpoints are added to manage collections which is a logical group of assets:</p><ul><li>Get Collection by ID - <a href="https://pan.dev/prisma-cloud/api/cspm/get-collection-by-id/">GET /entitlement/api/v1/collection/{id}</a></li><li>Update Collection- <a href="https://pan.dev/prisma-cloud/api/cspm/update-collection-by-id/">PUT /entitlement/api/v1/collection/{id}</a></li><li>Delete Collection - <a href="https://pan.dev/prisma-cloud/api/cspm/delete-collection-by-id/">DELETE /entitlement/api/v1/collection/{id}</a></li><li>Get All Collections - <a href="https://pan.dev/prisma-cloud/api/cspm/get-all-collections/">GET /entitlement/api/v1/collection</a></li><li>Create Collection - <a href="https://pan.dev/prisma-cloud/api/cspm/create-collection/">POST /entitlement/api/v1/collection</a></li></ul>                                                                                                                                                 |
| **Updates to Cloud Account APIs**                | <p>A new parameter, <strong>defaultMemberState</strong>, is added to the following endpoints:</p><ul><li>Add Cloud Account (Azure) - <a href="https://pan.dev/prisma-cloud/api/cspm/add-azure-cloud-account/">POST /cas/v1/azure\_account</a></li><li>Update Cloud Account (Azure)- <a href="https://pan.dev/prisma-cloud/api/cspm/update-azure-cloud-account/">PUT /cas/v1/azure\_account/{account\_id}</a></li><li>Add Cloud Account (AWS) - <a href="https://pan.dev/prisma-cloud/api/cspm/add-aws-cloud-account/">POST /cas/v1/aws\_account</a></li><li>Update Cloud Account (AWS)- <a href="https://pan.dev/prisma-cloud/api/cspm/update-aws-cloud-account/">PUT /cas/v1/aws\_account/{id}</a></li><li>Add Cloud Account (GCP) - <a href="https://pan.dev/prisma-cloud/api/cspm/add-gcp-cloud-account/">POST /cas/v1/gcp\_account</a></li><li>Update Cloud Account (GCP) - <a href="https://pan.dev/prisma-cloud/api/cspm/update-gcp-cloud-account/">PUT /cas/v1/gcp\_account/{id}</a></li></ul> |

## Deprecation Notice

| **Feature**                                                                                                                                                                                                                                                                                                                                                             | **Description**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| <p><strong>Date Filter Support</strong></p><p><em><mark style="background-color:orange;"><strong>Secure the Infrastructure</strong></mark></em></p><p><mark style="background-color:orange;">This deprecation was first announced in the Look Ahead that was published with the 23.10.1 release.</mark></p>                                                             | <p>The Date filter is being deprecated on <strong>Inventory > Assets</strong>, <strong>Asset Explorer</strong>, and <strong>Compliance > Overview</strong>.</p><p>With the 23.10.2 release, the date filter will no longer be supported. With this change, links in Compliance reports that were generated before 23.10.2 will be removed.</p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            |
| <p><strong>Data Dashboard</strong></p><p><em><mark style="background-color:orange;"><strong>Secure the Infrastructure</strong></mark></em></p><p><mark style="background-color:orange;">This deprecation was first announced in the Look Ahead that was published with the 23.10.1 release.</mark></p>                                                                  | <p>The Data Dashboard is being deprecated on <strong>Dashboards > Data</strong>.</p><p>With the 23.10.2 release, the widgets in the <strong>Data dashboard</strong> will be available in a custom dashboard. To view the Data Security information, you will be able to create a custom dashboard and add the data security widgets.</p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| <p><strong>Removal of deprecated AWS, GCP, and Azure Cloud Types in CSPM Cloud Accounts API</strong></p><p><em><mark style="background-color:orange;"><strong>Secure the Infrastructure</strong></mark></em></p><p><mark style="background-color:orange;">This deprecation was first announced in the Look Ahead that was published with the 23.6.1 release.</mark></p> | <p>The following endpoints no longer support the AWS, GCP, and Azure cloud types:</p><ul><li><a href="https://pan.dev/prisma-cloud/api/cspm/add-cloud-account/">POST /cloud/{cloud\_type}</a></li><li><a href="https://pan.dev/prisma-cloud/api/cspm/update-cloud-account/">PUT /cloud/{cloud\_type}/{id}</a></li><li><a href="https://pan.dev/prisma-cloud/api/cspm/get-cloud-account-status/">POST /cloud/status/{cloud\_type}</a></li></ul><p>The following APIs released previously, provide the same functionality separately for each cloud type.</p><ul><li><p><strong>AWS APIs released in 23.3.1:</strong></p><ul><li><a href="https://pan.dev/prisma-cloud/api/cspm/add-aws-cloud-account/">POST /cas/v1/aws\_account</a></li><li><a href="https://pan.dev/prisma-cloud/api/cspm/update-aws-cloud-account/">PUT /cas/v1/aws\_account/{id}</a></li><li><a href="https://pan.dev/prisma-cloud/api/cspm/get-aws-cloud-account-status/">POST /cas/v1/cloud\_account/status/aws</a></li></ul></li><li><p><strong>Azure APIs released in 23.4.1:</strong></p><ul><li><a href="https://pan.dev/prisma-cloud/api/cspm/add-azure-cloud-account/">POST /cas/v1/azure\_account</a></li><li><a href="https://pan.dev/prisma-cloud/api/cspm/update-azure-cloud-account/">PUT /cas/v1/azure\_account/{id}</a></li><li><a href="https://pan.dev/prisma-cloud/api/cspm/get-azure-cloud-account-status/">POST /cas/v1/cloud\_account/status/azure</a></li></ul></li><li><p><strong>GCP APIs released in 23.4.2:</strong></p><ul><li><a href="https://pan.dev/prisma-cloud/api/cspm/add-gcp-cloud-account/">POST /cas/v1/gcp\_account</a></li><li><a href="https://pan.dev/prisma-cloud/api/cspm/update-gcp-cloud-account/">PUT/cas/v1/gcp\_account/{id}</a></li><li><a href="https://pan.dev/prisma-cloud/api/cspm/get-gcp-cloud-account-status/">POST /cas/v1/cloud\_account/status/gcp</a></li></ul></li></ul> |
| <p><strong>Supply Chain Graph</strong></p><p><em><mark style="background-color:orange;"><strong>Secure the Code</strong></mark></em></p>                                                                                                                                                                                                                                | <p>From this release, the <strong>Application Security > Supply Chain</strong> page is no longer available as a standalone page. The package dependency tree will be added to the <strong>Application Graph</strong> on <strong>Investigate</strong> in a future release.</p><p>Use <strong>Application Security > Projects</strong> for insights into vulnerabilities within open-source packages</p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| <p><strong>Development Pipelines</strong></p><p><em><mark style="background-color:orange;"><strong>Secure the Code</strong></mark></em></p>                                                                                                                                                                                                                             | From this release **Application Security > Development Pipelines** is no longer available as a standalone page. For **Code Reviews** details, use the **Latest Code Review Scans** widget on **Dashboard > Code Security**.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               |


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.prismacloud.io/release-notes/prisma-cloud-release-information/features-introduced-in-2023/features-introduced-in-october-2023.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
