Resolved issues
Forcepoint DSPM 4.1.3 Hotfix
Posted on Aug 17, 2026
- Fixed an issue where OneDrive/SharePoint discovery scans could be interrupted when Microsoft Graph API throttling occurred.
- Enterprise Search now displays the classification tag alias rather than the underlying tag name after a manual classification edit.
- Corrected the externally shared flag for the SharePoint Online service account permission, which was incorrectly reported as externally shared.
- The SMB connector now validates file creation timestamps. Files from servers that return no creation time no longer show invalid dates and instead uses the last modified or accessed time.
- Fixed the Enterprise Search results table showing null or incorrect created/modified dates. Stored data and exports were always correct; this was a display-only issue.
- Restored the Trustee Name and Trustee Login Name columns in Enterprise Search, they populate correctly in both the on-screen table and the export.
- Fixed a race condition in discovery that could cause it to become stuck under heavy throttling as observed for OneDrive and SharePoint Online scan.
- Corrected the retry classification for throttling and lock errors (423/429); the number of retries was modified to correctly handle the throttling errors.
- Added exponential backoff and recovery mechanism to prevent scan errors and scans left open indefinitely.
- SMB tagging now records file audit log events as hard tagging events, matching the fact that SMB supports hard tagging only.
- Fixed manual classification edits inserting a stray apostrophe into hyphenated labels (for example, Highly Confidential). Labels are now stored exactly as selected.
- The "Incomplete" discovery status reflected a temporary display state that appeared while the discovery scan was still in progress. It has since been updated to display as "In Progress" for clarity.
- Fixed the DLP Rule Names column in the Enterprise Search export. It no longer shows an unreadable object or populates entries for files without a DLP match. The column now displays the rule name or remains empty when no rule matches.
- Improved FDC agent connection reliability when PDF configuration is disabled.
Forcepoint DSPM 4.1
Posted on July 08, 2026
| ID | Fix |
|---|---|
| DSPM-7042 | Fixed an issue that prevented SharePoint Online scans from discovering files when specific permission types, including shared links and group permissions, were present. |
| DSPM-1516 | Implemented parallel processing for pattern-matching (Regexes) to improve performance. |
| DSPM-1515 | Fixed an issue where classification tags were not applied when tagging PDF files. |
| DSPM-1234 | Fixed an issue where classification results could be inconsistent when multiple classification rules matched the same file. |
| DSPM-1226 | Fixed file lineage lookup functionality that was broken for Google Drive, Box, Dropbox and Slack. |
| DSPM-1225 | Fixed an issue where persistent tagging failed for Microsoft Visio files. |
| DSPM-1115 | The file tagging action, previously unavailable on the Data Sources page, has now been restored. Users can now tag files directly from the Data Sources interface without needing to navigate to the Enterprise Search page. |
| DSPM-1114 | [For Cloud DSPM Customers Only] Removed duplicate detector menu item from DSPM console left navigation panel. |
| DSPM-1044 | Fixed SharePoint on-prem sub-container loop causing same folders to be rescanned indefinitely. |
| DSPM-973 | Users can now create, save, and view up to 30 departments in the Policy Center UI—increased from the previous 20-department limit. |
| DSPM-965 | Fixed Email Notification validation functionality. |
| DSPM-881 | Files on SMB shares that contain sensitive content and grant write permissions (e.g., Full Control, Modify, or Read & Write) to multiple users are now correctly classified as MEDIUM risk, in alignment with the documented risk-level criteria. Previously, these files were incorrectly classified as LOW risk. |
| DSPM-848 | Restored Confidence scores to Compliance Tags and Data Attributes in CSV and JSON exports. |
| DSPM-845 | Fixed content extractor timeout overrun issue causing excess failures in content extraction. |
| DSPM-784 | Fixed an issue where trustee scans remained stuck in the In Progress state after transient errors occurred. Scans now correctly log errors, retry processing, and update their status to FAILED or INCOMPLETE as appropriate. |
| DSPM-324 | Fixed incorrect SMB Risk Classification for broad access permissions. |