{"id":2401,"date":"2022-02-24T12:56:40","date_gmt":"2022-02-24T12:56:40","guid":{"rendered":"https:\/\/sdf-docs.mansystems.com\/docs\/release-notes\/application-code-review-acr\/2-8-and-later\/"},"modified":"2023-10-11T07:55:07","modified_gmt":"2023-10-11T07:55:07","slug":"2-8-and-later","status":"publish","type":"docs","link":"https:\/\/sdf-docs.clevr.com\/?docs=release-notes\/application-code-review-acr\/2-8-and-later","title":{"rendered":"2.8 and later"},"content":{"rendered":"\n<h1 class=\"wp-block-heading\">2022, May 12th release <\/h1>\n\n\n\n<ul class=\"wp-block-list\" id=\"block-955f2295-e3ee-4b99-8373-e6d20366d8ee\"><li>Rule Microflow should only have permissions if used from a page now requires sub-nanoflows to not have permissions<ul><li>New rule also checks all other prefixes should have permissions. So existing rule no longer invites to add permissions<\/li><\/ul><ul><li>Both rules allow for microflow without prefix in the name to be considered a sub microflow, i.e. does not need permission<\/li><\/ul><\/li><li>Extending rule &#8216;Latest mendix version&#8217;  to either include only latest LTS\/MTS versions or include also the very latest Mendix release<\/li><li>Support for the different formats in the Mendix Repository API that returns datetimes in multiple RFC3339 formats<\/li><li>Support Mendix 9.13 via SDK<\/li><\/ul>\n\n\n\n<h1 class=\"wp-block-heading\">2022, April 20th release <\/h1>\n\n\n\n<ul class=\"wp-block-list\" id=\"block-955f2295-e3ee-4b99-8373-e6d20366d8ee\"><li>Rule that entity xpath attributes should have at most read access improved to:<ul><li>Show user roles that are in violation<\/li><li>Configure to skip a certain user role<\/li><\/ul><\/li><li>Rule Sub-Microflows that are used in Nanoflows should be prefixed properly now only checks microflows as sub of nanoflows, so nanoflows calling nanoflows are no longer violated.<\/li><li>Rule Sub-micro\/nanoflows should be prefixed correctly now check for match call, so microflow calling microflow or nanoflow calling nanoflow<\/li><li>Rule Microflow should only have permissions if used from a page now requires sub-nanoflows to not have permissions and also checks all other prefixes (than the ones configured in this rule) should have permissions<\/li><li>Rule commit in loop can now be annotated on the call microflow action. Also, the rule mentions all violations and no longer stops on the first violation<\/li><li>Support Mendix 9.12<ul><li>Support for GIT project (current user via Mendix API and via special user (default or custom) )<\/li><li>Annotations on widgets can be in the class property<\/li><li>A <a href=\"https:\/\/docs.mendix.com\/developerportal\/community-tools\/warden\/\" data-type=\"URL\" data-id=\"https:\/\/docs.mendix.com\/developerportal\/community-tools\/warden\/\">Mendix PAT<\/a> is required to synchronize a project branches\/revisions and for new reviews unless you are using the smartdigitalfactory@mansystems.nl user. <\/li><\/ul><\/li><li>Support for Mendix API SDK download via special user (to bring on par with SVN and GIT downloads)<\/li><li>Using special user instead of auto check account for automated features in CI\/CD. So on time or on commit pipelines, API calls. This prevents people from running code as another person with the exception of a special user.<\/li><li>Minor bugfix on CI\/CD not storing current date time on [Last run] attribute on save<\/li><\/ul>\n\n\n\n<h1 class=\"wp-block-heading\">2022, March 4th release<\/h1>\n\n\n\n<ul class=\"wp-block-list\"><li>Fix for enterprise admin with respect to the new custom special user<\/li><\/ul>\n\n\n\n<h1 class=\"wp-block-heading\" id=\"2022,-February-24th-release\">2022, February 24th release<\/h1>\n\n\n\n<ul class=\"wp-block-list\"><li>User has no delete-permissions for DefaultSetting objects. Added check that user cannot delete a global DefaultSetting and used existing submicroflow to delete DefaultSetting<\/li><li>AMS timeouts extended<\/li><li>Custom special user for enterprise licensees<\/li><li>Rules checking for empty validation messages for each language should limit it to languages set on project level.<\/li><li>Disabled option &#8216;Show file in browser instead of downloading, if possible&#8217;<br>Chrome PDF viewer shows the PDF, but will only download a 404-html page due to DeleteAfterDownload<\/li><li>Fix showing duplicate classes<\/li><li>Support for Mendix 9.10.1<\/li><\/ul>\n\n\n\n<h1 class=\"wp-block-heading\" id=\"2022,-January-18th-release\">2022, January 18th release<\/h1>\n\n\n\n<ul class=\"wp-block-list\"><li>Compatibility to Mendix 9.9.1<\/li><li>Fix for validating enterprise license user invitation.<\/li><\/ul>\n\n\n\n<h1 class=\"wp-block-heading\" id=\"2021,-December-12th-release\">2021, December 12th release<\/h1>\n\n\n\n<p>Removal log4j jar<\/p>\n\n\n\n<h1 class=\"wp-block-heading\" id=\"December-1st-release\">2021, December 1st release<\/h1>\n\n\n\n<ul class=\"wp-block-list\"><li>Fix potential security issue due to existence of old MxAdmin record.<\/li><li>getreport API returning in JSON a contents property with PDF file encoded in BASE64. The report is a simplified violations report without graphs and allowlist info. So violation stats and violations.<\/li><\/ul>\n\n\n\n<h1 class=\"wp-block-heading\" id=\"November-29th-release\">2021, November 29th release<\/h1>\n\n\n\n<ul class=\"wp-block-list\"><li>Support Mendix 9.7<\/li><li>Code review API v2 beta<\/li><li>Fix for rule settings making string parameters not required<\/li><li>Fix reviewing Mendix 9 expressions with paths from a $Object<\/li><li><strong>Internal:<\/strong><ul><li>Allow to rename encryption key<\/li><li>Encrypting more places<\/li><li>Allow to turn free trial off by global setting<\/li><\/ul><\/li><\/ul>\n\n\n\n<h1 class=\"wp-block-heading\" id=\"October-31st-release\">2021, October 31st release<\/h1>\n\n\n\n<ul class=\"wp-block-list\"><li>Support Mendix 9.6<\/li><li>AppStore compare bugfix<\/li><li>Database size reduced by removing unused entity in dependency checker<\/li><li>Fix customer issue where review suddenly returned only a few models<\/li><\/ul>\n","protected":false},"featured_media":0,"parent":522,"menu_order":9,"comment_status":"open","ping_status":"closed","template":"","doc_tag":[],"class_list":["post-2401","docs","type-docs","status-publish","hentry"],"comment_count":0,"_links":{"self":[{"href":"https:\/\/sdf-docs.clevr.com\/index.php?rest_route=\/wp\/v2\/docs\/2401"}],"collection":[{"href":"https:\/\/sdf-docs.clevr.com\/index.php?rest_route=\/wp\/v2\/docs"}],"about":[{"href":"https:\/\/sdf-docs.clevr.com\/index.php?rest_route=\/wp\/v2\/types\/docs"}],"replies":[{"embeddable":true,"href":"https:\/\/sdf-docs.clevr.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2401"}],"version-history":[{"count":3,"href":"https:\/\/sdf-docs.clevr.com\/index.php?rest_route=\/wp\/v2\/docs\/2401\/revisions"}],"predecessor-version":[{"id":2474,"href":"https:\/\/sdf-docs.clevr.com\/index.php?rest_route=\/wp\/v2\/docs\/2401\/revisions\/2474"}],"up":[{"embeddable":true,"href":"https:\/\/sdf-docs.clevr.com\/index.php?rest_route=\/wp\/v2\/docs\/522"}],"next":[{"title":"2.7","link":"https:\/\/sdf-docs.clevr.com\/?docs=release-notes\/application-code-review-acr\/2-7","href":"https:\/\/sdf-docs.clevr.com\/index.php?rest_route=\/wp\/v2\/docs\/2276"}],"prev":[{"title":"3.0","link":"https:\/\/sdf-docs.clevr.com\/?docs=release-notes\/application-code-review-acr\/3-0","href":"https:\/\/sdf-docs.clevr.com\/index.php?rest_route=\/wp\/v2\/docs\/2627"}],"wp:attachment":[{"href":"https:\/\/sdf-docs.clevr.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2401"}],"wp:term":[{"taxonomy":"doc_tag","embeddable":true,"href":"https:\/\/sdf-docs.clevr.com\/index.php?rest_route=%2Fwp%2Fv2%2Fdoc_tag&post=2401"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}