Elevate Your Egnyte Expertise. Join our Customer Community to connect with a network of peers and share game-changing strategies. Join Today

Welcome to
Help Desk

Product Updates
Training
Support
Ideas Community Contact Support

Secure & Govern V 26.9 - Unusual Access Severity Scoring Update

External Release Notes: Secure & Govern v 26.9 (August 19, 2026)

New Features and Enhancements

Unusual Access Severity Scoring Update

Severity scoring for Unusual Access issues has been updated to provide a more meaningful distribution of scores. Previously, most detections clustered at 8 or 9, making it difficult to distinguish issues requiring immediate attention. Severity is now calculated using a default range of 5 to 9 and considers additional context for each detection, including:

  • Type of activity, such as access, download, delete, or mass content access
  • Initiating user's role: Admin, Power User, or Standard User
  • Whether the user is on the User Watchlist
  • How far the activity volume exceeds the user's normal baseline

This results in scores that better reflect the risk of each detection. Lower-risk activity, such as opening non-sensitive files, is scored toward the lower end of the range, while higher-risk combinations, such as a watch listed user or an Admin downloading an unusually high volume of files, continue to score at the top.

- The 5–9 range is the default. Customers that have changed their Unusual Access severity range from the original 7–9 default retain their custom range. For customers who have previously modified their range, we recommend updating it to the 5–9 range to take full advantage of the new scoring model.
- The updated scoring applies only to newly created Unusual Access issues. Existing issues retain their originally assigned severity and are not re-scored under the updated model.
- Downloads made through Windows Explorer are assigned the lowest severity in the range because this activity is frequently associated with system-level processes such as search or indexing. 

Setting for High-Priority Automatically Applied Purview Labels to Override Manually Applied Labels

Egnyte now provides an option for admins to allow higher-priority, automatically applied Microsoft Purview labels to override ones applied manually. This setting is unchecked by default. 

When enabled, manually applied labels are overridden only when the automatically applied label has a higher priority; manually applied labels with equal or higher priority are preserved. This helps maintain consistent labeling and support compliance requirements by ensuring that higher-priority labels take precedence. 

S&G_Release1.png

External Replication: Sync Delete for Azure Blob Destination (Limited Availability)

An additional setting is now available for Azure Blob destination to enable or disable Sync deletions from source to destination. The option is unchecked by default. Earlier it was available for both Amazon S3 and Wasabi destinations, this is now extended to Azure Blob.

S&G_Release2.png

This feature is available to a limited number of customers. External Replication is available as a standalone add-on for Enterprise Lite, Enterprise, Essentials, Elite, and Ultimate plans. Please reach out to the Products team to request for the feature. 

Additional Information and Resources

The current release contains a few improvements to the existing functionality.

  • Minor performance and stability improvements 
  • Minor logging and UI improvements 
  • Minor bug fixes 

The changes will be available to all the users by August 21, 2026. 

Was this article helpful?
0 out of 0 found this helpful

For technical assistance, please contact us.