Okta Identity Governance release notes

Release 2025.11.0

Features and enhancements

Security access reviews is generally available in Preview environments

A security access review is a new, security-focused user access review that can be automatically triggered by events. These reviews provide a unified view of a user's access, and contextual information about their access history including an AI-generated access summary, allowing you to investigate and take immediate remediation actions like revoking access. You also have the option to enable or disable the AI summary from the Governance AI tab of the Settings page. See Security access reviews.

Changes to security access reviews are generally available in Preview environments

  • For resources that require manual remediation, reviewers can now select Revoke access or Restore access. When a reviewer selects these, Okta records this action in the review history for admin to take manual remediation action on. Okta also fires an access.review.action System Log event. See Review access.

  • You can now update the reviewer and end date of a security access review after it launches. See Manage Security Access Reviews .

Entitlement history is generally available in Preview environments

Admins can now access a user's entitlement history. This feature improves auditing and compliance tasks and enhances visibility for troubleshooting access issues. See View user entitlements.

Resource owners is generally available in Preview environments

Assign owners to groups, apps, entitlements, and entitlement bundles. This feature allows you to automatically route access request steps and access certification campaign reviews to the correct stakeholder, improving the efficiency and accuracy of your governance processes. It also helps ensure that the right stakeholder is always involved in access decisions without requiring manual updates to your configurations.

  • Access Requests: When configuring approval sequences in access request conditions, you can now assign approvals, tasks, or questions directly to resource owners. Configure an approval sequence.

  • Access Certifications: When creating certification campaigns, you can now select the Resource Owner as the designated reviewer. See Certification campaign reviews.

See Resource owners.

Export Okta Identity Governance reports in PDF format is generally available in Production environments

You can now export Okta Identity Governance reports to PDF. When exporting, you can also select specific columns to include in the report.

Universal Logout for Okta Access Requests web app

The Okta Access Requests web app now supports Universal Logout. This enables admins to automatically sign users out of this app when Universal Logout is triggered. See Universal Logout supported apps and devices.

Fixes

  • When interacting with the Access Request web app using Safari browser, users couldn't tag another user with @ in the request's chat. (OKTA-1005685)

  • Deleted request types sometimes reappeared if the org had the Unified Requester Experience feature enabled. (OKTA-1040545)

  • The History section in the Review details panel didn't display the reviewer's decision if the campaign creator information was missing for recurring campaigns with multilevel reviews. (OKTA-1046833)

To view release notes prior to this release, see Okta Identity Governance release notes (Archive).