Release Notes

What changed in each version of Secret Keybox, and what to check before you upgrade. Questions? Email contact@secretkeybox.com.

Version 2.4.1 released 11 September 2026

Wording fixes in the SKB Admin tab. The Health check now lists the missing picklist values per field, ready to copy, and names the Credential Access Log object and the Setup path correctly.


Version 2.4 released 7 September 2026

This version adds a full access log, blocks "Login As" abuse, and manages credentials when a user leaves.

After you upgrade

Open the SKB Admin tab. Its Setup card tells you what to do. Permission sets update on their own; there is nothing to assign.

  1. Add the missing picklist values. A package upgrade cannot add values to a picklist that already exists in your org. The Health check names the values your org is missing on the Credential Access Log object, in its Action and Cause fields. To add them: Salesforce Setup, Object Manager, Credential Access Log, Fields & Relationships, open the field, then New in the Values section. The Health check lists each value after the name of its field. Enter the value only, without the field name and the colon: Share_Granted, not Action: Share_Granted. The log records every event either way; only report and list-view filters need the values.
  2. Check log retention. After the upgrade the retention is 3 years (1095 days): entries older than that are removed nightly. Clear the field to keep every entry forever, or set another number of days. Nothing in your log is older than 3 years yet, so no entry is removed on the day you upgrade.
  3. Review what you keep in Notes. Changes to Notes, Name, Username, and URL are logged with old and new values. Administrators with Secret Keybox Admin Access can read this history without opening the credential. Avoid sensitive text in Notes if that matters.
  4. Set a fallback user so that the credentials of deactivated users have somewhere to go.
  5. Reassign credentials in the app. Data Loader and Change Owner can no longer change a credential's owner. Use "Transfer ownership", or the transfer for deactivated users.

Access log

Login As protection

Credentials of deactivated users

Setup tab

Other changes


Version 2.3 released 4 September 2026

This release fixes issues reported by testers.

Fixes