Sophos Reporter Release Notes
   All Release Notes Sophos Reporter 3.0.3.105 (2026-05-28)
Microsoft 365
  • Source filtering: Microsoft 365 imports now support filtering by source. You can choose exactly which user chats, user emails, Teams, and channels are imported, rather than importing everything from the tenant.
  • Keyword highlighting: When viewing the full context around a flagged message, matched keywords are now highlighted in the surrounding messages, not just in the message that triggered the alert.
  • Next import indicator: A ‘Next import in…’ indicator has been added to the Microsoft 365 UI, showing when the next scheduled import will run. This avoids confusion when an expected alert hasn’t yet appeared because the next import is still pending.
  • Chat Messages widget: Reworked so that sender and recipient appear in a single column, consistent with the Email widget layout.
  • Duplicate messages: Fixed an issue where chat messages could appear duplicated in the Safeguarding Report after a reaction or reply triggered a re-import.
  • Multiple recipients: Fixed an issue where chat messages sent to more than one person displayed as ‘System.String[]’ in the Chat Messages widget instead of the list of recipients.
  • Draft emails: Fixed an issue where emails drafted and later sent would continue to show as ‘Email – Draft’ in reports rather than updating to ‘Email – Sent’.
  • Message ordering: Fixed message ordering in the full message context view, so edits and emoji reactions no longer cause messages to appear out of sequence. Messages now display in the same order as in Microsoft Teams.
  • Stopping imports: Fixed errors that occurred when stopping a Microsoft 365 import mid-run. The ‘Import Now’ button is also now disabled until the import engine is ready, preventing errors from clicking it during startup.
  • Gateway errors: Improved handling of transient gateway errors (HTTP 502) during Microsoft 365 user chat and email imports. Affected entries are now retried on the next import instead of being skipped.
  • PDF exports: Fixed display issues with the Chat Messages widget and keyword highlight positioning when reports are exported to PDF.
Features & Improvements
  • Restore Factory Defaults: A ‘Restore Factory Defaults’ option has been added under Settings > Productivity, allowing you to reset the productivity configuration back to defaults.
  • Emojis in PDF exports: Emojis now render correctly in PDF exports of Safeguarding Reports. Previously, emojis appeared as an unknown-character box.
  • Partially Failed reports: A new ‘Partially Failed’ report status has been added, indicating when a report completed but with some missing data. Previously these reports would appear as either successful or fully failed, with no clear way to tell the difference.
  • Keyword Group scoping: Keyword groups can now be scoped to apply only to specific data types (semantics), giving you finer control over where each group is matched. The ‘Rename Keyword Group’ UI has been replaced with an ‘Edit Keyword Group’ dialog that includes the list of applicable semantics.
  • Keyword matching: Keyword matching against large blocks of text (such as newsletters containing multiple unrelated articles) has been improved. An exclusion triggered by one section no longer suppresses legitimate matches elsewhere in the same text.
  • Keyword lookups: Keyword lookups are faster and more reliable, particularly for large keyword sets.
  • Elasticsearch: Startup and recovery handling has been improved, resulting in more reliable service restarts after timeouts or unresponsive states.
Fixes
  • Scheduled report emails: Fixed an issue where scheduled report emails could silently fail to send even though the report itself completed successfully. Queued emails will now correctly attempt to resend.
  • Empty attachments: Fixed an issue where queued or retried emails were sending zero-byte (empty) attachments instead of the intended PDF report.
  • Email retries: Email retries are now capped at a maximum number of attempts, so failing emails can no longer remain stuck in the queue indefinitely.
  • Queued emails: Queued emails now store their attachments on disk in a temporary file rather than in memory, reducing memory pressure when many large PDF reports are queued.
  • Sharing reports: Fixed an ‘Index and length must refer to a location within the string’ error that occurred when sharing a Safeguarding Report via email with the ‘Attach PDF’ option enabled.
  • Report errors: Fixed invalid XmlNodeType errors that occurred when opening certain reports.
  • Filtering: Filtering by User Login Name is no longer case-sensitive.
  • Report files: Report files are now written out as soon as each report is generated, reducing the risk of data loss if the Fastvue service is interrupted partway through a scheduled run.
Known Issues
  • Microsoft 365: For emails with a subject line that contains a keyword match, the full email body is imported, not just the first 250 characters. Fixed in 3.0.3.106.
  • Microsoft 365: Emails with keyword matches in the Email Subject are not displayed in the Safeguarding Report. Only emails with keyword matches in the body of the email are displayed. Fixed in 3.0.3.106.
Download Latest Update