Combined Code Signing release notes for upgrades from Xanadu to Zurich

  • Release version: Zurich
  • Updated August 11, 2026
  • 4 minutes to read
  • Summarize
    Summarized using AI
    This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.

    Summary of Combined Code Signing release notes for upgrades from Xanadu to Zurich

    This consolidated release notes document outlines the key updates, new features, changes, and enhancements for the ServiceNow Code Signing product from the Xanadu release family through to Zurich. It is designed to help ServiceNow customers prepare for upgrades by summarizing relevant information across multiple releases and highlighting critical upgrade tasks.

    Show full answer Show less

    Important Upgrade Information

    • No specific pre- or post-upgrade tasks were identified for any release from Xanadu through Zurich.
    • Activation of Code Signing requires enabling the Code Signing (com.glide.codesigningenterprise) plugin, consistent across Yokohama and Zurich releases.

    New Features Introduced in Zurich

    • Plugin Installation Simplification: Customer administrators can now install the Code Signing plugin directly via the ServiceNow Plugin portal, eliminating the need to engage Customer Service and Support for framework enablement. This supports self-service deployment and streamlines installation.
    • Quorum Controlled Certificate Revocation: A new security feature allows revocation of Code Signing certificates through a quorum-based approval policy, requiring multiple stakeholder approvals to help prevent unauthorized or accidental revocations.
    • Code Signing Health and Status Dashboard: This centralized dashboard provides a user-friendly interface to monitor environment health, configuration status, and essential components, along with actionable guidance for resolving issues efficiently.

    Key Changes and Enhancements

    • Guardrails Check Improvements (Yokohama): Enhanced signature verification security, optimized performance of the Guardrails scan, and improved log file naming conventions for easier file identification.
    • Update Set Size Limitation (Yokohama): Update sets are now capped at a maximum of 10,000 records to improve user experience and system performance.
    • Instance Naming Updates (Yokohama): Renaming of instances for clarity—trusted non-production instances are now “trusted instance,” and protected production instances are now “protected instance.”
    • Enhanced Code-Signing Verification for ACC Framework Table (Zurich): Support added for generating KMF signature files for tables extending Agent Client Collector Configuration and Plugin, enabling attachments to pass code-signing verification and be downloaded to the MID Server when code signing is enabled.
    • Navigation and Page Renaming (Zurich): Improved accessibility and streamlined functionality through a restructured navigation panel and updated page names.

    Removed or Deprecated Features

    There were no removals or deprecations of Code Signing features between Xanadu and Zurich.

    Additional Notes

    • No updates to browser requirements, localization, or accessibility information were introduced in these releases.
    • Zurich Patch 4 introduces the Code Signing OOB Apps Signatures plugin (com.glide.codesigning.oobappssignatures), enabling installation of build-time signatures for relevant ServiceNow Store application versions.
    • The Code Signing Migration workflow helps identify signatures created with expired or inactive certificates and reassigns them automatically, simplifying maintenance.
    • Use of Code Signing Guardrails is recommended to improve signature verification checks and create more secure workflows.

    What This Means for ServiceNow Customers

    Upgrading to Zurich enhances your Code Signing capabilities with streamlined plugin installation, stronger security controls through quorum-based certificate revocation, and improved environment monitoring using the new Health and Status dashboard. The updates to guardrails and verification processes support more secure and efficient code signing workflows. Renamed instances and improved navigation will help reduce confusion and ease administration. Additionally, the migration workflow and OOB Apps Signatures plugin facilitate smoother management of signatures and application integrity.

    Consolidated page of all release notes for Code Signing from Xanadu to Zurich.

    How to use this page

    To help you prepare for your upgrade, we have combined the cross-family Code Signing release notes onto one page. Read this summary of the new features, changes, and updated information for your product from Xanadu to Zurich.

    Tip:
    If there were no updates for a release notes section in a certain family release, we included a short note for your reference. For example, if a product did not have any updates in Tokyo, the row says "No updates for this release."

    Important information for upgrading Code Signing to Zurich

    Before you upgrade to Zurich, review these pre- and post-upgrade tasks and complete the tasks as needed.

    Release Release notes

    Xanadu

    No updates for this release.

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    New features

    Between your current release family and Zurich, new features were introduced for Code Signing.

    Release Release notes

    Xanadu

    No updates for this release.

    Yokohama

    No updates for this release.

    Zurich

    Code Signing Installation using Plugin

    Customer administrators can now install the Code Signing plugin directly from the ServiceNow Plugin portal without the need to contact the Customer Service and Support team to enable the Code Signing framework. This enhancement supports self-service deployment and simplifies the installation process.

    Quorum Controlled Certificate Revocation
    Revoke Code Signing certificates using a quorum-based control policy. Revoke certificates to help prevent them from being used to verify signatures. A quorum-based approval flow promotes added security by requiring approvals from multiple stakeholders, to help prevent unintended or unauthorized certificate revocations.
    Code Signing Health and Status Dashboard
    The new Code Signing Health and Status dashboard provides a centralized, user-friendly interface to monitor the overall health and configuration of your code signing environment. It highlights configuration settings, displays the status of essential components, and offers actionable guidance to help resolve issues effectively.

    Changes

    Between your current release family and Zurich, some changes were made to existing Code Signing features.

    Release Release notes

    Xanadu

    No updates for this release.

    Yokohama

    Enhancements to the guardrails check
    The Code Signing Guardrails check has been improved to enhance signature verification, resulting in more secure workflows. In addition, multiple optimizations have been implemented to improve the performance benchmarks of the Guardrails scan, and log files now feature a more intuitive naming convention, which simplifies file identification within your system.
    Generate update sets with a maximum size of 10,000 records
    Code Signing now enforces limits on large update sets to improve the user experience. The maximum size for an update set is 10,000 records.
    Naming updates for trusted and production instances
    The trusted non-production instance has been renamed to trusted instance, and the protected production instance has been renamed to protected instance. These naming updates have been made to better align with customer usage.

    Zurich

    Enhanced Code-Signing Verification for ACC Framework Table
    You can now generate KMF signature files for tables that extend Agent Client Collector Configuration (sn_agent_configuration_file) and Agent Client Collector Plugin (sn_agent_asset). This enhancement allows attachments from the tables to successfully pass code-signing verification and be downloaded to the MID Server when code signing is enabled.

    Removed

    Between your current release family and Zurich, some Code Signing features or functionality were removed.

    Release Release notes

    Xanadu

    No updates for this release.

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Deprecations

    Between your current release family and Zurich, some Code Signing features or functionality were deprecated.

    Release Release notes

    Xanadu

    No updates for this release.

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Activation information

    Review information on how to activate Code Signing.

    Release Release notes

    Xanadu

    No updates for this release.

    Yokohama

    Code Signing is a ServiceNow AI Platform feature that is available with activation of the Code Signing (com.glide.code_signing_enterprise) plugin. For details, see Configuring Code Signing.

    Zurich

    Code Signing is a ServiceNow AI Platform feature that is available with activation of the Code Signing (com.glide.code_signing_enterprise) plugin. For details, see Configure.

    Additional requirements

    If any additional requirements were introduced or changed for Code Signing we have noted them here.

    Release Release notes

    Xanadu

    No updates for this release.

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Browser requirements

    If any specific browser requirements were introduced or changed for Code Signing we have noted them here.

    Release Release notes

    Xanadu

    No updates for this release.

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Accessibility information

    Review details on accessibility information for Code Signing, such as specific requirements or compliance levels.

    Release Release notes

    Xanadu

    No updates for this release.

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Localization information

    If there are specific localization considerations for Code Signing we have noted them here.

    Release Release notes

    Xanadu

    No updates for this release.

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Highlight information

    If there are specific highlight considerations for Code Signing we have noted them here.

    Release Release notes

    Xanadu

    No updates for this release.

    Yokohama

    Use Code Signing Guardrails to improve checks during the signing process to create more secure workflows.

    See Code Signing for more information.

    Zurich

    Zurich Patch 4
    Code Signing OOB Apps Signatures plugin
    Use this plugin (com.glide.code_signing.oob_apps_signatures) to install build time signatures for all relevant records in trued-up ServiceNow® Store application versions.
    • Use Code Signing Guardrails to improve checks during the signing process to create more secure workflows.
    • Use the Code Signing Migration workflow to identify the signatures that are created with expired or inactive certificates and re-assign them to the appropriate records automatically.
    • Revoke Code Signing certificates securely using a quorum-based approval policy to prevent unauthorized use.
    • Monitor and manage your Code Signing environment with the new Health and Status dashboard.
    • The restructured navigation panel and the renamed pages provide improved accessibility and streamlined functionality.