Combined Code Signing release notes for upgrades from Yokohama to Zurich

  • Release version: Zurich
  • Updated July 20, 2026
  • 4 minutes to read
  • Summarize
    Summarized using AI
    This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.

    Summary of Combined Code Signing Release Notes for Upgrades from Yokohama to Zurich

    This consolidated release note outlines the key updates, new features, changes, and important upgrade information for the ServiceNow Code Signing product from the Yokohama release to the Zurich release. It is designed to help ServiceNow customers prepare for and understand the enhancements available in Zurich, focusing on improved security, usability, and management of Code Signing.

    Show full answer Show less

    Important Upgrade Information

    • Before upgrading to Zurich, customers should review and complete the recommended pre- and post-upgrade tasks to ensure a smooth transition.
    • There are no removals or deprecations of Code Signing features between Yokohama and Zurich.
    • Activation remains consistent, requiring the Code Signing plugin (com.glide.codesigningenterprise) to be enabled.
    • No changes to additional requirements, browser requirements, accessibility, or localization considerations have been introduced.

    New Features in Zurich

    • Self-Service Plugin Installation: Administrators can now install the Code Signing plugin directly from the ServiceNow Plugin portal without needing support assistance, streamlining deployment.
    • Quorum Controlled Certificate Revocation: Certificates can be revoked securely through a quorum-based approval process involving multiple stakeholders, reducing the risk of unauthorized or accidental revocations.
    • Code Signing Health and Status Dashboard: Provides a centralized interface to monitor the health, configuration, and status of your code signing environment with actionable guidance to resolve issues.

    Changes and Enhancements

    • Guardrails Check Improvements: Enhanced signature verification and performance optimizations improve security and scanning efficiency. Log files now use more intuitive naming for easier identification.
    • Update Set Size Limit: Update sets are limited to a maximum of 10,000 records to improve user experience and system performance.
    • Instance Naming Conventions: The trusted non-production instance is now called the trusted instance, and the protected production instance is renamed to protected instance, aligning with common customer usage.
    • Enhanced Verification for ACC Framework Tables: In Zurich, you can generate KMF signature files for tables extending Agent Client Collector Configuration and Plugin, ensuring attachments pass code-signing verification and can be downloaded to MID Servers.
    • Navigation and Page Renaming: The navigation panel and related pages have been restructured and renamed to improve accessibility and streamline functionality.

    Highlight Information

    • Use the enhanced Code Signing Guardrails to create more secure signing workflows.
    • Zurich Patch 4 introduces the Code Signing OOB Apps Signatures plugin (com.glide.codesigning.oobappssignatures), which installs build-time signatures for ServiceNow Store applications.
    • The Code Signing Migration workflow helps identify signatures created with expired or inactive certificates and reassigns them automatically to appropriate records.
    • Quorum-based certificate revocations and the new Health and Status dashboard offer improved security controls and environment monitoring capabilities.

    Consolidated page of all release notes for Code Signing from Yokohama to Zurich.

    How to use this page

    To help you prepare for your upgrade, we have combined the cross-family Code Signing release notes onto one page. Read this summary of the new features, changes, and updated information for your product from Yokohama to Zurich.

    Tip:
    If there were no updates for a release notes section in a certain family release, we included a short note for your reference. For example, if a product did not have any updates in Tokyo, the row says "No updates for this release."

    Important information for upgrading Code Signing to Zurich

    Before you upgrade to Zurich, review these pre- and post-upgrade tasks and complete the tasks as needed.

    Release Release notes

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    New features

    Between your current release family and Zurich, new features were introduced for Code Signing.

    Release Release notes

    Yokohama

    No updates for this release.

    Zurich

    Code Signing Installation using Plugin

    Customer administrators can now install the Code Signing plugin directly from the ServiceNow Plugin portal without the need to contact the Customer Service and Support team to enable the Code Signing framework. This enhancement supports self-service deployment and simplifies the installation process.

    Quorum Controlled Certificate Revocation
    Revoke Code Signing certificates using a quorum-based control policy. Revoke certificates to help prevent them from being used to verify signatures. A quorum-based approval flow promotes added security by requiring approvals from multiple stakeholders, to help prevent unintended or unauthorized certificate revocations.
    Code Signing Health and Status Dashboard
    The new Code Signing Health and Status dashboard provides a centralized, user-friendly interface to monitor the overall health and configuration of your code signing environment. It highlights configuration settings, displays the status of essential components, and offers actionable guidance to help resolve issues effectively.

    Changes

    Between your current release family and Zurich, some changes were made to existing Code Signing features.

    Release Release notes

    Yokohama

    Enhancements to the guardrails check
    The Code Signing Guardrails check has been improved to enhance signature verification, resulting in more secure workflows. In addition, multiple optimizations have been implemented to improve the performance benchmarks of the Guardrails scan, and log files now feature a more intuitive naming convention, which simplifies file identification within your system.
    Generate update sets with a maximum size of 10,000 records
    Code Signing now enforces limits on large update sets to improve the user experience. The maximum size for an update set is 10,000 records.
    Naming updates for trusted and production instances
    The trusted non-production instance has been renamed to trusted instance, and the protected production instance has been renamed to protected instance. These naming updates have been made to better align with customer usage.

    Zurich

    Enhanced Code-Signing Verification for ACC Framework Table
    You can now generate KMF signature files for tables that extend Agent Client Collector Configuration (sn_agent_configuration_file) and Agent Client Collector Plugin (sn_agent_asset). This enhancement allows attachments from the tables to successfully pass code-signing verification and be downloaded to the MID Server when code signing is enabled.

    Removed

    Between your current release family and Zurich, some Code Signing features or functionality were removed.

    Release Release notes

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Deprecations

    Between your current release family and Zurich, some Code Signing features or functionality were deprecated.

    Release Release notes

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Activation information

    Review information on how to activate Code Signing.

    Release Release notes

    Yokohama

    Code Signing is a ServiceNow AI Platform feature that is available with activation of the Code Signing (com.glide.code_signing_enterprise) plugin. For details, see Configuring Code Signing.

    Zurich

    Code Signing is a ServiceNow AI Platform feature that is available with activation of the Code Signing (com.glide.code_signing_enterprise) plugin. For details, see Configure.

    Additional requirements

    If any additional requirements were introduced or changed for Code Signing we have noted them here.

    Release Release notes

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Browser requirements

    If any specific browser requirements were introduced or changed for Code Signing we have noted them here.

    Release Release notes

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Accessibility information

    Review details on accessibility information for Code Signing, such as specific requirements or compliance levels.

    Release Release notes

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Localization information

    If there are specific localization considerations for Code Signing we have noted them here.

    Release Release notes

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Highlight information

    If there are specific highlight considerations for Code Signing we have noted them here.

    Release Release notes

    Yokohama

    Use Code Signing Guardrails to improve checks during the signing process to create more secure workflows.

    See Code Signing for more information.

    Zurich

    Zurich Patch 4
    Code Signing OOB Apps Signatures plugin
    Use this plugin (com.glide.code_signing.oob_apps_signatures) to install build time signatures for all relevant records in trued-up ServiceNow® Store application versions.
    • Use Code Signing Guardrails to improve checks during the signing process to create more secure workflows.
    • Use the Code Signing Migration workflow to identify the signatures that are created with expired or inactive certificates and re-assign them to the appropriate records automatically.
    • Revoke Code Signing certificates securely using a quorum-based approval policy to prevent unauthorized use.
    • Monitor and manage your Code Signing environment with the new Health and Status dashboard.
    • The restructured navigation panel and the renamed pages provide improved accessibility and streamlined functionality.