This document describes the enhancements and bug fixes included in the eShare Cloud Web Portal release 202609.0.0. The following sections will be reviewed:
Enhancements
New Site Owner Role for the eShare M365 Trusted Sharing App
SharePoint site owners can now view and manage all Trusted Shares on the sites they own, including shares where they are not an owner, co-owner, or recipient. Previously, visibility was limited to shares a user was a member of, leaving site owners without oversight of sharing activity on their own sites. A new Site Owner role provides this visibility. Site owners can manage these shares and add themselves as co-owners to gain full access. The capability is available to all eShare M365 Trusted Sharing app users across Communication and Classic sites, with no Site Owner role configuration required.
RMS Secure Download
Files downloaded from a Trusted Share can now retain Microsoft RMS protection, ensuring that the access rights applied within the share continue to govern the copy saved on the recipient's device. Two new Sharing Policy options, available in both the Cloud Web Portal and the eSHARE M365 Trusted Sharing app, control this functionality. The applied rights reflect the Trusted Share's view and edit settings: a view-only share produces a view-only file, while owners and co-owners always download files in clear text. Protection is supported for Word, Excel, and PowerPoint files and expires when the Trusted Share reaches its collaboration expiry date. When a recipient edits a protected file and uploads it back to the original Trusted Share, the file is decrypted to clear content, even if its protection has already expired, ensuring that their work remains recoverable. The capability is disabled by default and becomes available only after the tenant grants eSHARE the required Microsoft RMS permissions. Note: This capability requires additional licensing and associated fees. Please contact your Account Executive or Customer Success Manager for more information on licensing.
Review Accepted Terms of Use at Any Time from Within a Trusted Share
Trusted Share members can now open and review the Terms of Use they accepted at any time, directly from within the share. A new button in the Trusted Share navigation menu opens the accepted Terms of Use for review. Previously, the Terms of Use could not be revisited once accepted, leaving organizations without readily available evidence of consent for their security and compliance obligations.
Audit Events for Enabling and Disabling Users
Enabling or disabling a user in Admin Console User Management now generates a corresponding audit event, visible in the Organization Auditing section. Previously, these administrative actions left no audit trail, which made it difficult to reconstruct account history when investigating login or identity issues.
Create Share within the M365 Trusted Sharing App Now Opens at the Site Level on Multi-Library Sites
On SharePoint sites with more than one document library, the Create Share dialog now opens at the top level of the site and shows all available libraries. Previously, it opened already inside the site's default library with no visual cue that other libraries existed, leading users to believe only the default library's content could be shared.
Messages with Nothing to Secure Are Now Forwarded
When a message matches a Sharing Policy by header or subject keyword, the Secure Collaboration Gateway now checks whether the message has anything to secure. If it does not, the message is forwarded unchanged and no Trusted Share is created. Calendar invites are never secured on a header or keyword match, even when Secure Message Body is on; they arrive as normal meeting items. When Secure Message Body is off and a message has no attachment and no native link, it is also forwarded unchanged. The same is true if all the recipients are internal. Before this change, any header or keyword match created a Trusted Share: recipients had to open a share to read what was really just a plain email, senders built up shares they never meant to create, and secured invites arrived broken. Nothing else changes. Messages with an attachment or a native link are still secured, policies with Secure Message Body on still secure the body, and Sensitivity Labels work exactly as before.
Continued Accessibility Improvements
A further round of accessibility fixes has been applied across the Cloud Web Portal, continuing eSHARE's work toward WCAG 2.2 AA conformance. This improves usability for people relying on assistive technologies and supports organizations with accessibility procurement requirements.
Bugs
Fixed Duplicate Recipient Entries Blocking Share Access
Resolved an issue where the same email address could be recorded twice as two distinct recipients on a single Trusted Share, which prevented that recipient from accessing the share until one of the entries was manually removed.
Fixed License Consumption Being Over-Reported
Resolved an issue where the operational license consumption report counted some users two or three times, overstating the number of licenses an organization was consuming.
Fixed Outstanding Adaptive Card Issues
Resolved a set of issues affecting Adaptive Card notifications, including secure conversation content being sent externally in clear text rather than as a standard notification, the organization's branding not being applied to the card, and supplied logo images rendering as invisible against the card template.
Fixed File Handler Errors on Multi-Geo SharePoint Environments
Resolved an issue where users on a multi-geo SharePoint tenant received an error when selecting External Share from the file context menu in a secondary geographic region.
Fixed CSV Re-Upload to Existing Allow/Block Lists
Resolved an issue where administrators could not bulk-update an existing Allow/Block List by exporting it to CSV, editing the file and re-uploading it (the upload failed with a generic error). Uploading to a newly created list was unaffected. Bulk editing of existing lists now works as expected.
Fixed New Users Receiving the Wrong Branding on Secondary Domains
Resolved an issue where a newly provisioned user signing in for the first time through a secondary vanity domain was shown the organization's default branding instead of the branding configured for that domain. Administrators no longer need to reassign branding user-by-user.
Fixed Secure Mail Bounces Caused by Notification Delivery Failures
Resolved an issue where a message processed by the Secure Collaboration Gateway was bounced back to the sender when the notification could not be delivered to all recipients.
Fixed Allow/Block List Changes Not Reaching the Secure Collaboration Gateway
Resolved an issue where updates to Allow/Block Lists in the Cloud Web Portal did not trigger a refresh on the Secure Collaboration Gateway, meaning recent list changes were not enforced on email traffic until a later refresh occurred.
Fixed External Recipients Being Able to Invite Others When Disabled by Policy
Resolved an issue where an external recipient was able to invite an additional user to a Trusted Share even though the governing sharing policy had "Recipients Can Invite Others" disabled with user override set to No. Policy restrictions are now correctly enforced.
Fixed Resend Notification Sending the Wrong Message
Resolved an issue where using Resend Notification on a secure body Trusted Share sent the most recent Secure Conversations entry instead of the original notification message. Recipients now receive a proper branded notification telling them a message is waiting, with a link to the Trusted Share.
Fixed Modern Attachment Links Not Being Converted in Mixed Attachment Emails
Resolved an issue where an email containing both a physical file attachment and a modern attachment link was secured, but the modern attachment link in the notification still pointed to SharePoint or OneDrive instead of the Trusted Share. External recipients clicking that link were sent to the original location rather than the protected share.
Fixed Reply Notification Failures for Shared Mailbox Shares
Resolved an issue where replies posted to a secure conversation on a Share With Shared Mailbox (SWS) share failed to notify the internal mailbox owner due to a certificate verification error on the outbound email connection.
Fixed Intermittent Send Failures with the Govern Outlook Add-in
Resolved an issue where emails failed to send with the Govern Outlook add-in installed, with the add-in appearing to hang, and users often unaware their message had not been sent.
Fixed Trusted Share Creation Failing for Attachments with Non-Latin Filenames
Resolved an issue where an attachment whose filename contained non-Latin characters produced a malformed storage address, causing the upload to be rejected and blocking creation of the Trusted Share entirely.