Blueprism HUB Auto refresh is not saved as part of the custom view that the user creates/saves
... View more
Once in the work queue for a particular item key - we would like to have the capability to drill into the details of that item. For example, item key 'CS_CSNOVA(LUX) - 1/8/2024 - Rerun' has a completed status, but we need to be able to click into it to see all the underlying processes within that item. Our idea is to have the capability for the user to click on the item and have the box expand detailing all underlying processes using the same format as the current view/layout. To minimize the user would click on the item again to return to normal summary view.
... View more
Entitlements need to be added to Blueprism HUB as users should only have access to the clients. HUB control access to Business team level. Example: Business supposed to see only their process and queue details in control room
... View more
Filter functionality is currently set to only one filter per data field/column. We would need functionality to apply AND/OR filtering at numerous levels within a particular data field. For example, if the user works on portfolio's CS_CABSLF and CS_ALPEN then we would like the ability to filter the 'Item Key' data field to be CS_CABSLF OR CS_ALPEN. There should be no limit to the number of levels we can filter a particular field for. Again, if a particular user works on 12 different funds, we would have 12 levels of OR filtering within said column/data field. There is no functionality to move columns around within the view in a different order. We are referring to drag and drop functionality on screen. Column width appears to be pre-defined and user does not have ability to expand or shrink a particular column based on underlying data length. If the underlying value in the column goes out further then the current column width, the UI merely adds '…' and we cannot see the entire value. For example, item key 'CS_CABSLF - 1/8/2024 - Rerun 15014…' or Exception Reason 'Max Retry Reached - GoCheck Ticket 10...' or Tags 'Exception: Max Retry Reached - ...' - there is no ability for the user to see the entire wording on screen within the UI. Ideal solution would be to introduce the wrap text functionality per column. User should have capability to retrigger a process within the Work Queue screen. For example, item key 'CS_CABSLF - 12/21/2023 - Rerun 193554
... View more
There is no functionality to save filters on the work queues screen. For example, if one individual is working on only portfolio CS_CABSLF - we would like to have the ability to save custom user filters so that when that user opens up the work queues dashboard, they will automatically see their respective funds
... View more
Almost all actions that you carry out on a document during verification are accessed via the right-click menu. the menu is a long one, but unless the document you're working on is scrolled right to the top of the list, part of the menu disappears off the bottom of the screen. Only if you're right at the very bottom of the screen does it re-position to open 'up' from where you click, so the whole thing is visible.
Rather than having to use the right-click menu at all, it would be much better to have a toolbar at the top of the verification screen with buttons for all possible actions.
At the very least make the menu render fully visible regardless of where you click on screen.
... View more
Our printserver service occassionally fails, causing documents to be manually printed from the Communications error queue. The JVM Heap Size is at a max of 1 GB. To increase it to 2GB, we need a 64-bit JVM. However, the current printserver service only allows for a 32-bit JVM.
We would like the printserver service for 64-bit JVM so that we can have an increased JVM Heap size so that the printserver service does not fail
... View more
Vulnerability: CONCURRENT USER SESSIONS
Issue observed in: HUB and Decipher
Business Impact: An attacker can connect concurrently with a user without indication that their account has been compromised.
Description
The application allows multiple connections simultaneously with the same authenticated user account. This is demonstrated by logging in with two separate browsers without restriction.
In this case, the application allowed the admin user to sign into the application using two different browsers at the same time.
Supporting Evidence: A high privileged user logged into the application from two different browsers at the same time.
Reproduction Steps
1. In Chrome, log into the application with a high privileged user
2. Perform the same action as step one, but this time using the Edge browser
3. Attempt to navigate to any other page within the application using both browsers.
4. The application does not log the user out of either session
Recommendation
• The application should restrict connections so that a user account can only create one session at a time to the application. This will create a condition that alerts the user that their account has been compromised.
• If there is a business case for concurrent user sessions, then some form of indication should be given to the user that their account may be compromised. This can be done with a message that occurs alerting that there is another login from another location.
• It can also be strengthened by displaying a message indicating the last time a login occurred.
References
https://cheatsheetseries.owasp.org/cheatsheets/Session_Management_Cheat_Sheet.html
278732:490206
... View more
Upgrading RIP to use the modern RESTful API rather than the legacy/proprietary AWD/View API is a facilitator for removal of legacy constraints in the product around field lengths such as LOB field names and values.
... View more
Upgrading Archiver to use the modern RESTful API rather than the legacy/proprietary AWD/View API is a facilitator for removal of legacy constraints in the product around field lengths such as LOB field names and values.
... View more
Every week or two (or maybe more), I sweep through the Digital Exchange, basically looking for updates to the assets are deployed in our organization. It can be a bit tedious. It would be really helpful if two elements were added to the tiles shown on the DX landing page:
The date that this asset was (re-)deployed/published
A very brief description of the purpose for the deployment. Examples might be:
New Asset or New Deployment
Adding New Functionality
Correcting Issue/Error
Aligning Version Number
Republishing (No Changes)
... View more
There is no way to retrieve the batch name once the batch is opened, it would be great if the batch name can be seen once the batch is opened.
... View more
60 mins session timeout is a ridiculous setting which will restrict the automation for user
... View more
On the Generic Rendezvous Maintenance page, it is difficult to know which Business Area/Work Type/Status combination is being selected unless you select each line individually. The 'Rendezvous Records' window width displays about 20 characters. Since a Business Area and Work Type can each be up to 10 characters long, the status information does not display in this narrow window.
... View more
As a customer I would like Document Automation to classify, identify and digitize medical cards, id card, passports, etc. intermixed with other documents. Today I have to create a template of every type of card I receive.
... View more
As a customer, I would like Document Automation to classify, identify and digitize a invoices intermixed with other documents.
... View more
As a customer, I would like Document Automation to classify, identify and digitize a full page of handwritten text. Today Document Automation has limited ability to digitize long text.
... View more
As a customer, I would like Document Automation to be able to classify, identify and extract text from a variety of computer generated forms. Forms that have the same information but look slightly differently so the fields are not always in the same place. Document Automation must be able to do this along side handing many structured documents. Today Document Automation only handles documents that are fixed and structured.
... View more
As a developer, I would like to be able to be able to perform a Data Quality Assessment on a random sample of fields by data type. Today only Blue Prism Professional Services can do this.
... View more