v3.7.3

Released September 17, 2026

A maintenance release that restores administrative API access for single sign‑on users.

🔧 Improvements & fixes

  • Single sign‑on counts as multi‑factor for API‑key access. Users who authenticate with SSO or forced SSO are now recognized as having satisfied multi‑factor authentication on the API‑key (programmatic) plane — so headless callers using an API key can reach the admin and superadmin APIs as intended, instead of being turned away. This restores expected behavior and brings programmatic access in line with the web app’s multi‑factor rules.

🔒 Security & platform

Ask Sage services are delivered as FIPS‑hardened, digest‑pinned, and cosign‑signed images within the FedRAMP Class D authorization boundary, and are continuously rebuilt against the latest patched base images as part of Ask Sage’s continuous‑monitoring commitment.


Back to top

Copyright © 2026 Ask Sage Inc. All Rights Reserved. Ask Sage is a BigBear.ai company.