# Fleet v4.87.0 - Product: Fleet (https://whatsnew.fyi/product/fleet) - Vendor: Fleet Device Management - Date: 2026-06-20 - Version: v4.87.0 - Original notes: https://github.com/fleetdm/fleet/releases/tag/fleet-v4.87.0 - Permalink: https://whatsnew.fyi/product/fleet/releases/v4.87.0 What's New is an index, not a publisher: every entry below links to the vendor's own release notes, which are the authoritative source. Entries are labelled where they are hand-curated sample data, pre-releases, or drawn from a secondary source such as a developer blog. Reuse: the summaries, labels and curation here are © What's New. Quote freely with attribution and a link back; wholesale republication of the corpus is not permitted — terms: https://whatsnew.fyi/terms. The vendors' own release notes remain their publishers'. --- - **added** — Added 236 new Fleet-maintained apps for Windows including Microsoft Office, PowerShell, PowerToys, Power BI, Power Automate, SQL Server Management Studio, Microsoft .NET Runtime 8 and 10, Git, Node.js, Python 3.13 and 3.14, PostgreSQL 15–18, and other tools - **added** — Added 727 new Fleet-maintained apps for macOS including Kiro, Codex, OpenCode, Claude DevTools, Granola, Logitune, and hundreds more tools across development, security, productivity, and design - **added** — Added the ability to deploy custom OS update configuration profiles for Apple and Windows - **added** — Added support for issuing Lock, Wipe, and Clear passcode commands to Android hosts - **added** — Made the Wipe command available to Fleet Free users for Android company-owned hosts in both the UI and the API - **changed** — Android host display name now uses "{IdP first name}'s {hardware model}" when an IdP account is associated - **changed** — Reduced Windows MDM server and database load by relaxing the device management poll schedule from 1 minute to 8 hours for hosts running fleetd 1.57.0 and later with on-demand Windows MDM sync support - **changed** — Renamed Apple Business Manager (ABM) terminology to Apple Business (AB) in the API, GitOps YAML, and fleetctl CLI - **deprecated** — Deprecated /abm_tokens, /mdm/apple/abm_public_key, apple_business_manager, and mdm-apple-bm endpoints and commands in favor of /api/v1/fleet/ab_tokens, /api/v1/fleet/mdm/apple/ab_public_key, mdm.apple_business, and fleetctl get mdm-ab/fleetctl generate mdm-ab - **added** — Added support for combining labels_exclude_any with labels_include_all or labels_include_any when uploading MDM configuration profiles - **added** — Added support for setting the end user account type to standard for non-admin users or none to skip end-user account creation - **added** — Added a Continuous option to policy automations that re-runs script and software automations on every subsequent policy failure - **added** — Made editable automations available directly on the policy create, edit, and details pages - **added** — Added the ability for users with the Technician role to transfer hosts between fleets via the Fleet UI and REST API - **added** — Added Self-service categories page under Software > Library for managing custom categories per fleet - **added** — Added macos_applications filter for host software list - **added** — Added Fleet Spotlight command palette that opens when pressing Command + K or Control + K - **added** — Added support for validating Microsoft Entra v2 access tokens during Windows MDM enrollment - **added** — Hardened in-house iOS app distribution by requiring a per-install token in the manifest and package download URLs bound to the target host with 6-hour expiration ##### Fleet 4.87.0 (Jun 19, 2026) ###### IT Admins - Added 236 new Fleet-maintained apps for Windows, including Microsoft Office, PowerShell, PowerToys, Power BI, Power Automate, SQL Server Management Studio, Microsoft .NET Runtime 8 and 10, Git, Node.js, Python 3.13 and 3.14, PostgreSQL 15–18, Windsurf, Kiro, Dell Command Update, Lenovo Dock Manager, Nessus Agent, Bitwarden, Canva, Miro, Snagit, Tableau Desktop, VirtualBox, TortoiseGit, GitHub Desktop, and more. - Added 727 new Fleet-maintained apps for macOS, including Kiro, Codex, OpenCode, Claude DevTools, Granola, Logitune, and hundreds more tools across development, security, productivity, and design. - Added the ability to deploy custom OS update configuration profiles for Apple and Windows. - Added support for issuing Lock, Wipe, and Clear passcode commands to Android hosts. Lock and Clear passcode work for both BYO (personal) and COBO (company-owned) Android hosts; Wipe is COBO-only. For BYO hosts, Unenroll now issues an AMAPI WIPE under the hood, which removes only the work profile and leaves personal data intact. All Android commands are issued with `duration=315360000s` (10 years), matching the pending-forever queue semantics Fleet uses for Apple and Windows MDM. - Made the Wipe command available to Fleet Free users for Android (company-owned) hosts, in both the UI and the API. Wipe for macOS, iOS, iPadOS, Linux, and Windows hosts remains a Fleet Premium feature. - Android host display name now uses "{IdP first name}'s {hardware model}" when an IdP account is associated. - Reduced Windows MDM server and database load by relaxing the device management poll schedule from 1 minute to 8 hours for hosts running a version of fleetd that supports on-demand Windows MDM sync (1.57.0 and later). When commands are queued, the server wakes these devices through fleetd to start a management session, so command delivery stays near real-time. Hosts on older fleetd versions keep the previous poll behavior. - Renamed Apple Business Manager (ABM) terminology to Apple Business (AB) in the API, GitOps YAML, and `fleetctl` CLI. The new `/api/v1/fleet/ab_tokens` and `/api/v1/fleet/mdm/apple/ab_public_key` endpoints, `mdm.apple_business` YAML key, and `fleetctl get mdm-ab`/`fleetctl generate mdm-ab` commands are canonical. The now-deprecated `/abm_tokens`, `/mdm/apple/abm_public_key`, `apple_business_manager`, `mdm-apple-bm` aliases continue to work for backwards compatibility and log a deprecation warning when used. - `labels_exclude_any` can now be combined with `labels_include_all` or `labels_include_any` when uploading MDM configuration profiles, allowing hosts to be included by label membership and excluded by another set of labels simultaneously. - Added support for setting the end user account type to `standard` for a standard (non-admin) user or `none` to skip end-user account creation, both requiring a local admin account. - Added a "Continuous" option to policy automations that re-runs script and software automations on every subsequent policy failure, with editable automations now available directly on the policy create, edit, and details pages. - Added the ability for users with the Technician role to transfer hosts between fleets (Fleet Premium only). Global technicians can transfer hosts via the Fleet UI (manage hosts and host details pages) and the REST API. Fleet-scoped technicians can transfer hosts between fleets they manage via the REST API. - Added Self-service categories page (Premium) under Software > Library for managing custom categories per fleet, including add, edit, and delete flows. - Added Categories button to the Software > Library page that navigates to the new categories page. - Replaced the static category sidebar on the My device > Self-service page with a custom-category dropdown driven by the org's self-service categories, and added an "Install all (n)" button per category (with a confirmation modal) that posts to `/device/{token}/sof _[Truncated at 4000 characters — full notes: https://github.com/fleetdm/fleet/releases/tag/fleet-v4.87.0]_