# Fleet v4.89.0 - Product: Fleet (https://whatsnew.fyi/product/fleet) - Vendor: Fleet Device Management - Date: 2026-07-15 - Version: v4.89.0 - Original notes: https://github.com/fleetdm/fleet/releases/tag/fleet-v4.89.0 - Permalink: https://whatsnew.fyi/product/fleet/releases/v4.89.0 What's New is an index, not a publisher: every entry below links to the vendor's own release notes, which are the authoritative source. Entries are labelled where they are hand-curated sample data, pre-releases, or drawn from a secondary source such as a developer blog. Reuse: the summaries, labels and curation here are © What's New. Quote freely with attribution and a link back; wholesale republication of the corpus is not permitted — terms: https://whatsnew.fyi/terms. The vendors' own release notes remain their publishers'. --- - **added** — Added the ability to target a policy to hosts using a combination of include and exclude labels - **added** — Added the ability to run a policy check before installing Windows and Linux setup experience software, skipping install when the policy passes - **changed** — Changed calendar remediation events to be scheduled on the next business day after a policy failure instead of always on the next Tuesday - **changed** — Updated policy details page to show automations and labels as a single property and changed the layout of policy properties - **added** — Added automation runs table to the policy details page showing per-host automation outcomes with filtering, search, and reset policy action - **added** — Added per-host activity log entries when policy automations fail or succeed - **added** — Added POST /api/v1/fleet/policies/:policy_id/reset endpoint to reset a policy's pass/fail results - **added** — Added GET /api/v1/fleet/policies/:id/automation_activities endpoint to list automation activities for a policy - **added** — Added the ability to keep Fleet-maintained apps automatically updated to the latest version, pin them to a specific version or major version, or roll back to a previously cached version from the UI and via GitOps - **added** — Surfaced .sh script-only software packages on the macOS tab of Controls > Setup experience > Install software with selections tracked independently from the Linux tab - **added** — Added setup_experience_platform on software packages in GitOps YAML so .sh script-only installers can be selected for the macOS setup experience declaratively - **added** — Added support for pre-install query, post-install script, and uninstall script on script-only packages via the UI, REST API, and GitOps - **added** — Added an error on the Windows enrollment status page when setup experience software fails to install during automatic enrollment and cancel setup if software fails is turned off - **added** — Added Support as a new default self-service software category - **added** — Added support for $FLEET_VAR_HOST_* variables in Android configuration profiles - **added** — Added support for $FLEET_VAR_HOST_* variables in Android managed app configuration - **added** — Android certificate templates and managed app configurations are now automatically resent when IdP variable values change - **added** — Added support for defining the default fleet BYO Apple devices enroll into ##### Fleet 4.89.0 (Jul 15, 2026) ###### IT Admins - Added the ability to target a policy to hosts using a combination of "include" and "exclude" labels. - Added the ability to run a policy check before installing Windows and Linux setup experience software. When a team policy's install-software automation points at a setup experience installer, Fleet runs that policy during setup and skips the install when it passes (the software is already installed and up to date), speeding up the end user setup experience. When the policy fails, the software is installed as part of setup experience. - Changed calendar remediation events to be scheduled on the next business day (skipping weekends) after a policy failure, instead of always being scheduled on the next Tuesday. - Updated policy details page to show automations and labels as a single property. Also changed the layout of policy properties. - Added automation runs table to the policy details page, showing per-host automation outcomes with filtering, search, and a reset policy action. - Added per-host activity log entries when policy automations (webhook, tickets, Google Calendar, and Microsoft conditional access) fail or succeed. - Added `POST /api/v1/fleet/policies/:policy_id/reset` endpoint to reset a policy's pass/fail results, clearing counts and membership immediately. - Added `GET /api/v1/fleet/policies/:id/automation_activities` endpoint to list automation activities for a policy. - Added the ability to keep Fleet-maintained apps automatically updated to the latest version, pin them to a specific version or major version, or roll back to a previously cached version, from the UI and via GitOps (Fleet Premium). - Surfaced `.sh` script-only software packages on the macOS tab of Controls > Setup experience > Install software, with selections tracked independently from the Linux tab. - Added `setup_experience_platform` on software packages in GitOps YAML so `.sh` script-only installers can be selected for the macOS setup experience declaratively, matching the per-platform UI selection. The value is authoritative on every batch apply and reconciles the cross-platform selection table. - Added support for pre-install query, post-install script, and uninstall script on script-only packages (`.sh` and `.ps1`) via the UI, REST API, and GitOps. - Added an error on the Windows enrollment status page (ESP) when setup experience software fails to install during automatic enrollment (Autopilot and other OOBE flows) and "Cancel setup if software fails" is turned off. - Added "🛟 Support" as a new default self-service software category. - Added support for `$FLEET_VAR_HOST_*` variables in Android configuration profiles. - Added support for `$FLEET_VAR_HOST_*` variables in Android managed app configuration. - Android certificate templates and managed app configurations are now automatically resent when IdP variable values change. - Added support for defining the default fleet BYO Apple devices enroll into. - Added a Google Workspace integration that maps identity provider (IdP) users to hosts, populating IdP host vitals directly from your Google Workspace directory. - Added an activity feed entry when a user runs a custom Apple or Windows MDM command, visible in both the global activity feed and the host's activity feed. - Added an activity when editing the managed local account setting using the update fleet endpoint or GitOps. - Enabled tracking of mobile devices for the "hosts online" chart, and added default filtering to that chart that excludes mobile platforms. - Added tooltips on the Settings > Users and My account pages to show assigned fleets and roles when a user has multiple. ###### Security Engineers - Started collecting non-critical CVEs, filtering them out of charts by default. - Added the ability to filter vulnerable software by severity (CVSS score) and known exploit status on the Fleet Desktop **My device > Software** tab (Fleet Premium). The c _[Truncated at 4000 characters — full notes: https://github.com/fleetdm/fleet/releases/tag/fleet-v4.89.0]_