Sign up for Prowler Updates
Prowler 5.4 is Here!
We’ve been busy making Prowler even more powerful and user-friendly. With Prowler 5.4, we’re introducing a revamped UI, expanded Microsoft 365 security coverage from the CLI, social login integration, and six new compliance frameworks—helping you secure cloud environments faster and more efficiently. Let’s take a closer look at what’s new.

🎨 Revamped UI for a Better Experience
We believe security tools should be seamless and intuitive, so we’ve redesigned the sidebar and layout to make navigation easier. Here’s what’s new:
- New sidebar and layout for a cleaner, more organized experience.
- Real-time scan animations—no need to push a button to see progress.
- Scan ID now visible under scan details, making it easier to track scans.
- Extended status information in finding details for more context.
- Automatic sidebar refresh when an account is renamed.
- Prowler version now displayed in the sidebar for quick reference.
Why It Matters
A more intuitive UI means you can move faster—whether you’re launching scans, tracking issues, or managing accounts. No more guessing where things are or refreshing to see scan progress.
💻 API Enhancements & Social Logins
We’re making it even easier to integrate Prowler into your workflows with new API capabilities:
- Social login integration with Google and GitHub (coming soon to Prowler App!).
- API scan report system—all API-launched scans now generate reports in OCSF, CSV, and HTML formats.
- Configurable Sentry integration for better monitoring and error tracking.
- Optimized
GET /findings
endpoint to improve response time and reduce data size.
Why It Matters
Faster APIs and new authentication options mean smoother integrations and better automation. Security should fit into your workflows, not the other way around.
🔧 SDK Updates: Expanded Microsoft365 Security in the CLI
We’ve added SharePoint security checks and a new Entra security check, making Prowler even more robust for Microsoft365 users in the CLI (coming soon to Prowler Cloud!).
Microsoft 365 – SharePoint Security
Prowler now includes four new checks to strengthen SharePoint security:
sharepoint_external_sharing_managed
sharepoint_external_sharing_restricted
sharepoint_guest_sharing_restricted
sharepoint_modern_authentication_required
Run these checks now with:
prowler microsoft365 --service sharepoint
Microsoft 365 – Entra Security
New check: entra_policy_ensure_default_user_cannot_create_tenants
Run it now with:
prowler microsoft365 --check entra_policy_ensure_default_user_cannot_create_tenants
Why It Matters
Expanding Microsoft365 coverage from the Prowler CLI helps you lock down SharePoint and Entra environments, protecting against common misconfigurations and security risks.
📖 Six New Compliance Frameworks
We’re committed to keeping up with the latest security standards. This release includes six new compliance frameworks to help you stay aligned with best practices:
- AWS ISO 27001:2022
- Azure PCI DSS 4.0
- Kubernetes PCI DSS 4.0
- GCP PCI DSS 4.0
- AWS PCI DSS 4.0
- AWS CIS 4.0
Why It Matters
Compliance isn’t just about checking boxes—it’s about ensuring your cloud security meets industry best practices. With these new frameworks, Prowler makes it easier to assess and maintain compliance across multiple cloud providers.
Get Started with Prowler 5.4
Prowler 5.4 is designed to make cloud security more intuitive, automated, and compliant. Whether you’re running security scans, managing cloud access, or tracking compliance, this release helps you move faster and smarter.
📺 Prefer your updates in video form? Watch our hands-on changelog!
What’s next? We’d love to hear how these updates impact your security workflows. Let us know in the comments! 🚀
Recent Articles

Prowler February Newsletter
This is a republishing of our monthly newsletter. Do you have a Prowler success story you’d like to share? Let us know and we’ll send you some swag! Hey there,...

Cloud Security Posture Management (CSPM) for Multi-Cloud Security
Cloud environments aren’t getting any simpler. Networks are sprawling, configurations are multiplying, and keeping everything secure and compliant? That’s a full-time job. You need security that works—reliably, consistently, across AWS,...

Why We Need the Open Cloud Security Movement
I've spent the last 26 years working with Open Source—UNIX and Linux, Apache and nginx, Docker and Kubernetes, Envoy and Istio. Always building security solutions. Always working with companies that...