Changelog

Keep up with the latest updates we’ve made in Workato.

Changelog
Jul 22, 2026
Released

Data Tables CSV Import — Dev & Embed API

CSV Import for Data Tables is now available via the Dev API and Embed/OEM, extending the UI wizard shipped in May to programmatic, bulk loading.

  • Bulk Import over the Dev API — Create a file upload link, push a CSV to file storage, and trigger a server-side import of thousands of records in a single async job.
  • Append, Refresh, and Fresh-Load Modes — append adds rows to an existing table, truncate_table clears then loads, and assert_table_empty guards clean first-time loads.
  • Configurable Parsing — Specify delimiter, quote character, encoding, and header handling when creating the upload link so the parser reads the file exactly as intended.
  • Validated Column Mapping — Map CSV columns to table fields by index or label, with required-field coverage and type compatibility checked before the import runs.
  • Embed/OEM Parity — Every import endpoint has a managed_users counterpart so Embed partners can run imports on behalf of their end customers.

Learn more about Data Tables.

Apr 28, 2026
Released

API Edge Gateway — Now Available

The API Edge Gateway (EGW) is a Workato-managed gateway that runs inside your own infrastructure — on-prem or private cloud — while staying connected to Workato's cloud control plane for configuration, monitoring, and alerting. Enterprises in regulated industries no longer have to choose between powerful API management and compliance.

  • Keep API traffic within your network and jurisdiction — sensitive data never leaves your private infrastructure.
  • Deploy to Cloud or Edge from a single Workato workspace, with consistent policies, auth, quotas, and rate limits enforced across both.
  • Supports Docker & Kubernetes (Helm) deployment with all existing auth types: Token, JWT, OIDC, OAuth, and mTLS.
  • Monitor EGW health, connectivity, and traffic from the Workato UI — with proactive RecipeOps alerts for connectivity loss, auth failures, or version drift.
  • Graceful fallback mode keeps the gateway running on cached config even when disconnected from the control plane.

Learn more about API Edge Gateway.

Apr 28, 2026
Released

Developer Portal — SSO Login Support

The Developer Portal supports Single Sign-On (SSO) authentication, giving enterprise teams a secure, seamless login experience using their existing identity providers — including Okta, Google Workspace, and Microsoft Entra ID.

  • Enable SAML SSO for the Developer Portal via Workspace Admin → Access Control → Authentication.
  • Just-in-Time (JIT) provisioning automatically grants access to new users on first login — no manual invites or account setup required.
  • Developers authenticate through their organization's IdP and land directly in the portal with a secure, persistent session — replacing the previous magic link flow.
  • Enforce centralized authentication policies — MFA, conditional access, and session controls — across the Developer Portal alongside all other internal tools.

To enable SSO for your Developer Portal, email accounts@workato.com with your Workspace ID to get started. Learn more about Developer Portal SSO.

Nov 3, 2025
Released

API Key Limit Increase

We've increased the maximum number of API keys allowed per client.

New Limit: You can now create up to 20 API keys per client (previously 10).

This update provides more flexibility for managing keys across different environments (Dev, Test, Prod) and supports better key rotation practices.

Sep 21, 2025
Released

Custom Domains for API Developer Portal

Custom domains are now available in the API Developer Portal, enabling organizations to fully white-label their developer experience and meet enterprise branding and compliance needs.

  • Set up a custom URL for your Developer Portal to match your brand.
  • Deliver a seamless, branded experience for end users across all touchpoints.
  • Enhance privacy and security by eliminating third-party cookie issues.

Learn more in the API Developer Portal documentation.

May 16, 2025
Released

Mutual TLS (mTLS) authentication support in API Platform

Mutual TLS (mTLS) is now available on Workato’s API Platform, further strengthening our enterprise-grade security offering for regulated industries and public sector use cases.

  • Client-level mTLS enforcement with granular certificate attribute validation.
  • New Truststore to manage client certificates, with automated expiry reminders and Developer API support.
  • Enables secure, certificate-based authentication—essential for customers in healthcare, finance, manufacturing, and government.
  • Available to all customers with API Platform (requires API custom domain setup).

Learn more in the mTLS documentation.

May 16, 2025
Released

Support for OAuth 2.0 token introspection

Workato’s API Platform now supports OAuth 2.0 token introspection, enabling the gateway to validate opaque access tokens issued by external identity providers (IdPs).

  • Enhances OpenID Connect support for broader compatibility with enterprise IdP architectures.

Learn more in the OAuth 2.0 Token Introspection documentation.

Apr 21, 2025
Released

Full Deprecation of Legacy API keys

As part of our transition to industry-standard token-based security, legacy API key authentication will be fully deprecated on July 14, 2025.

  • API requests using legacy API key + email authentication will no longer be supported after this date.
  • Customers must migrate to API client authentication using bearer tokens.
  • Required steps include creating a new API client, assigning appropriate roles, generating a new token, and updating applications to use the new Authorization: Bearer header.
  • We recommend deleting any legacy “Migrated API Client” after confirming all systems are updated.

Learn more in the Workato API migration docs.

Jan 30, 2025
Released

API Traffic Mirroring

API Traffic Mirroring enables enterprises to mirror all API traffic—including requests and responses—from API endpoints to an external API Security Platform like SALT Security. This feature enhances API discovery, threat protection, and posture management, providing greater security and compliance capabilities.

  • Real-Time API Traffic Mirroring: Capture API requests and responses for external security analysis.
  • Seamless Security Integration: Natively connect to API Security Platforms for endpoint monitoring and attack remediation.
  • Enterprise-Grade Protection: Supports security requirements, including IP blacklisting to mitigate threats in real time.

Learn more in our API Traffic Mirroring documentation.

 

 

Dec 5, 2024
Released

Introducing API Proxy Transformation

Introducing API Proxy Transformation, which helps modernize your APIs and increase the robustness of your API integrations with:

  • Request and response transformation capabilities: Configure request and response transformations with drag-and-drop functionality.
  • Schema Mapping & Key-Value Pair Mapping: Define schemas, map data, and apply formulas for seamless data transformation between systems.
  • Conditional Response Mapping: Route API responses based on HTTP status codes with conditional logic to improve error handling and flexibility.
  • In-Line Formulas: Manipulate data using formulas and expressions.

Benefits include faster integrations, reduced development effort, enhanced compatibility, and secure data transformations.

This feature is in private release. Contact your Customer Success Manager to enable this feature.

2026
Q3
Q2
Q1
2025
2024
2023
2022
2021
2020
2019
Q4
Q3
Q2