Release 5.18.2
Release 5.18.0 started rolling out on 30.09.2026, but after an issue was found the rollout was halted and instances were returned to version 5.17.2. Release 5.18.2 replaces it: you move from 5.17.2 straight to 5.18.2 and get all changes of release 5.18.0 — they are described in the release 5.18.0 notes, including the "Please note" section there. Release 5.18.1 was not shipped separately; its fixes are part of 5.18.2.
Below is only what is added on top of 5.18.0: a fix for the issue that broke some lists, client search and client filters in 5.18.0, two operator panel fixes, and the new "CRM embedding" page. Key sign-in in the embedded panel no longer lets administrators in — if your CRM already opens the panel with a key, review the "Please note" section.
Operator panel
Fixed
- The assignee no longer disappears from a ticket after you pick one from the list. If you typed part of a name in the "Assignee" field of a ticket card and clicked the operator with the mouse, the system sometimes first saved "assignee removed" and only then the picked operator. After the card was reloaded, the assignee could be gone. Now only the picked operator is saved.
- Before: unfinished input followed by a click outside the field (or Tab or Esc) cleared the value.
- Now: in that case the field restores the previous value and saves nothing. To remove the assignee, click the "×" icon in the field or erase the text.
- Other pick-from-list fields now behave the same way: in ticket creation, in quality assurance filters and in the operator panel. For example, unfinished input in a quality assurance filter no longer resets the selected filter.
- E-mail steps in the "Show recent steps" window read as plain text. In the dialog's right panel ("Interaction history" → "Show recent steps") and in the "Clients" section, the text of e-mail steps was shown with HTML code: the client's letter came with styles and service tags, the operator's reply with paragraph tags. Now the window shows the text of the letter with line breaks, without tags, styles or inline images. Plain-text steps and steps with an action result are shown exactly as before.
Fixes for release 5.18.0 issues
Fixed
In release 5.18.0, some database queries that work with client extra fields and channel settings ended with an error. Because of that, on instances with 5.18.0 the following stopped working:
- The first message to a client — the "Write to the client" and "Message to a new client" windows did not load the list of processes for e-mail, WhatsApp and Custom Channel.
- The Custom Channel bot list and the tag filter in the process library.
- Sending Gmail letters from an additional (non-primary) address of the channel.
- Client text search, client list filters on extra fields and merging client cards (moving portal users to the merged card).
All of this works again in 5.18.2. No action is needed.
Integrations
New
- The "CRM embedding" page. The ConnectiveOne operator panel can be opened inside your CRM/ERP (Creatio, Zoho, Odoo and others) in an iframe. The instance administrator now sets this up on their own, without contacting the ConnectiveOne team: Settings → Operator panel → CRM embedding.
- Turn embedding on and list the CRM domains, one per line (
https://crm.example.com, orhttps://*.example.comfor all subdomains). - Generate, show, copy or regenerate the passwordless sign-in key. Viewing and regenerating the key are recorded in the settings change log.
- Get ready-made iframe code for one of three modes: the whole panel, chat queue only (without the ConnectiveOne menu) or chat from the client card (only the chat with that client).
- Access to the page is given by the new role permission "CRM embedding" (Settings → Roles → Operator panel): "View" shows the page and the key status, "Edit" shows the key, changes the settings and regenerates the key. Administrator roles get this permission automatically, other roles do not.
- The browser shows ConnectiveOne in a frame only on sites from the domain list. While embedding is off, a third-party site cannot open the panel in its frame.
- The CRM frame no longer picks up a session opened in ConnectiveOne directly in another tab: the frame signs in exactly the operator whose email is in the link.
- Turn embedding on and list the CRM domains, one per line (
Please note
- Key sign-in in the embedded panel no longer works for administrators. If the CRM opens the panel with the email of a ConnectiveOne administrator (or of a user who may edit roles or users), the frame shows
user not foundinstead of the panel. Put the email of a regular operator into the link; the administrator keeps working in ConnectiveOne directly. The same applies to the Zoho integration that signs in with theAUTO_LOGIN_KEYkey. The key also does not let in roles that may edit the "CRM embedding" page, inactive accounts, or accounts that are missing or disabled in Active Directory. The reason: the key is visible in the browser of every CRM user, so signing in as an administrator would give administrator rights to any of them. - CRM users can see the sign-in key. The key is part of the iframe address, so any CRM user who gets the frame can read it (in the browser developer tools), and it can stay in the browser history and in web server logs. Key sign-in does not ask for a two-factor authentication (2FA) code. Regenerating the key blocks new sign-ins with the old key but does not close frames that are already open. Turn embedding on only for people you trust as ConnectiveOne operators, and regenerate the key if it may have reached outsiders.
- Existing key integrations keep working. If your CRM already signs in to the panel with the
AUTO_LOGIN_KEYkey, after the update embedding is treated as enabled for any site until you save the settings on the "CRM embedding" page. We recommend listing your CRM domains there right away. - Embedding without key sign-in has to be turned on. If ConnectiveOne was shown in a frame of another site without key sign-in, after the update the browser stops showing it there. Turn embedding on and add that site's domain on the "CRM embedding" page.
- A session in the embedded panel lasts as long as one after a password sign-in. Previously a session opened with the key had no expiry. If your instance limits the session lifetime and the CRM frame opens the old design, the session in the frame will end after about 15 minutes — use a link to the new design (
/autologin) as described in the guide below. - The "CRM embedding" page appears after signing in again. Administrators who were signed in during the update will see the menu item after they sign out and sign in again.
- Custom actions (Action Jail) and custom modules. The database query issue is fixed in the ConnectiveOne code, but the fix does not cover your instance's custom actions and custom modules. If they access client extra fields or channel settings directly, such calls may end with an error after the update and have to be reworked. If you notice a custom action failing after the update, contact your ConnectiveOne manager.
- Pick-from-list fields. To clear a field (including "Assignee" in a ticket), use the "×" icon or erase the text: a click outside the field now restores the previous value.