IPPEX Cloud V 3.06.0 Release Notes

Introduction
Version 3.6.0 introduces enhancements to file security workflows, user role flexibility, and controlled data submission processes within IPPEX Cloud.
This release focuses on enabling secure file handling for SFTP transfers, expanding user role capabilities for operational teams, and providing restricted access for office-level payroll submissions.
The key updates include:
- Manual PGP Encrypt/Decrypt for SFTP Files
- New Role: Service Delivery Manager
- New Role: Office Submission User
Manual PGP Encrypt/Decrypt for SFTP Files
Overview
Users can now manually decrypt and re-encrypt files within the SFTP workflow, allowing files to be reviewed or amended before transfer without disabling encryption.
This enhancement supports partners who require validation or adjustments prior to sending files externally.
What’s New
Within SFTP folders, users now have the ability to:
- Download and decrypt encrypted files
- Review and amend the file locally
- Re-upload the file using a new Upload and Encrypt action
- Apply the configured PGP encryption automatically on upload
- Proceed with SFTP transfer using the newly encrypted file
The “Upload and Encrypt” option is available via the folder action menu.
Behaviour
- Uploaded files are automatically encrypted using the folder’s configured PGP key and settings
- The newly encrypted file is immediately visible in the folder
- Files are ready for manual SFTP transfer after upload
This workflow assumes that users will manage local decrypted files appropriately (e.g. delete after use).
Benefits
- Enables secure file review prior to transfer
- Removes the need to disable encryption for validation
- Supports partner compliance and operational checks
- Maintains end-to-end encryption within the SFTP process
New Role – Service Delivery Manager
Overview
A new Service Delivery Manager (SDM) role has been introduced to bridge the gap between Payroll Users and Tenancy Administrators.
This role allows users to perform operational payroll activities (such as owning payrolls and managing tasks) while retaining key administrative capabilities.
What’s New
Service Delivery Manager Role
A new primary role is now available:
- Service Delivery Manager
Users assigned this role can:
- Be assigned as Payroll Owners
- Have tasks assigned to them
- Have issues assigned to them
- Access selected administrative functions (e.g. users, roles, settings, payroll groups)
Service Delivery Manager User Group
A dedicated Service Delivery Manager User Group can now be created.
Key rules:
- Only one SDM User Group can exist per tenancy
- The group must be created as a Payroll User Group and designated as the SDM group at creation
- Existing groups cannot be converted into an SDM group
- The SDM User Group is automatically assigned to all payrolls
- New payrolls are automatically included
Role Assignment Behaviour
- Users with the SDM role must be assigned to the SDM User Group
- Users without the SDM role cannot be assigned to the SDM User Group
- When assigning payroll access, only the SDM User Group is selectable
Benefits
- Enables Service Delivery Managers to fully manage payroll operations
- Removes the need to assign full Tenancy Administrator access
- Improves governance and separation of responsibilities
- Simplifies user and payroll access management
New Role – Office Submission User
Overview
A new Office Submission User role has been introduced to allow office-level users to submit payroll change files securely, without exposing wider system access.
This is designed for organisations operating across multiple offices where data must remain isolated between teams.
What’s New
Restricted Submission Role
The Office Submission User role provides:
- Access to assigned tasks only
- Ability to upload files via a dedicated workspace
- Ability to close assigned tasks
The role is strictly limited and does not expose broader system functionality.
Access Restrictions
Users with this role:
- Cannot browse the file system
- Cannot access employee data
- Do not require File Management permissions
- Can only view and interact with tasks assigned to their User Group
Task & Upload Behaviour
- A single task per payroll period is automatically created for each office (User Group)
- The task is assigned to Office Submission Users within that group
- Users can:
- Upload files to the task workspace
- View only files they have uploaded
- Delete their uploaded files
- Close their assigned task
Users can also interact with future period tasks, including uploading files and completing them.
Downstream Process
- Submitted files are made available to payroll users in a shared workspace
- Payroll users can then process and upload files into the main system as required
Benefits
- Enables secure, office-level payroll submissions
- Prevents cross-office visibility of sensitive data
- Removes need to grant broad system access
- Supports controlled and auditable submission workflows