Overview
This article details recent updates to Course Evaluation & Surveys (CES), including refined wording for project result thresholds, updated notification access timing for course-level reports, and critical security and performance improvements for the CES Moodle plugin.
Updated Wording in Project Results When Thresholds Are Configured
The text displayed in Project Results when response-rate thresholds are configured has been updated for clarity. Labels and messaging now more accurately describe threshold behavior.
Results Notification Now Follows Course-Level Report Access Dates
Under Project > Communication > Results Notification, notification timing now respects a course's own course-level report-access date when one is set, instead of always applying the project-wide default. Each course in a project resolves its send time independently, offset by the configured number of days before or after its access date. Courses without a course-level override continue to use the project's default Report Setup date for the applicable role (Administrator, Instructor, or TA).
Moodle Plugin Updated to Address Security, Performance, and Compliance Issues
The CES Moodle plugin has been updated to resolve issues found during a client security review: it no longer performs a database write and cache rebuild on every page load, activity creation now goes through standard Moodle APIs, CSRF protection has been added to sensitive actions, and the plugin's privacy metadata now correctly discloses that user names and email addresses are sent to CES.