Shared entity / Stack layer
OpenAI Agents SDK 0.22.1 adds server-wide guardrails on MCP tools and configurable Unix-local sandbox isolation
GitHub
Shared entity / Threat pattern
LangChain's deepagents-talon adds channel-scoped MCP server authorization and OAuth device auth for Slack and GitHub
GitHub Releases
Shared entity / Policy dependency
Codex now gates MCP tool calls behind a Touch ID signature from a Secure Enclave key
GitHub
Shared entity / Stack layer
Claude Code MCP servers configured as `http` never connected if the server only spoke legacy HTTP+SSE
GitHub
Shared entity / Stack layer
Pomeroy Makes the macOS Menu Bar the MCP Broker for Mail, Calendar and iMessage, Free at 50 Actions a Week
Pomeroy, via Hacker News Show HN
Policy dependency / Stack layer
83.3% of 281 open-source AI contribution policies permit AI code, but 67.3% demand a high level of human involvement
arXiv
Policy dependency / Stack layer
Tailwind Labs Sells to Shopify After AI Code Generation Cut Its Revenue 80% While Usage Hit 110M Weekly Installs
Tailwind CSS blog (corroborated by the HN thread and danielcoulter.com's compilation of Wathan's January disclosures)
Stack layer / Threat pattern
16% of 3,171 public agent-harness setups carry a confirmed security defect, and 3.8% ship a skill that pre-approves your shell
arXiv