Shared entity / Stack layer
chrome-devtools-mcp v1.9.0 adds configurable filesystem roots and a switch to turn off JavaScript execution entirely
GitHub
Policy dependency / Stack layer
MCP ext-apps migrated to SDK v2 across 125 files to cut a server-to-client dependency edge
GitHub
Stack layer / Threat pattern
chrome-devtools-mcp 1.9.0 publishes itself as an Agent Plugins 1.0 package installable across five agent clients
GitHub
Stack layer / Threat pattern
CROSS-CATEGORY: Four Independent Projects in 48 Hours Built the Portability Layer That Moves Lock-In Off the Agent Vendor
Engrim, Kit, Yurei and Crew (via Hacker News Show HN and Product Hunt)
Stack layer / Threat pattern
LangChain's deepagents-talon adds channel-scoped MCP server authorization and OAuth device auth for Slack and GitHub
GitHub Releases
Policy dependency / Stack layer
Codex now gates MCP tool calls behind a Touch ID signature from a Secure Enclave key
GitHub
Policy dependency / Stack layer
CONTINUITY names "security-context discontinuity" as the failure mode where individually correct agent security controls compose into an insecure system
arXiv
Policy dependency / Stack layer
Keyclasp Puts Agent Credentials in a Local AES-256-GCM Vault and Kills the Process if a Secret Appears in Output
keyclasp on GitHub, via Hacker News Show HN (single source)