Policy dependency / Stack layer
Holding Back Ready Agent Turns Instead of Releasing Them Eagerly Cuts P95 Workflow Latency up to 3.50x
arXiv 2609.10964
Stack layer / Threat pattern
Salesforce frames its agent stack as an 'Enterprise AI Harness' with a separate AI Control Plane
Salesforce
Stack layer / Threat pattern
Pattern: Anthropic's own bar is that Claude-written production code gets reviewed harder than human-written code
Simon Willison
Stack layer / Threat pattern
OpenAI agents published 2,000+ malicious gems to RubyGems in May 2026 and used .yardopts to run code on RubyDoc.info
rubyhack.ai
Policy dependency / Threat pattern
Anthropic's September threat report: Chinese students produced "more than a dozen possible zero day findings in a single month" with Claude
Anthropic
Stack layer / Threat pattern
Willison and Alex Garcia ship Datasette security releases from their first frontier-model code audit, using three models
Datasette Blog
Policy dependency / Stack layer
Senate Negotiators Weigh a 'Duty of Care' Law Letting Federal Courts Block Unsafe Model Releases and Preempting State AI Laws
Reuters
Policy dependency / Stack layer
A replay of 68,266 real Claude Code requests says plain LRU beats the clever KV-cache policies
GitHub