Fetching from the wire…
Public story · 2026-02-20 · source-backed
GitHub | Python, TypeScript, GitHub Actions
Launched alongside Claude Code Security today. Performs context-aware security analysis on PR diffs detecting 10+ vulnerability categories with deep semantic understanding beyond pattern matching. Diff-aware, false-positive filtering, custom scanning instructions. Ships with a /security-review slash command for Claude Code. This is the open-source implementation backing Anthropic's 500+ zero-day claim.
Each link below shares sources, entities, or timing with this story.
Anthropic's own GitHub Action for AI-powered security review of PRs. Diff-aware (only reviews changed code), language-agnostic, with false-positive filtering. Integrates directly into your CI/CD pipeline. If you're already using Claude Code, adding automated security review to...
GitHub | Go, React/TypeScript, Neo4j Surging today with 875 new stars — fastest-growing security repo on GitHub trending. Provides fully autonomous AI penetration testing with multi-agent delegation, Neo4j knowledge graph for persistent context, 20+ built-in security tools, an...
(Intermediate) Anthropic's official GitHub Action (anthropics/claude-code-security-review) runs semantic security analysis on every PR, posting inline comments. Configure .claude/commands/security-review.md for org-specific rules. Not hardened against prompt injection from unt...
Three separate Anthropic changes over about two weeks point the same direction, and none of them announced themselves as a strategy. Claude Code 2.1.238 added claude self-hosted-runner --defer-shutdown-max-min, which keeps serving attached sessions on SIGTERM, parks whatever's...
The IDE market is fragmenting, and this week drew the sharpest lines yet. Cursor 3 launched as a rebuilt agent-orchestration platform in Rust and TypeScript, replacing the VS Code fork with an Agents Window for dispatching and monitoring multiple AI coding agents. Anysphere hi...
The migration command moves Python projects from anthropic 0.x to 1.x. Usage-limit messages now say whether it's the session or the weekly limit resetting, and WebFetch stopped retaining expired content for the whole session instead of the documented 15 minutes. (GitHub)
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.