Fetching from the wire…
Public story · 2026-08-05 · high
The deal is Anaconda's second acquisition in two months and follows the EU AI Act's obligations taking effect August 2.
Why now: The acquisition closed August 4, two days after the EU AI Act's obligations took effect and two months after Anaconda's prior deal for Kilo Code.
Anaconda acquired Enkrypt AI on August 4, per the company's announcement. The deal folds AI red-teaming and compliance tools into a company best known for distributing Python packages.
Enkrypt's scans found 143,000 vulnerabilities across 73% of the MCP servers it checked. That's the number worth sitting with if your team has wired an LLM into internal tools over MCP and never audited the connection.
The acquired technology covers three things: pre-deployment red-teaming across more than 300 attack categories. It also adds runtime guardrails against jailbreaks and data leaks, plus compliance mapping to the NIST AI RMF and the EU AI Act. The EU AI Act's obligations took effect August 2, two days before the deal closed.
This is Anaconda's second acquisition in two months, following Kilo Code. Two deals that close together is a pivot, not a side bet. A company built on packaging open-source Python libraries is now selling AI governance tooling on top of that distribution business.
That bet holds only if the 73% failure rate survives scrutiny from teams auditing their own servers. Enkrypt's numbers now come from a company with a financial reason to keep finding vulnerabilities. I'd watch whether Anaconda folds the scanning into its core distribution product or sells it as a separate layer.
Each link below shares sources, entities, or timing with this story.
Google Cloud moved seven Gemini Enterprise Agent Platform features to GA on July 29, including Agent Identity as a native SPIFFE-based IAM type with least-privilege enforcement and non-repudiable auditing, plus Gateway, Registry, Evaluation, Observability, Memory Bank, and a R...
Anaconda acquired Kilo Code on July 15; Kilo supplies planning, coding, and debugging agents inside VS Code, JetBrains, and the CLI. Anaconda's moat is being the default Python environment in enterprises and universities, and that moat is worth very little if the agent layer a...
James Kettle published the whitepaper August 5, presented at Black Hat and DEF CON (PortSwigger). The architecture detail is what agent builders should copy: Turbo Intruder got an MCP interface plus Python orchestration, and the exploitation agent's script was deliberately spl...
Block released it August 27 with a security section dominated by defaults that previously failed open: fail closed on malformed tool visibility, permission denies now take precedence, fail closed on invalid default GCP credentials and invalid Codex ACP mode, honor plugin enabl...
OneMCP posted to Show HN on August 23, unifying 20+ MCP servers behind one portal endpoint exposing only search, describe and execute, letting the model script against tools in code rather than reading every schema. The page credits Cloudflare's Code Mode portal pattern as pri...
Raj Nagulapalle's FetchSandbox MCP took 107 votes on August 23, wiring 70+ API sandboxes into Cursor or Claude Code via MCP config. The claim is narrower and more testable than most agent tooling: reproduce the real integration failure against a sandbox, apply the fix, re-run...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.