Fetching from the wire…
Public story · 2026-08-30 · source-backed
v1.0.81 (August 27) lists MCP 2026-07-28 support across CLI, SDK, IDE and in-memory clients, and hooks now receive the current OTel trace context: inputs gain traceparent plus tracestate when the span carries vendor state, and command hooks get matching env vars, so hook work emits spans correlated to the agent turn that triggered it. Windows machines can sign into Entra-protected remote MCP servers through WAM with usually no prompt. (GitHub) First hook API I've seen that makes agent runs traceable end to end without wrapping everything in a script.
Each link below shares sources, entities, or timing with this story.
One Claude Code release fixed two independent permission-check bypasses on the same day. That's the story. Version 2.1.221, shipped August 4, patches a Bash tool bypass where zsh could execute hidden commands embedded inside [[ ]] regex conditionals. The approval prompt never...
A spec is a press release until someone who didn't write it implements it. GitHub made Agent Plugins 1.0 generally available on August 12 across VS Code, Copilot CLI, the Copilot SDK, and the Copilot app on all plans. The spec, published August 6, was co-authored by AWS, Anysp...
Microsoft's update ships a new Agent (Preview) in Copilot Chat built on the SDK powering Copilot CLI, explicitly so behavior stays consistent across CLI, the GitHub app, VS Code and Visual Studio (Visual Studio Blog). It ships curated .NET and Azure skills you enable selective...
copilot-sdk v1.0.9-preview.1 landed July 30 at 19:36 UTC: a trusted extension declares a JavaScript closure that orchestrates a fleet of subagents and invokes it by name, with the runtime calling the closure over reverse RPC and handing it primitives to spawn subagents, compos...
Enterprise-managed MCP allowlists shipped August 6 across the Copilot app, Copilot CLI and VS Code, configured with allowedMcpServers and deniedMcpServers in copilot/managed-settings.json inside the org's .github-private repo. Match by serverUrl with wildcards for remote HTTP/...
3,364 stars since its August 17 creation. Every action against a computer, file, MCP server or UI component routes through a single gateway that resolves the target, decides it against policy, writes an audit row, then acts or refuses while naming the rule. Each bot gets its o...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.