{"schema_version":"newruntime-topic-hub-v0.2","type":"topic_hub","stable_id":"topic_hub:security","slug":"security","title":"Security - New Runtime","description":"A New Runtime topic hub collecting signals, patterns, field notes, and public sources about security.","retrieval_nugget":"A New Runtime topic hub collecting signals, patterns, field notes, and public sources about security. Security is tracked here as an evidence-linked topic, not as a static glossary entry. The page connects raw observations to pattern hypotheses, longer analysis, and public sources. Use it as the canonical landing page before drilling into individual records.","answer":["Security is tracked here as an evidence-linked topic, not as a static glossary entry.","The page connects raw observations to pattern hypotheses, longer analysis, and public sources.","Use it as the canonical landing page before drilling into individual records."],"search_intents":["security","security AI agents","security software"],"status":"featured","last_updated":"2026-08-01","record_date":"2026-08-01","date_kind":"last_updated","counts":{"total":36,"signals":25,"patterns":0,"posts":10,"atlas":1,"sources":65},"routes":{"html":"https://newruntime.com/topics/security/","markdown":"https://newruntime.com/topics/security.md","json":"https://newruntime.com/topics/security.json"},"source_urls":["https://aitmpl.com/component/hook/dangerous-command-blocker","https://anthropic.com/engineering/claude-code-auto-mode","https://blog.cloudflare.com/open-sourcing-our-privacy-proxy-cli/?utm_campaign=cf_blog&utm_content=20260727&utm_medium=organic_social&utm_source=twitter","https://blog.cloudflare.com/temporary-accounts","https://blog.google/innovation-and-ai/products/gemini-app/gemini-spark-updates-july-2026/","https://blog.lukaszolejnik.com/supply-chain-risk-of-agentic-ai-infecting-infrastructures-via-skill-worms","https://blog.palantir.com/securing-agents-in-production-agentic-runtime-1-5191a0715240","https://blogs.nvidia.com/blog/open-secure-ai-alliance/","https://blogs.nvidia.com/blog/open-secure-ai-alliance/?nvid=nv-csfg-990052","https://claude.com/product/claude-security","https://cloudflare.registration.goldcast.io/webinar/7e56b64f-42cc-4e05-a304-899981ba10e6?utm_medium=organic-social&utm_source=twitter&utm_campaign=2026-q3-acq-apac_en-modernsec-ge-wb-general-bfsi_vertical_wbn-jul&utm_content=post1","https://deepmind.google/blog/introducing-gemini-3-5-flash-cyber/?utm_source=x&utm_medium=social&utm_campaign=&utm_content="],"top_sources":["https://aitmpl.com/component/hook/dangerous-command-blocker","https://anthropic.com/engineering/claude-code-auto-mode","https://blog.cloudflare.com/open-sourcing-our-privacy-proxy-cli/?utm_campaign=cf_blog&utm_content=20260727&utm_medium=organic_social&utm_source=twitter","https://blog.cloudflare.com/temporary-accounts","https://blog.google/innovation-and-ai/products/gemini-app/gemini-spark-updates-july-2026/","https://blog.lukaszolejnik.com/supply-chain-risk-of-agentic-ai-infecting-infrastructures-via-skill-worms","https://blog.palantir.com/securing-agents-in-production-agentic-runtime-1-5191a0715240","https://blogs.nvidia.com/blog/open-secure-ai-alliance/","https://blogs.nvidia.com/blog/open-secure-ai-alliance/?nvid=nv-csfg-990052","https://claude.com/product/claude-security","https://cloudflare.registration.goldcast.io/webinar/7e56b64f-42cc-4e05-a304-899981ba10e6?utm_medium=organic-social&utm_source=twitter&utm_campaign=2026-q3-acq-apac_en-modernsec-ge-wb-general-bfsi_vertical_wbn-jul&utm_content=post1","https://deepmind.google/blog/introducing-gemini-3-5-flash-cyber/?utm_source=x&utm_medium=social&utm_campaign=&utm_content="],"evidence_records":[{"kind":"Field Note","stable_id":"post:simon-stateless-mcp-practitioner-reset","slug":"simon-stateless-mcp-practitioner-reset","title":"Stateless MCP Makes Small, Auditable Agent Tools Practical Again","date":"2026-08-01","record_date":"2026-08-01","date_kind":"updated_or_published_at","source_count":3,"url":"https://newruntime.com/posts/simon-stateless-mcp-practitioner-reset/"},{"kind":"Raw Signal","stable_id":"signal:cloudflare-adversaries-aren-t-breaking-in-they-re-logging-in","slug":"cloudflare-adversaries-aren-t-breaking-in-they-re-logging-in","title":"Cloudflare: Adversaries aren't breaking in—they’re logging in.","date":"2026-07-31","record_date":"2026-07-31","date_kind":"observed_at","source_count":2,"url":"https://newruntime.com/signals/cloudflare-adversaries-aren-t-breaking-in-they-re-logging-in/"},{"kind":"Field Note","stable_id":"post:gemini-spark-chrome-auto-browse","slug":"gemini-spark-chrome-auto-browse","title":"Gemini Spark Moves Browser Agents Into Chrome Sessions","date":"2026-07-31","record_date":"2026-07-31","date_kind":"updated_or_published_at","source_count":3,"url":"https://newruntime.com/posts/gemini-spark-chrome-auto-browse/"},{"kind":"Field Note","stable_id":"post:langsmith-llm-gateway-runtime-controls","slug":"langsmith-llm-gateway-runtime-controls","title":"LangSmith LLM Gateway Puts Runtime Controls Between Agents and Models","date":"2026-07-31","record_date":"2026-07-31","date_kind":"updated_or_published_at","source_count":4,"url":"https://newruntime.com/posts/langsmith-llm-gateway-runtime-controls/"},{"kind":"Field Note","stable_id":"post:vercel-passport-agent-identity-boundary","slug":"vercel-passport-agent-identity-boundary","title":"Vercel Passport Makes Identity a Deployment Boundary","date":"2026-07-31","record_date":"2026-07-31","date_kind":"updated_or_published_at","source_count":2,"url":"https://newruntime.com/posts/vercel-passport-agent-identity-boundary/"},{"kind":"Field Note","stable_id":"post:vercel-sandbox-multi-user-agents","slug":"vercel-sandbox-multi-user-agents","title":"Vercel Sandbox Adds Unix Boundaries for Multi-Agent Work","date":"2026-07-31","record_date":"2026-07-31","date_kind":"updated_or_published_at","source_count":2,"url":"https://newruntime.com/posts/vercel-sandbox-multi-user-agents/"},{"kind":"Raw Signal","stable_id":"signal:anthropic-in-a-review-of-our-cybersecurity-evaluations-we-found-three-incidents","slug":"anthropic-in-a-review-of-our-cybersecurity-evaluations-we-found-three-incidents","title":"Anthropic: In a review of our cybersecurity evaluations, we found three incidents in which a Claude model...","date":"2026-07-30","record_date":"2026-07-30","date_kind":"observed_at","source_count":1,"url":"https://newruntime.com/signals/anthropic-in-a-review-of-our-cybersecurity-evaluations-we-found-three-incidents/"},{"kind":"Field Note","stable_id":"post:anthropic-claude-cryptographic-weaknesses","slug":"anthropic-claude-cryptographic-weaknesses","title":"Claude Mythos Moves Cryptanalysis Into the Verification Bottleneck","date":"2026-07-30","record_date":"2026-07-30","date_kind":"updated_or_published_at","source_count":5,"url":"https://newruntime.com/posts/anthropic-claude-cryptographic-weaknesses/"},{"kind":"Raw Signal","stable_id":"signal:cloudflare-final-breakout-block-starting-now-at-cloudflareconnect-sydney","slug":"cloudflare-final-breakout-block-starting-now-at-cloudflareconnect-sydney","title":"Cloudflare: Final breakout block starting now at #CloudflareConnect Sydney!","date":"2026-07-30","record_date":"2026-07-30","date_kind":"observed_at","source_count":1,"url":"https://newruntime.com/signals/cloudflare-final-breakout-block-starting-now-at-cloudflareconnect-sydney/"},{"kind":"Raw Signal","stable_id":"signal:openclaw-openclaw-is-maturing","slug":"openclaw-openclaw-is-maturing","title":"OpenClaw: OpenClaw is maturing.","date":"2026-07-30","record_date":"2026-07-30","date_kind":"observed_at","source_count":2,"url":"https://newruntime.com/signals/openclaw-openclaw-is-maturing/"},{"kind":"Field Note","stable_id":"post:codex-security-cli-scan-workbench","slug":"codex-security-cli-scan-workbench","title":"Codex Security CLI Turns Security Review Into a Scannable Workbench","date":"2026-07-29","record_date":"2026-07-29","date_kind":"updated_or_published_at","source_count":3,"url":"https://newruntime.com/posts/codex-security-cli-scan-workbench/"},{"kind":"Field Note","stable_id":"post:deepsecbench-security-agent-economics","slug":"deepsecbench-security-agent-economics","title":"DeepsecBench Makes Security Agents a Cost/Recall Tradeoff","date":"2026-07-29","record_date":"2026-07-29","date_kind":"updated_or_published_at","source_count":2,"url":"https://newruntime.com/posts/deepsecbench-security-agent-economics/"}],"patterns":[],"field_notes":[{"kind":"Field Note","stable_id":"post:simon-stateless-mcp-practitioner-reset","slug":"simon-stateless-mcp-practitioner-reset","title":"Stateless MCP Makes Small, Auditable Agent Tools Practical Again","description":"Simon Willison's mcp-explorer, datasette-mcp, and llm-mcp-client show how the stateless specification lowers implementation cost and narrows agent capabilities.","date":"2026-08-01","record_date":"2026-08-01","date_kind":"updated_or_published_at","topics":["developer-tools","local-agents","mcp","security"],"source_count":3,"url":"https://newruntime.com/posts/simon-stateless-mcp-practitioner-reset/"},{"kind":"Field Note","stable_id":"post:gemini-spark-chrome-auto-browse","slug":"gemini-spark-chrome-auto-browse","title":"Gemini Spark Moves Browser Agents Into Chrome Sessions","description":"Gemini Spark now integrates with Chrome auto browse, using logged-in browser context with permission while keeping users in the loop for sensitive actions.","date":"2026-07-31","record_date":"2026-07-31","date_kind":"updated_or_published_at","topics":["agents","browser-agents","interfaces","security"],"source_count":3,"url":"https://newruntime.com/posts/gemini-spark-chrome-auto-browse/"},{"kind":"Field Note","stable_id":"post:langsmith-llm-gateway-runtime-controls","slug":"langsmith-llm-gateway-runtime-controls","title":"LangSmith LLM Gateway Puts Runtime Controls Between Agents and Models","description":"LangSmith LLM Gateway turns spend caps, rate limits, fallbacks, redaction, and provider routing into one governed layer for production agents.","date":"2026-07-31","record_date":"2026-07-31","date_kind":"updated_or_published_at","topics":["agents","api-design","infrastructure","security"],"source_count":4,"url":"https://newruntime.com/posts/langsmith-llm-gateway-runtime-controls/"},{"kind":"Field Note","stable_id":"post:vercel-passport-agent-identity-boundary","slug":"vercel-passport-agent-identity-boundary","title":"Vercel Passport Makes Identity a Deployment Boundary","description":"Vercel Passport is now generally available, adding verified identity tokens, group claims, audit events, and automation bypasses to protected deployments.","date":"2026-07-31","record_date":"2026-07-31","date_kind":"updated_or_published_at","topics":["api-design","enterprise-ai","infrastructure","security"],"source_count":2,"url":"https://newruntime.com/posts/vercel-passport-agent-identity-boundary/"},{"kind":"Field Note","stable_id":"post:vercel-sandbox-multi-user-agents","slug":"vercel-sandbox-multi-user-agents","title":"Vercel Sandbox Adds Unix Boundaries for Multi-Agent Work","description":"Vercel Sandbox now supports multiple Linux users and groups, giving each agent a private home directory plus an explicit shared workspace.","date":"2026-07-31","record_date":"2026-07-31","date_kind":"updated_or_published_at","topics":["agents","developer-tools","infrastructure","security"],"source_count":2,"url":"https://newruntime.com/posts/vercel-sandbox-multi-user-agents/"},{"kind":"Field Note","stable_id":"post:anthropic-claude-cryptographic-weaknesses","slug":"anthropic-claude-cryptographic-weaknesses","title":"Claude Mythos Moves Cryptanalysis Into the Verification Bottleneck","description":"Anthropic's cryptography research shows a frontier model finding HAWK and reduced-round AES attacks quickly, while human validation and disclosure become the scarce production step.","date":"2026-07-30","record_date":"2026-07-30","date_kind":"updated_or_published_at","topics":["ai-research","evals","frontier-models","security","verification"],"source_count":5,"url":"https://newruntime.com/posts/anthropic-claude-cryptographic-weaknesses/"},{"kind":"Field Note","stable_id":"post:codex-security-cli-scan-workbench","slug":"codex-security-cli-scan-workbench","title":"Codex Security CLI Turns Security Review Into a Scannable Workbench","description":"OpenAI's Codex Security CLI packages repository, diff, working-tree, export, validation, and patch flows into a security-review workbench rather than a single scanner command.","date":"2026-07-29","record_date":"2026-07-29","date_kind":"updated_or_published_at","topics":["codex","coding-agents","developer-tools","security"],"source_count":3,"url":"https://newruntime.com/posts/codex-security-cli-scan-workbench/"},{"kind":"Field Note","stable_id":"post:deepsecbench-security-agent-economics","slug":"deepsecbench-security-agent-economics","title":"DeepsecBench Makes Security Agents a Cost/Recall Tradeoff","description":"Vercel's DeepsecBench reframes security-agent evaluation around recall, precision, cost, total scan time, and a hidden benchmark that resists training leakage.","date":"2026-07-29","record_date":"2026-07-29","date_kind":"updated_or_published_at","topics":["agent-economics","evals","models","security"],"source_count":2,"url":"https://newruntime.com/posts/deepsecbench-security-agent-economics/"},{"kind":"Field Note","stable_id":"post:cloudflare-pvcli-privacy-debugger","slug":"cloudflare-pvcli-privacy-debugger","title":"Cloudflare pvcli Makes Privacy Protocols Debuggable Like Infrastructure","description":"Cloudflare open-sourced pvcli, a curl-like debugger for OHTTP-style privacy flows where no one party is supposed to see the whole request path.","date":"2026-07-27","record_date":"2026-07-27","date_kind":"updated_or_published_at","topics":["agent-ready-software","developer-tools","privacy","security"],"source_count":3,"url":"https://newruntime.com/posts/cloudflare-pvcli-privacy-debugger/"},{"kind":"Field Note","stable_id":"post:capital-one-vulnhunter-attacker-first-security-agent","slug":"capital-one-vulnhunter-attacker-first-security-agent","title":"Capital One's VulnHunter Points AI at Real Attack Paths","description":"Capital One's VulnHunter shows a useful shift in AI security tooling: an agent should connect a fix to a reproducible attack path, not only generate a diff.","date":"2026-07-21","record_date":"2026-07-21","date_kind":"updated_or_published_at","topics":["code-agents","security","vulnerability-management"],"source_count":1,"url":"https://newruntime.com/posts/capital-one-vulnhunter-attacker-first-security-agent/"}],"raw_signals":[{"kind":"Raw Signal","stable_id":"signal:cloudflare-adversaries-aren-t-breaking-in-they-re-logging-in","slug":"cloudflare-adversaries-aren-t-breaking-in-they-re-logging-in","title":"Cloudflare: Adversaries aren't breaking in—they’re logging in.","description":"A public X post from Cloudflare with a linked primary source flags Adversaries aren't breaking in—they’re logging in. How is your financial leadership redefining security? Register for our webinar on security resilience.","date":"2026-07-31","record_date":"2026-07-31","date_kind":"observed_at","topics":["ai","interfaces","security"],"source_count":2,"metric":"notable","url":"https://newruntime.com/signals/cloudflare-adversaries-aren-t-breaking-in-they-re-logging-in/"},{"kind":"Raw Signal","stable_id":"signal:anthropic-in-a-review-of-our-cybersecurity-evaluations-we-found-three-incidents","slug":"anthropic-in-a-review-of-our-cybersecurity-evaluations-we-found-three-incidents","title":"Anthropic: In a review of our cybersecurity evaluations, we found three incidents in which a Claude model...","description":"A public X post from Anthropic as a public source in its own right flags In a review of our cybersecurity evaluations, we found three incidents in which a Claude model reached the internet from within or while interacting with a third-party evaluation...","date":"2026-07-30","record_date":"2026-07-30","date_kind":"observed_at","topics":["evals","models","security"],"source_count":1,"metric":"notable","url":"https://newruntime.com/signals/anthropic-in-a-review-of-our-cybersecurity-evaluations-we-found-three-incidents/"},{"kind":"Raw Signal","stable_id":"signal:cloudflare-final-breakout-block-starting-now-at-cloudflareconnect-sydney","slug":"cloudflare-final-breakout-block-starting-now-at-cloudflareconnect-sydney","title":"Cloudflare: Final breakout block starting now at #CloudflareConnect Sydney!","description":"A public X post from Cloudflare as a public source in its own right flags Final breakout block starting now at #CloudflareConnect Sydney! Heading into deep dives on volumetric attack mitigation, machine-to-machine security, Workers AI, retail showcases,...","date":"2026-07-30","record_date":"2026-07-30","date_kind":"observed_at","topics":["ai","security"],"source_count":1,"metric":"notable","url":"https://newruntime.com/signals/cloudflare-final-breakout-block-starting-now-at-cloudflareconnect-sydney/"},{"kind":"Raw Signal","stable_id":"signal:openclaw-openclaw-is-maturing","slug":"openclaw-openclaw-is-maturing","title":"OpenClaw: OpenClaw is maturing.","description":"A public X post from OpenClaw with a linked primary source flags OpenClaw is maturing. Today we’re introducing monthly extended-stable releases with backported security and reliability fixes, along with a public maturity scorecard for tracking...","date":"2026-07-30","record_date":"2026-07-30","date_kind":"observed_at","topics":["agents","security"],"source_count":2,"metric":"structural","url":"https://newruntime.com/signals/openclaw-openclaw-is-maturing/"},{"kind":"Raw Signal","stable_id":"signal:openai-we-quietly-released-the-open-source-codex-security-cli-but-hacker-news-fo","slug":"openai-we-quietly-released-the-open-source-codex-security-cli-but-hacker-news-fo","title":"OpenAI: We quietly released the open-source Codex Security CLI, but Hacker News found it before we had...","description":"A public X post from OpenAI with a linked primary source flags We quietly released the open-source Codex Security CLI, but Hacker News found it before we had a chance to share it here... You can now use it to scan repositories, track findings...","date":"2026-07-29","record_date":"2026-07-29","date_kind":"observed_at","topics":["coding-agents","interfaces","models","security"],"source_count":3,"metric":"structural","url":"https://newruntime.com/signals/openai-we-quietly-released-the-open-source-codex-security-cli-but-hacker-news-fo/"},{"kind":"Raw Signal","stable_id":"signal:factory-we-re-firm-believers-in-the-open-security-ecosystem-contributing-across","slug":"factory-we-re-firm-believers-in-the-open-security-ecosystem-contributing-across","title":"Factory: We're firm believers in the open security ecosystem, contributing across our platform: • Publi...","description":"A public X post from Factory with a linked primary source flags We're firm believers in the open security ecosystem, contributing across our platform: • Publishing two open-weight models behind Droid Shield 2.0 • Using Autonomous Security Revi...","date":"2026-07-28","record_date":"2026-07-28","date_kind":"observed_at","topics":["coding-agents","interfaces","models","security"],"source_count":2,"metric":"notable","url":"https://newruntime.com/signals/factory-we-re-firm-believers-in-the-open-security-ecosystem-contributing-across/"},{"kind":"Raw Signal","stable_id":"signal:github-5","slug":"github-5","title":"GitHub: 5.","description":"A public X post from GitHub with a linked primary source flags 5. Turn on code scanning Code scanning uses CodeQL to identify patterns that lead to vulnerabilities, including injection flaws, unsafe deserialization, and insecure GitHub Action...","date":"2026-07-28","record_date":"2026-07-28","date_kind":"observed_at","topics":["coding-agents","github","interfaces","security","workflows"],"source_count":2,"metric":"notable","url":"https://newruntime.com/signals/github-5/"},{"kind":"Raw Signal","stable_id":"signal:cloudflare-pvcli-privacy-debugger","slug":"cloudflare-pvcli-privacy-debugger","title":"Cloudflare pvcli Makes Privacy Protocols Debuggable Like Infrastructure","description":"Cloudflare open-sourced pvcli, a curl-like debugger for OHTTP-style privacy flows where no one party is supposed to see the whole request path.","date":"2026-07-27","record_date":"2026-07-27","date_kind":"observed_at","topics":["agents","interfaces","security"],"source_count":3,"metric":"notable","url":"https://newruntime.com/signals/cloudflare-pvcli-privacy-debugger/"},{"kind":"Raw Signal","stable_id":"signal:cloudflare-fujitec-migrated-3-300-global-employees-from-legacy-vpns-to-cloudflar","slug":"cloudflare-fujitec-migrated-3-300-global-employees-from-legacy-vpns-to-cloudflar","title":"Cloudflare: Fujitec migrated 3,300+ global employees from legacy VPNs to Cloudflare One (ZTNA) in just 45...","description":"A public X post from Cloudflare with a linked primary source flags Fujitec migrated 3,300+ global employees from legacy VPNs to Cloudflare One (ZTNA) in just 45 days—enhancing security and performance worldwide.","date":"2026-07-27","record_date":"2026-07-27","date_kind":"observed_at","topics":["ai","security"],"source_count":2,"metric":"structural","url":"https://newruntime.com/signals/cloudflare-fujitec-migrated-3-300-global-employees-from-legacy-vpns-to-cloudflar/"},{"kind":"Raw Signal","stable_id":"signal:open-secure-ai-alliance-open-defense-stack","slug":"open-secure-ai-alliance-open-defense-stack","title":"Open Secure AI Alliance Turns the AI-Safety Fight Into a Stack Question","description":"NVIDIA's Open Secure AI Alliance reframes open models, harnesses, identity, safe formats, scanners, and disclosure as shared defensive infrastructure for AI agents.","date":"2026-07-27","record_date":"2026-07-27","date_kind":"observed_at","topics":["agents","models","security"],"source_count":6,"metric":"structural","url":"https://newruntime.com/signals/open-secure-ai-alliance-open-defense-stack/"},{"kind":"Raw Signal","stable_id":"signal:openclaw-nvidia-has-been-an-incredible-partner-in-helping-make-openclaw-more-sec","slug":"openclaw-nvidia-has-been-an-incredible-partner-in-helping-make-openclaw-more-sec","title":"OpenClaw: NVIDIA has been an incredible partner in helping make OpenClaw more secure.","description":"A public X post from OpenClaw as a public source in its own right flags NVIDIA has been an incredible partner in helping make OpenClaw more secure. Security is a team sport, and open collaboration is how we protect the next generation of agents. Proud...","date":"2026-07-27","record_date":"2026-07-27","date_kind":"observed_at","topics":["agents","security"],"source_count":1,"metric":"notable","url":"https://newruntime.com/signals/openclaw-nvidia-has-been-an-incredible-partner-in-helping-make-openclaw-more-sec/"},{"kind":"Raw Signal","stable_id":"signal:vercel-developers-nuxt-4-5-1-and-3-21-10-fix-multiple-security-vulnerabilities","slug":"vercel-developers-nuxt-4-5-1-and-3-21-10-fix-multiple-security-vulnerabilities","title":"Vercel Developers: Nuxt 4.5.1 and 3.21.10 fix multiple security vulnerabilities.","description":"A public X post from Vercel Developers with a linked primary source flags Nuxt 4.5.1 and 3.21.10 fix multiple security vulnerabilities. All @nuxt_js users should upgrade as soon as possible. See details, upgrade guidance and our Vercel Firewall response...","date":"2026-07-27","record_date":"2026-07-27","date_kind":"observed_at","topics":["ai","interfaces","security"],"source_count":2,"metric":"notable","url":"https://newruntime.com/signals/vercel-developers-nuxt-4-5-1-and-3-21-10-fix-multiple-security-vulnerabilities/"},{"kind":"Raw Signal","stable_id":"signal:vercel-deepsecbench-evaluates-model-accuracy-cost-and-speed-in-finding-cybersecu","slug":"vercel-deepsecbench-evaluates-model-accuracy-cost-and-speed-in-finding-cybersecu","title":"Vercel: DeepsecBench evaluates model accuracy, cost, and speed in finding cybersecurity vulnerabilitie...","description":"A public X post from Vercel with a linked primary source flags DeepsecBench evaluates model accuracy, cost, and speed in finding cybersecurity vulnerabilities. Latest results: ▪️ GPT-5.6 Sol scores highest ▪️ Kimi K3 gets half the top score a...","date":"2026-07-27","record_date":"2026-07-27","date_kind":"observed_at","topics":["ai","evals","models","security"],"source_count":2,"metric":"structural","url":"https://newruntime.com/signals/vercel-deepsecbench-evaluates-model-accuracy-cost-and-speed-in-finding-cybersecu/"},{"kind":"Raw Signal","stable_id":"signal:claude-opus-5-is-available-today-on-all-paid-plans-and-the-claude-api-priced-the","slug":"claude-opus-5-is-available-today-on-all-paid-plans-and-the-claude-api-priced-the","title":"Claude: Opus 5 is available today on all paid plans and the Claude API, priced the same as Opus 4.8.","description":"A public X post from Claude with a linked primary source flags Opus 5 is available today on all paid plans and the Claude API, priced the same as Opus 4.8. It’s the default model on Claude Max, and the strongest on Claude Pro. It’s also offer...","date":"2026-07-24","record_date":"2026-07-24","date_kind":"observed_at","topics":["agents","api-design","evals","models","security"],"source_count":2,"metric":"structural","url":"https://newruntime.com/signals/claude-opus-5-is-available-today-on-all-paid-plans-and-the-claude-api-priced-the/"},{"kind":"Raw Signal","stable_id":"signal:github-protect-your-secrets","slug":"github-protect-your-secrets","title":"GitHub: Protect your secrets.","description":"A public X post from GitHub as a public source in its own right flags Protect your secrets. 🔐 Join us July 28 for a GitHub Security webinar exploring secret leak trends, public exposure monitoring, and practical steps your org can take to reduce ris...","date":"2026-07-23","record_date":"2026-07-23","date_kind":"observed_at","topics":["coding-agents","github","interfaces","security"],"source_count":1,"metric":"notable","url":"https://newruntime.com/signals/github-protect-your-secrets/"},{"kind":"Raw Signal","stable_id":"signal:google-deepmind-to-ensure-this-model-is-deployed-responsibly-we-re-starting-with","slug":"google-deepmind-to-ensure-this-model-is-deployed-responsibly-we-re-starting-with","title":"Google DeepMind: To ensure this model is deployed responsibly, we’re starting with a limited-access pilot for g...","description":"A public X post from Google DeepMind with a linked primary source flags To ensure this model is deployed responsibly, we’re starting with a limited-access pilot for governments and trusted partners. →","date":"2026-07-23","record_date":"2026-07-23","date_kind":"observed_at","topics":["interfaces","models","security"],"source_count":2,"metric":"notable","url":"https://newruntime.com/signals/google-deepmind-to-ensure-this-model-is-deployed-responsibly-we-re-starting-with/"},{"kind":"Raw Signal","stable_id":"signal:langchain-agent-governance-extends-beyond-security-bringing-together-authenticat","slug":"langchain-agent-governance-extends-beyond-security-bringing-together-authenticat","title":"LangChain: Agent governance extends beyond security, bringing together authentication, audit logs, user m...","description":"A public X post from LangChain as a public source in its own right flags Agent governance extends beyond security, bringing together authentication, audit logs, user management, provider secrets, data separation, data residency, rate limits, fallbacks,...","date":"2026-07-23","record_date":"2026-07-23","date_kind":"observed_at","topics":["agents","interfaces","security"],"source_count":1,"metric":"notable","url":"https://newruntime.com/signals/langchain-agent-governance-extends-beyond-security-bringing-together-authenticat/"},{"kind":"Raw Signal","stable_id":"signal:claude-the-claude-security-plugin-for-claude-code-is-now-available-in-beta","slug":"claude-the-claude-security-plugin-for-claude-code-is-now-available-in-beta","title":"Claude: The Claude Security plugin for Claude Code is now available in beta.","description":"A public X post from Claude with a linked primary source flags The Claude Security plugin for Claude Code is now available in beta. Scan your changes for vulnerabilities before you commit, or run a full scan across your codebase, all from you...","date":"2026-07-22","record_date":"2026-07-22","date_kind":"observed_at","topics":["agents","coding-agents","security"],"source_count":2,"metric":"structural","url":"https://newruntime.com/signals/claude-the-claude-security-plugin-for-claude-code-is-now-available-in-beta/"},{"kind":"Raw Signal","stable_id":"signal:openai-we-re-partnering-with-huggingface-to-investigate-an-unprecedented-securit","slug":"openai-we-re-partnering-with-huggingface-to-investigate-an-unprecedented-securit","title":"OpenAI: We're partnering with @huggingface to investigate an unprecedented security incident.","description":"A public X post from OpenAI as a public source in its own right flags We're partnering with @huggingface to investigate an unprecedented security incident. Cyber-capable OpenAI models compromised Hugging Face production during a benchmark evaluation...","date":"2026-07-21","record_date":"2026-07-21","date_kind":"observed_at","topics":["evals","models","security"],"source_count":1,"metric":"notable","url":"https://newruntime.com/signals/openai-we-re-partnering-with-huggingface-to-investigate-an-unprecedented-securit/"},{"kind":"Raw Signal","stable_id":"signal:cubesandbox-microvm-execution-layer","slug":"cubesandbox-microvm-execution-layer","title":"CubeSandbox packages agent execution into isolated microVMs","description":"CubeSandbox provides open-source KVM microVM isolation, lifecycle controls, and per-agent Linux environments.","date":"2026-07-14","record_date":"2026-07-14","date_kind":"observed_at","topics":["agent-infrastructure","sandbox","security"],"source_count":2,"metric":"notable","url":"https://newruntime.com/signals/cubesandbox-microvm-execution-layer/"},{"kind":"Raw Signal","stable_id":"signal:cloudflare-gives-agents-temporary-accounts","slug":"cloudflare-gives-agents-temporary-accounts","title":"Cloudflare Gives Agents Temporary Accounts","description":"Disposable identity and scoped access reduce the risk of letting agents touch systems that were designed around long-lived human credentials.","date":"2026-06-23","record_date":"2026-06-23","date_kind":"observed_at","topics":["agent-identity","security","temporary-access"],"source_count":1,"metric":"notable","url":"https://newruntime.com/signals/cloudflare-gives-agents-temporary-accounts/"},{"kind":"Raw Signal","stable_id":"signal:anthropic-claude-code-auto-mode-agent-security-runtime-boundaries","slug":"anthropic-claude-code-auto-mode-agent-security-runtime-boundaries","title":"Anthropic / Claude Code Auto Mode: Agent Security Runtime Boundaries","description":"The archive captures Anthropic / Claude Code Auto Mode as a dated public record from Anthropic / Claude Code Auto Mode. It documents agent security expanding from prompt policy into memory, tools, sandboxes, and execution boundaries and is retained as branch-opening evidence for the agent security runtime boundaries trend.","date":"2026-03-30","record_date":"2026-03-30","date_kind":"observed_at","topics":["agent-security","agents","claude","prompt-injection","sandbox","security"],"source_count":1,"metric":"structural","url":"https://newruntime.com/signals/anthropic-claude-code-auto-mode-agent-security-runtime-boundaries/"},{"kind":"Raw Signal","stable_id":"signal:aitmpl-dangerous-command-blocker-agent-security-runtime-boundaries","slug":"aitmpl-dangerous-command-blocker-agent-security-runtime-boundaries","title":"Aitmpl / Dangerous Command Blocker: Agent Security Runtime Boundaries","description":"The archive captures Aitmpl / Dangerous Command Blocker as a dated public record from Aitmpl / Dangerous Command Blocker. It documents agent security expanding from prompt policy into memory, tools, sandboxes, and execution boundaries and is retained as branch-opening evidence for the agent security runtime boundaries trend.","date":"2026-02-05","record_date":"2026-02-05","date_kind":"observed_at","topics":["agent-harness","agent-security","coding-agents","prompt-injection","sandbox","security","skills"],"source_count":1,"metric":"structural","url":"https://newruntime.com/signals/aitmpl-dangerous-command-blocker-agent-security-runtime-boundaries/"},{"kind":"Raw Signal","stable_id":"signal:blog-securing-agents-in-production-agentic-runtime-5191a0715240-agent-security-runtime-boundaries","slug":"blog-securing-agents-in-production-agentic-runtime-5191a0715240-agent-security-runtime-boundaries","title":"Blog / Securing Agents In Production Agentic Runtime 5191a0715240: Agent Security Runtime Boundaries","description":"The archive captures Blog / Securing Agents In Production Agentic Runtime 5191a0715240 as a dated public record from Blog / Securing Agents In Production Agentic Runtime 5191a0715240. It documents agent security expanding from prompt policy into memory, tools, sandboxes, and execution boundaries and is retained as branch-opening evidence for the agent security runtime boundaries trend.","date":"2026-01-25","record_date":"2026-01-25","date_kind":"observed_at","topics":["agent-runtime","agent-security","agent-tools","agents","prompt-injection","sandbox","security"],"source_count":1,"metric":"structural","url":"https://newruntime.com/signals/blog-securing-agents-in-production-agentic-runtime-5191a0715240-agent-security-runtime-boundaries/"}],"atlas_records":[{"kind":"Delta","stable_id":"capability_delta:attacker-first-remediation-loop","slug":"attacker-first-remediation-loop","title":"Attacker-first agents turn vuln triage into repair candidates","description":"A security agent can start from attacker-first exploit-path search and prepare a production-code fix instead of following an abstract checklist.","date":"2026-07-21","record_date":"2026-07-21","date_kind":"observed_at","topics":["agents","code-review","security"],"source_count":1,"metric":"B1","url":"https://newruntime.com/deltas/attacker-first-remediation-loop/"}],"next_reads":[{"type":"related_material","path":"/posts/simon-stateless-mcp-practitioner-reset/","reason":"Continue through the Security topic.","url":"https://newruntime.com/posts/simon-stateless-mcp-practitioner-reset/","title":"Stateless MCP Makes Small, Auditable Agent Tools Practical Again","media_type":"text/html"},{"type":"related_material","path":"/posts/gemini-spark-chrome-auto-browse/","reason":"Continue through the Security topic.","url":"https://newruntime.com/posts/gemini-spark-chrome-auto-browse/","title":"Gemini Spark Moves Browser Agents Into Chrome Sessions","media_type":"text/html"},{"type":"related_material","path":"/posts/langsmith-llm-gateway-runtime-controls/","reason":"Continue through the Security topic.","url":"https://newruntime.com/posts/langsmith-llm-gateway-runtime-controls/","title":"LangSmith LLM Gateway Puts Runtime Controls Between Agents and Models","media_type":"text/html"},{"type":"related_material","path":"/posts/vercel-passport-agent-identity-boundary/","reason":"Continue through the Security topic.","url":"https://newruntime.com/posts/vercel-passport-agent-identity-boundary/","title":"Vercel Passport Makes Identity a Deployment Boundary","media_type":"text/html"},{"type":"related_material","path":"/posts/vercel-sandbox-multi-user-agents/","reason":"Continue through the Security topic.","url":"https://newruntime.com/posts/vercel-sandbox-multi-user-agents/","title":"Vercel Sandbox Adds Unix Boundaries for Multi-Agent Work","media_type":"text/html"}]}
