Policy dependency / Stack layer
A Fine-Tuned RoBERTa-Large Permission Gate Matches Claude Haiku 4.5 at Deciding What an Agent May Touch
arXiv 2609.15422
Policy dependency / Stack layer
A Bun packaging quirk left a vulnerable undici in Cline after the CVE was supposedly remediated
GitHub
Policy dependency / Stack layer
Amazon and Microsoft Are Siding With Ratepayers Against Utilities on Data Center Power Bills
The Information
Stack layer / Threat pattern
ActGuard audits the planned action instead of filtering tool output, comparing each step against a local tool prior
arXiv
Policy dependency / Stack layer
HazardAuditor runs Claude Code, Codex, Hermes and OpenClaw in one harness and normalizes their events to train a guard model
arXiv / HuggingFace Daily Papers
Stack layer / Threat pattern
Elva Launches Against Postman With Flat Workspace Pricing and Specs Generated From Repo Commits
Elva (surfaced via the Product Hunt daily leaderboard for 2026-09-14)
Policy dependency / Stack layer
Python's Import Statement Is an Execution Boundary: 90% of Initialization-Activated Advisory Vulnerabilities Are High or Critical
arXiv 2609.14791
Policy dependency / Stack layer
Huang's actual position on pacing: keep labs in control, use many evaluators not one, and stop publishing p(doom) numbers
The Tribune