Policy dependency / Stack layer
mcp-shell Ships Security Off in One Deploy Path and Bypassable in the Other (CVE-2026-55580/55581/55582)
GitHub Security Advisories
Stack layer / Update thread
GitHub built an alt-text quality plugin because passing the automated accessibility check means nothing
GitHub Blog
Stack layer / Threat pattern
Only 4-16% of security rules written in CLAUDE.md have a matching Claude Code built-in control
arXiv
Policy dependency / Stack layer
Cherry Studio v2.0.9 unifies tool approval into one declarative policy and lets the provider catalog hot-update without an app release
GitHub
Stack layer / Contrast
Gradient open-sources a full reinforcement-learning loop for training tool-using research agents with GRPO
GitHub
Stack layer / Contrast
84.7% of Final-Report Errors in an Open Deep Research System Originate at the Orchestrator, Not the Search Agents
arXiv 2608.24306
Policy dependency / Stack layer
Anthropic's plugin marketplace runs four CI gates on supply chain risk, including a static pin check for auto-executing MCP launchers
GitHub
Stack layer / Threat pattern
QWED-MCP, a Verification Gateway, Passed Attacker Math Straight to SymPy parse_expr (CVE-2026-55546, 9.8)
GitHub Security Advisories