Fetching from the wire…
Public story · 2026-07-21 · high
Team Owners can wipe a team's entire Remote Cache the moment they suspect poisoned build artifacts, right from Build and Deployment settings.
Why now: Vercel's changelog names cache poisoning as the reason for the button, which is what turns a settings tweak into incident-response tooling worth flagging.
Vercel added a one-click way to purge a team's entire Remote Cache of build and CI artifacts, per its changelog.
The button lives in Build and Deployment settings and wipes every cached artifact across the whole team at once, not per project. Vercel's changelog names the reason plainly: "when you believe poisoned artifacts are in your cache." That's language built for incident response, not routine cache cleanup.
Nothing in the changelog describes how a team would detect a poisoned artifact in the first place. There's no mention of alerting or scanning, only the purge itself. Whoever holds Team Owner access is left to make that call and act on it.
Wiping the whole team's cache also means every project sharing it loses its build speedup at the same time, the tradeoff for a lever built for emergencies rather than routine use.
Putting the poisoning language directly in a changelog entry, instead of a separate security bulletin, means teams find out about the risk from a routine release note. Find the button before a CI run is already serving bad artifacts, not after.
Each link below shares sources, entities, or timing with this story.
Vercel partners with Cursor / Shared entities / Earlier coverage
Linked by a graph relationship (Vercel partners with Cursor); both cover Build, Vercel; earlier Build coverage from 2026-07-15.
OpenAI uses Vercel / Shared entity: Vercel / Same source domain / Earlier coverage
Linked by a graph relationship (OpenAI uses Vercel); both cover Vercel; reported by the same outlet (vercel.com).
Vercel released Vercel Services / Shared entity: Vercel / Same source domain / Earlier coverage
Linked by a graph relationship (Vercel released Vercel Services); both cover Vercel; reported by the same outlet (vercel.com).
Vercel partners with Codex / Shared entity: Vercel / Same source domain / Earlier coverage
Linked by a graph relationship (Vercel partners with Codex); both cover Vercel; reported by the same outlet (vercel.com).
Guillermo Rauch works at Vercel / Shared entity: Vercel / Shared topic / Earlier coverage
Linked by a graph relationship (Guillermo Rauch works at Vercel); both cover Vercel; overlapping topics (button, deployment).
Vercel AI SDK built by Vercel / Shared entity: Vercel / Same source domain / Earlier coverage
Linked by a graph relationship (Vercel AI SDK built by Vercel); both cover Vercel; reported by the same outlet (vercel.com).
Vercel uses Anthropic / Shared entity: Build / Earlier coverage / Tension
Linked by a graph relationship (Vercel uses Anthropic); both cover Build; earlier Build coverage from 2026-06-17.
Vercel partners with Cursor / Shared entity: Vercel / Earlier coverage / Tension
Linked by a graph relationship (Vercel partners with Cursor); both cover Vercel; earlier Vercel coverage from 2026-04-30.