Tag
Pillar Security researchers detail Deadbugz, an active supply-chain campaign that distributes a malicious MCP server through GitHub pull requests, gating credential-stealing instructions behind three benign tool calls.
A tinkerer shares custom quality-of-life upgrades for local AI agents, including an MCP broker to reduce context overhead, temporal awareness, context warnings, auto-swapping models, and hybrid memory search with Postgres.
Kent Dodds discusses building Kody Koala to complement big AI labs, noting that it pairs well with Grok Bot via MCP integration.
The tweet shares two internship positions at Alibaba (in reinforcement learning and Code Agent directions), and highlights the open-source terminal AI programming assistant mimofan: built on Rust, supporting Xiaomi MiMo and mainstream large models, with capabilities such as code generation, bug fixing, and automated testing.
Cursor's engineering blog describes how they built a development environment for cloud agents, introducing the anydev CLI and the Cloud Doctor self-healing mechanism, enabling agents to now contribute more than half of merged PRs.
Introducing the open-source web scraping framework Scrapling, which claims to natively bypass protections like Cloudflare, with parsing speed far exceeding BeautifulSoup, built-in StealthyFetcher and CloakBrowser, and support for MCP server integration with AI Agents.
Memoars is an invite-only encrypted memory layer that lets AI assistants share a unified memory via MCP, with client open-sourced and hosted coordinator coming soon.
mcptoon is a zero-dependency Python CLI client for MCP servers that uses a compact TOON format to reduce tool discovery tokens by up to 97%, saving context window space for AI agents.
An opinion piece arguing that AI agents are not killing UI but shifting products toward hybrid interfaces, requiring agent-friendly onboarding alongside human-facing controls for approval, review, and orchestration.
The author announces Sentience Governor, an open-source governance runtime for AI agents that separates declared intent, recorded execution, and retrospective explanation, and checks observed tool activity against declared scope via MCP.
Nader Dabit highlights that with Figma MCP, developers can clone and work from any design system in about 5 minutes, urging an end to 'design slop' in 2026.
PostFast ships an MCP-powered unified inbox that lets Claude read and send replies across TikTok, Instagram, Facebook, and Threads with real write permissions. The author tests it and highlights security concerns, recommending human approval gates for irreversible actions.
Addy Osmani shares a tip to periodically run /doctor in Claude Code or ask Codex to audit for unused skills, MCPs, and context use to reduce token bloat.
NotesQR, an anonymous P2P file sharing tool built on WebRTC, has been completely rewritten with faster handshakes, plus a new CLI and MCP integration so AI agents like Cursor or local scripts can send and receive files programmatically.
webclaw is an open-source tool that converts websites into clean Markdown, JSON, and LLM-ready context, available as a CLI, MCP server, REST API, and SDKs for AI agents and RAG pipelines.
The article discusses the deprecation of Sampling in the MCP spec as of the 2026-07-28 changelog, shifting model-call costs from clients to servers, and advises how to check if a server relies on Sampling via code or logs.
Argues that AI agents in enterprises are composed of code artifacts like skills, tools, and MCP servers, so they should be governed like software code rather than as documents or approval lists, since agents are unstable while underlying skills are reusable and stable.
DronaHQ MCP is introduced as a bridge between AI coding assistants and backend systems, providing scoped access without exposing raw credentials. It handles permissions, secrets, auth, audit trails, and deployment so AI agents can safely build application logic in production.
Introduces tvscreener, a Python library that can directly fetch TradingView stock screener data, supports multiple markets and 13,000+ technical indicators, returns Pandas DataFrame, and is convenient for quantitative strategy use.
Yohei Nakajima introduces Remoko, a mobile agent relay that lets long-running agents send iOS push notifications via MCP for questions, approvals, and check-ins, with a TestFlight beta available.