Research Version
2026-06-23-weekly-digest-2026-06-16_2026-06-23-frontier-v0
2026-06-23-weekly-digest-2026-06-16_2026-06-23-frontier-v0
- Status
- published
- Window
- 2026-06-16 to 2026-06-23
- Signals
- 23
Mode: weekly-digest
Sources harvested
Accepted signals from this run
- Claude Code The five-level subagent depth cap did not bind for foreground spawns until 2.1.181
- Claude Code Agent(type) deny and Agent(x,y) allowed-types rules were not enforced for named subagent spawns until 2.1.186
- Claude Code Auto mode now blocks specific destructive git/IaC commands and reclassifies scheduled-task and webhook triggers
- Codex Codex command and network approvals are now scoped per execution environment and fail closed on ambiguity
- Codex Codex rollout token budgets abort turns on exhaustion — a hard spend cap at the accounting boundary
- Codex Codex adds a multi-agent delegation-authority mode
- Hermes Agent Hermes adds a root-owned, user-immutable /etc/hermes managed scope
- Paperclip Last window's multi-tenant authority cluster finally tagged in v2026.618.0
- Paperclip Preflight budget caps that cancel queued work before an adapter starts (master, unreleased)
- Paperclip A recovery watchdog whose actors structurally cannot mutate approvals (master, unreleased)
- OpenHands API-key auth decoupled from Keycloak — IdP session revocation is no longer a kill switch for machine keys
- OpenHands Last window's per-org concurrency limits reverted outright in-window
- OpenClaw OpenClaw shipped automatic Codex plugin approvals to stable — the one gate that loosened this window
- Hermes Agent Hermes MCP-persistence mitigation wave landed on main, not in the v0.17.0 tag
- OpenHands An entire OpenHands enterprise and security build-out, two windows unreleased (postcss CVE + git-token redaction)
- Gemini CLI Gemini CLI skill path-traversal fix stranded in preview for a second window
- OpenHands Sandbox-spec authority moves off a hardcoded list onto a runtime-api control plane
- OpenHands A per-user OAuth token now follows the user into the sandbox from any conversation start path
- Pi Coding Agent Pi compaction events now carry reason and willRetry so a harness can tell the trigger apart
- Flue Flue workflow runs go private by default and flue logs is removed (staged in Unreleased)
- Hermes Agent Hermes shipped background fan-out delegation with no wall-clock bound on a busy worker
- Gemini CLI Gemini CLI's Antigravity migration funnel reached stable
- OpenClaw OpenClaw's WCAG 2.1 AA accessibility pass reached stable
Artifact contents
Every file the loop produced for this run, anchored in the repo. Internal links go to the rendered page; the repo path opens the raw artifact on GitHub.
- manifest
- signalsAccepted signals (YAML) runs/2026-06-23-weekly-digest-2026-06-16_2026-06-23-frontier-v0/signals/frontier-signals.yml
- qa
- audit