All editions of The Artificer's Grimoire, newest first.
Anthropic gated Claude Mythos from public release — a rare capability-based non-release decision — while harness engineering's internal-beta chapter arrived with OpenAI Frontier's billion-token-a-day operation and LangChain's vendor-lock-in counterargument.
The attack surface expanded faster than the defenses — OpenClaw's high-severity CVEs, the Claude Code source leak, and an explosion of AI-generated vulnerability reports all landed in the same week that harness engineering tried to formalize the discipline of building safe agent infrastructure.
Anthropic ships autonomous agent infrastructure this week, and InfoQ spotlights OpenAI's earlier Responses API agent platform push — while a supply chain attack on LiteLLM makes the case that guardrails aren't optional.
Coding agents go production at Stripe, Spotify, and HubSpot — while an agent's unapproved advice triggers a security lapse at Meta and new attack research make the case that governance can't wait.
A2A hits v1.0.0, Anthropic drops the long-context premium on 1M tokens, autoresearch demonstrates autonomous optimization on Shopify's Liquid engine, and security researchers take the first hard look at what happens when agents run unsupervised.
Agent governance stopped being theoretical this week — Amazon mandated human sign-off after AI-caused outages, a prompt injection attack exposed Cline's release pipeline, and every major vendor shipped automated code review.
Context engineering has solidified as the defining discipline of production agent work, SDD tooling is fragmenting into three distinct philosophies, and the Agentic AI Foundation is quietly becoming the governance layer for the protocols that matter.