Today's AI trends
NVIDIA released OpenShell 0.1.0, an open-source runtime layer intended to restrict what agents such as Codex and Claude Code can access without rewriting them. It combines sandboxing, controlled service access, credential management, policy verification, and audit trails; it can inspect HTTP, GraphQL, and MCP traffic, including permitted reads versus blocked writes. NVIDIA’s announcement matters because it puts enforcement outside the agent process. Practical implication: treat prompts as guidance, but put credentials, filesystem reach, network egress, and policy decisions behind runtime boundaries.
The MCP TypeScript SDK 2.2.0 tightened machine-to-machine OAuth handling by requiring or recommending an expectedIssuer for client-credential providers and checking that client information belongs to that authorization server before token requests are sent. It also makes uncursored list operations follow pagination through nextCursor, subject to listMaxPages. The 2.2.0 release makes protocol details visible as operational concerns. Practical implication: bind credentials to a known issuer and put explicit limits around automated discovery, rather than treating tool connectivity as opaque model output.