Radar brief — 2026-10-11
A busy 36 hours: 13 releases from 8 tools. Claude Code v2.1.296 adds Desktop Code-tab gateway policy, earlier subagent compaction, and hook/MCP session fixes. Google Antigravity 1.3.3 pins long-chat prompts, lets MCP tools stay always-loaded, and blocks sandboxed macOS reads of…
What the evidence shows
Today’s radar is not a quiet day. Highest-signal new items are versioned GitHub tags; Copilot.org blog posts, Kiro HTML changelogs, and Factory docs are noisier (trusted GitHub/changelog mix for this brief: 54%; 2 sources reported errors). Do not treat bodyOmitted dumps as a full changelog.
New in the last 36 hours
managed.policies[] gains a code key (same as cli, applied in Desktop’s Code tab; with desktop it enables gateway mode). Subagents can set autoCompactWindow; CLAUDE_CODE_WORKFLOW_SUBAGENT_MODEL pins workflow agents to one model. New allow_large Read option, 529 backoff cap, and fixes for managed PreToolUse denials, updatedMCPToolOutput, disabled folder MCP in headless sessions, and gateway allowedProviders lockouts. 86 further changes omitted._meta: {"antigravity/alwaysLoad": true}. Plugins may declare subagents in root agents.json. macOS sandbox now denies ~/Library/Application Support by default (credentials/tokens live there). Clearer HTML/quota errors; /plugin search UX. 17 further changes omitted.copilot config sandbox injectHosts with shell key completion. --context now applies to new and resumed ACP sessions instead of silently keeping the old tier. Managed plugin setup retries hourly or after policy changes, not on every failed message./model and /config model IDs are case-insensitive and save canonical IDs.-sea assets are unsigned; Linux publishes SHA256SUMS-sea. Not a product-behavior release in the listed body./memories → config: read & write, read only, or off. Untrusted workspaces can read memories but not add/change/delete them. Automatic updates apply immediately under read & write; access mode applies next session. 8 further changes omitted./model can list a running local Ollama instance. VS Code 1.141: side-by-side agent sessions; worktree cleanup. 43 further changes omitted.Still relevant this week (versioned GitHub, not in the 36-hour set)
/proxy-setup, narrator, /plugins + /reload-plugins, session-only model/thinking with s, enable_background_processes = false, enable_subagents = false. 75 further changes omitted./copy, clickable wrapped URLs. Custom Responses providers can configure live web access and remote compaction. Linux/Windows sandbox fixes (denied files, writable constructors, ripgrep deny-globs, Win10 drive letters). 132 further changes omitted./plugin enable cc-plugin-you-should-know@builtin (first-party sessions with telemetry on). MCP URL prompts on the 2025-11-25 protocol; if a server stops connecting, evidence says add "bareElicitationCapability": true. 73 further changes omitted.For developers
-
Claude Code v2.1.296: If a subagent blows the parent compact window, set
autoCompactWindowin that agent’s frontmatter or--agentsdefinition. UseCLAUDE_CODE_WORKFLOW_SUBAGENT_MODELwhen every workflow agent should share one model. Reach for Readallow_largeonly when you need the whole file and have context left. If 529s die early, raiseCLAUDE_CODE_OVERLOADED_RETRY_MAX_DELAY_MS. After upgrade, check/pluginfor hooks dropped because two plugins share a name. -
Antigravity 1.3.3: Expect sandboxed macOS commands to fail reading
~/Library/Application Supportunless you explicitly allow it. MCP authors who need a tool on every turn should set_meta.antigravity/alwaysLoad. Plugin authors can ship subagents in rootagents.jsonthe same way asskills.json/rules.json. -
Copilot CLI v1.0.95: Re-test resumed ACP sessions —
--contextis no longer ignored. On macOS, prefer the Entra broker path; keep browser fallback in mind. If you inject sandbox credentials, configureinjectHosts(shell completion is there). -
Copilot CLI v1.0.96-2: Safe to treat as a small ID-normalization fix; canonical model IDs will be saved.
-
Codex rust-v0.162.1: Upgrade if the TUI dies on multiline async questions, or if the CLI refuses to start beside a background server. rust-v0.162.0 (this week) is the feature drop: worktrees, pinning, copy/URL, provider web/compaction — pull that if you are still on an older 0.16x.
-
Kiro 2.29.0: In a local V3 session, run
/memories→ config. Start withread onlyif you want recall without the agent rewriting notes;offif this workspace should not touch memory. Untrusted workspaces already cannot write. -
Factory Droid v0.237.0: Re-check Script approval prompts — you should now see the actual fixed inputs, not a placeholder.
-
Copilot JetBrains / weekly notes: Use the diagnostic Fix action as a shorter path into agent/ask chat. Turn off automatic MCP startup if you do not want tools live at IDE launch. Weekly notes also put local sandboxing and Haiku 5.5 in front of daily Copilot users — verify on your plan before assuming access.
-
Mistral Vibe v2.26.1: If you want the newer terminal,
nix run .#rustCli. Usesin/modeland/thinkingfor session-only pins;enable_subagents = false/enable_background_processes = falseif you need a single-agent, no-background runtime. -
Qwen Code v0.25.0 / Goose v1.53.0: Treat as this-week feature trains (workspace agents + Mem0; MCP Apps PiP and model metadata). Read the GitHub tag before enabling hosted MCP or new providers.
For teams
- Claude Code managed fleet: Roll v2.1.296 if you use the apps gateway — add the
codepolicy key so Desktop’s Code tab matches CLI policy, and re-testallowedProviders: "gateway"(laptops that name that gateway were getting locked out). Re-verify managedPreToolUsedenials with"continue": falseand managedprompthooks: the call should refuse without ending the turn. ConfirmPostToolUseupdatedMCPToolOutputactually applies. Headless jobs should no longer start a folder.mcp.json/ plugin MCP you switched off. - Antigravity: Treat the macOS Application Support deny as a default security change. Update sandbox allowlists only where a desktop-app credential path is truly required. Inventory MCP servers that must be always-on vs discovered.
- Copilot (org): JetBrains admins can set the enterprise default agent model without removing the picker. Pair that with the new “don’t auto-start MCP” control. Code-review owners should pick Member vs Organization billing under Copilot → Policies and decide whether external-license users may request reviews. Weekly notes: local sandboxing is GA in CLI, app, and VS Code Agent Host at no extra cost — make that the default expectation, not an add-on.
- Copilot CLI: Managed plugin setup now retries hourly / on policy change; stop chasing per-message plugin failures as a provisioning bug. Document
injectHostsif you inject sandbox credentials. - Kiro: Memory is on for local V3 with explicit access modes. For shared or untrusted workspaces, assume read-without-write. Decide whether automatic post-session updates are allowed before turning
read & writeon for a team. - Codex: rust-v0.162.0 worktree tools only exist when the worktrees feature is enabled on trusted local projects. rust-v0.162.1 reduces false startup incompatibility with a long-lived background server — relevant for always-on agent hosts.
- Qwen / Vibe / Goose: Qwen’s own notes say no known breaks, but the release is large (hosted MCP, approvals, A2A). Vibe can globally disable subagents and background processes. Goose ships an ACP-only binary — useful if you want a thinner agent surface.
Open radar proposals already on these trains: set autoCompactWindow on Claude subagents; re-pin Vibe thinking and switch to the Rust CLI; enable Qwen workspace-agent collaboration / Hosted MCP / Mem0.
What to ignore
- Codex rust-v0.163.0-alpha.5 — empty body; not actionable.
- Augment Code SEA prerelease — installer/packaging only; macOS
-seais unsigned. - Kiro IDE 1.2.56 — three feature names and a “Learn more” stub; no evidence of what changed.
- Omitted tails (+86 Claude, +63 JetBrains, +132 Codex 0.162.0, +75 Vibe, etc.). Do not infer features, breaks, or CVEs from the count.
- Unversioned Copilot blogs as if they were GitHub tags. Prefer Copilot CLI
v1.0.95/v1.0.96-2for CLI facts. Weekly notes bundle several products; listed items are real, but 43 lines are missing. - Scoring tags that say
breakingon Copilot JetBrains / Qwen / Goose / Vibe when the listed body does not describe a break. Qwen explicitly says no known breaking changes. - Two sources in this window reported errors; treat HTML changelogs (Kiro, Factory, github.blog) as second-class next to GitHub release tags.
- Copilot CLI v1.0.96-2 is a prerelease ID-case fix, not a reason to delay v1.0.95.
Watch next
- The rest of Claude Code v2.1.296 (86 omitted lines) — especially remaining settings/hooks/MCP/permission items hinted by tags, not shown in the body.
- Whether Antigravity’s Application Support deny breaks toolchains that read desktop-app tokens from the sandbox.
- Codex 0.163 once a non-empty tag lands; alpha.5 is a placeholder.
- Copilot JetBrains: the omitted 63 lines plus the breaking tag — wait for a versioned IDE note before treating it as a forced migration.
- Kiro Memory write-after-session behavior in trusted vs untrusted workspaces.
- Factory Desktop v0.194.0 vs CLI v0.237.0 — evidence lists both in one item; confirm which surface you actually run.
- Open proposals: Claude
autoCompactWindow; Vibe Rust CLI + thinking pins; Qwen workspace agents / Hosted MCP / Mem0; plus lower-priority Cline rules, Windsurf/Devin Fusion, Grok CLI harness, and OpenCode verification-video items.
How to use DevAgentRadar
DevAgentRadar is a free, evidence-first feed of AI coding assistants — GitHub tags and changelogs ranked by what shipped, not by launch posts. New means the signal hit the radar in the last 36 hours; everything else is still-relevant context. Read the versioned GitHub row before the blog row. If bodyOmitted is set, the listed bullets are the only facts we will stand behind. Use For developers for personal config/CLI actions and For teams for managed policy, billing, sandbox, and MCP defaults. Follow an open proposal only if it matches a tool you already run; the radar does not recommend switching vendors. Re-check tomorrow — omitted tails and empty alphas are exactly the items that tend to grow into real notes.
Evidence appendix
- New in the last 36 hours: 13 release(s) from 8 tool(s)
- Evidence window: new releases first, then top curated signals (versioned releases preferred)
- Assistants tracked: 29
- Signals in this brief: 40
- Trusted source mix (GitHub/changelog vs HTML): 54%
- Open improvement proposals: 7
- Sources reporting errors: 2
High-signal releases used
-
Claude Code
v2.1.296: Added acodekey to the Claude apps gateway'smanaged.policies[]: the same settings ascli, also applied in Claude Desktop's Code tab; besidedesktop, i — source -
Google Antigravity
1.3.3: Added a pinned prompt header in no flickering mode while you scroll back through a long conversation: the prompt that produced the response you're reading stays — source -
GitHub Copilot CLI
v1.0.95: 2026-10-09 · Use native Microsoft Entra broker authentication on macOS when available, with browser fallback. · copilot config supports sandbox credential injec — source -
GitHub Copilot CLI
v1.0.96-2: Fixed · Make model IDs in /model and /config model case-insensitive and save canonical IDs — source -
OpenAI Codex CLI
rust-v0.162.1: Fixed a TUI crash when asynchronous questions contain multiple lines, preserving line breaks and complete hyperlink destinations. (#51866) · Fixed startup failu — source -
Augment Code
v1.2.0-prerelease.202610091519— auggie-v2 v1.2.0-prerelease.202610091519: Install the latest release (macOS/Linux): · curl -fsSL https://github.com/augmentcode/auggie/releases/latest/download/install.sh | bash · Install a specific ver — source -
OpenAI Codex CLI
rust-v0.163.0-alpha.5— alpha.5: Release 0.163.0-alpha.5 — source -
Kiro
2.29.0— Memory Across Chat Sessions: October 9, 2026 Memory Across Chat Sessions · 2.29.0 · In local V3 sessions, Kiro can learn useful context from your work and recall it in later chat sessions, — source -
Kiro
1.2.56— Oct 8, 2026: 1.2.56 | Oct 8, 2026 · Workflow Feedback, Power Search, and Flexible Hook Matching. · Learn more -> — source -
Factory Droid
v0.237.0— · Desktop v0.194.0 (October 9, 2026): Script approvals before running, images from Script calls, and connector tool recovery · Script approvals before running - Script calls with fixed inputs no — source -
GitHub Copilot — New controls and chat improvements in Copilot for JetBrains: This update brings more control over default models and MCP server in GitHub Copilot for JetBrains. · It also makes diagnostics easier to address, improves chat — source
-
GitHub Copilot — Copilot code review: New organization billing options and controls: This release adds new billing and license controls for Copilot code review admins: · Billing: Organization owners can bill Copilot code reviews from members wit — source
-
GitHub Copilot — weekly releases — October 5: This week's updates make Copilot easier to use across accounts and environments, with more control over what agents can access and how you manage their work. · — source
-
Mistral Vibe
v2.26.1: The app-server reports which process holds a stored session, and pushes a change when that process lets go of it, so a client can show a session open elsewhere — source
Open proposals
- Set autoCompactWindow on subagents so they compact earlier than the parent (audience: developer, P5)
- Re-pin Vibe thinking to off or high and switch to the Rust CLI (audience: team, P5)
- Pin Cline provider models and add commit rules to .clinerules (audience: team, P5)
- Enable workspace-agent collaboration, Hosted MCP, and Mem0 in Qwen Code v0.25.0 (audience: team, P5)
- Sign in to Devin Desktop with ChatGPT and set Fusion to GPT-6 Astra + SWE-2 (audience: developer, P3)
- Improve with xAI Grok CLI (Grok Build) c68e39f: Publish harness and TUI open-source (audience: everyone, P2)
- Improve with OpenCode pr-38252-videos: pr-38252-videos PR #38252 verification videos (audience: everyone, P2)
Anonymous · one vote per visitor · re-click to clear. Helps improve digests—not a product ranking.