Cloudflare expands its nonprofit startup program, backing more civil-society automation projects with credits, while detailing several deployments that illustrate how AI and a secure cloud can support advocacy, crisis response, and online free expression.
GitHub has deprecated selected Copilot models across all experiences, guiding administrators to enable alternative models and verify policy settings. The change affects Copilot Chat, inline edits, agent modes, and code completions, with steps for admins to update workflows and access.
GitHub has completed the staged rollout of stateless GitHub App installation tokens. Newly minted tokens default to a stateless JWT format, with longer token strings and unchanged permissions and endpoints, alongside a deprecation timeline for a validation header.
Cloudflare announces a closed beta for its OHTTP Gateway, expanding access to its privacy-preserving infrastructure with two deployment options and a pay-on-add-on model.
Cloudflare announces eight major updates to its Observability platform, unifying logs, traces, analytics, alerts, dashboards, and exporting, along with new pricing and longer data retention.
Cloudflare introduces Streamline, a developer playground that enables custom video pipelines on Cloudflare Stream and Workers, featuring a long-running media engine in containers, orchestration with Durable Objects, and real-time previews via WebSocket.
Cloudflare introduces Protected Quick Tunnels, enabling email-authenticated access to local services without requiring a Cloudflare account, backed by a new flag and a stateless broker.
Cloudflare Traces in open beta extends automatic tracing beyond Workers to the full request path, providing end-to-end visibility and interoperability with OpenTelemetry.
GitHub expands Copilot code review with API-based access and a new default effort level, enabling teams to integrate AI-assisted reviews into their own tools while standardizing the review effort.
A GitHub Blog post discusses how AI-powered workflows are changing developer work and signals that developers should focus on three key skills, as outlined by Gwen Davis, a GitHub content strategist.
Cloudflare says it is closing the gap between Enterprise features and consumer plans, expanding data-delivery, governance, and developer tools to all customers while rolling out new account management and organizational controls.
Cloudflare announces a new Web Search API integrated into AI Gateway, enabling live web browsing to ground AI-model responses, with partnerships, BYOK options, and transparent crawler rules.
AWS announces the public preview of an AI-powered service that analyzes your AWS environment to deliver contextual recommendations for improving cost, security, performance, and resilience, with implementation guidance and IaC changes.
Cloudflare announces a significant update to its network performance measurements during Birthday Week 2026, highlighting a rise to fastest status in 74% of the world's 1,000 largest networks and detailing a new measurement methodology using Cloudflare Challenge Pages.
Cloudflare introduces a new dashboard that helps fraud analysts investigate account abuse by linking login and signup activity to privacy-preserving Hashed User IDs, supported by a stateful trust model and role-based access control. Early Access is limited to specified customers.
GitHub adds REST API endpoints to manage comments on repository security advisories, expanding beyond the web UI to support programmatic triage, audits, and workflows.
GitHub announces enhancements to the SecurityAdvisory GraphQL API, introducing new fields and filters to improve access to the GitHub Advisory Database from GraphQL.
GitLab Threat Research Group discloses a critical command execution vulnerability in DeepSeek-Reasonix Studio that can execute attacker-controlled code when a developer views a file diff. The flaw, known as ConfigPoisoning, is being addressed with specific updates and broad mitigation guidance.
Kubernetes 1.37 adds five Node lifecycle conditions to describe draining, maintenance, and Graceful Node Shutdown, providing a common signal for operators and automation.
GitLab’s internal benchmarks show GPT-6 Astra on the Duo Agent Platform delivering faster run times and lower token usage than GPT-5.6 Sol, with complete task completion in the benchmark and guidance on deployment.
GitLab announces a Bring Your Own Model (BYOM) path for Duo Self-Hosted via Microsoft Foundry, enabling administrators to run multiple model families within their own infrastructure and Azure deployments while preserving data residency controls.
September’s Java Annotated Monthly surveys the JDK 27 release cycle, preview and finalized JEPs, and several runtime and security updates shaping the Java ecosystem.
Kubernetes v1.37 advances the KubeletInUserNamespace feature to beta, enabling node components to run as non-root inside a Linux user namespace. The move highlights ongoing efforts to reduce host-level attack surfaces while enabling flexible deployment patterns, including nested Kubernetes configurations.
Kubernetes v1.37 brings Storage Version Migration to General Availability, enabling automatic migration of stored resources to the default storage version and reducing the risk of stale storage versions across clusters.
JetBrains announced the sunsetting of its Teacher Pack for Bootcamps, outlining final application deadlines, licensing changes, and available educational programs to replace the bootcamp-specific offering.
CPython has officially added RISC-V support as a tier-3 platform, driven by community contributions and ongoing testing on real hardware. The move acknowledges the open ISA's growing ecosystem and outlines plans to widen testing and potentially raise the platform's status.
AWS is bringing OpenAI models, Codex, and managed agents into Amazon Bedrock limited preview. Developer teams should plan for governance, identity, and cost controls.
Xcode 27 brings agentic coding and new Apple Intelligence frameworks to app development. Here is how teams should evaluate the workflow before scaling it.
Stripe Projects is now available to everyone, letting developers or agents provision the services needed to deploy internet products from where they write code.
Anthropic acquired computer-use startup Vercept and plans to shut down its Vy product. The deal reflects the race to make agents operate full desktop workflows.