Scanning 2000 repos and finding a pile of issues is the easy part now. It always was, honestly. The part nobody's automated yet is deciding which ones actually deserve to block a merge, and that still takes someone who's been burned by the false positives before.
๐จ NOW: OpenAI says it has quietly released the open-source Codex Security CLI, letting developers scan repos, track findings, and add security checks to CI/CD.
The model optimizing its own serving costs is a bigger story than the model solving puzzles. That's the part of "AI writes code" that actually compounds โ not one-off features, ongoing infrastructure nobody has to keep tuning by hand. https://t.co/YJtVsBbhyR
GPT-5.6 found optimizations that "reduced end-to-end serving costs by 20%" for OpenAI to serve that model
Presumably that's billions of dollars a month in savings at this point?
"A little less obvious than I had hoped" is the most honest sentence anyone's written about MCP setup this year. The gap between "supports MCP" and "a normal person can actually wire one up" is still wide open.
A new TIL on adding custom MCP servers to both the ChatGPT and Claude regular chat interfaces - it's a little less obvious than I had hoped, but I got there in the end https://t.co/ahwaFyJYtp