<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Security on Tokenise</title><link>https://tokenise.rosvetic.com/tags/security/</link><description>Recent content in Security on Tokenise</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Sat, 03 Oct 2026 07:00:00 +0000</lastBuildDate><atom:link href="https://tokenise.rosvetic.com/tags/security/index.xml" rel="self" type="application/rss+xml"/><item><title>Claude Code's auto mode catches most risky actions. Anthropic's numbers show what it misses</title><link>https://tokenise.rosvetic.com/posts/claude-code-auto-mode-numbers/</link><pubDate>Sat, 03 Oct 2026 07:00:00 +0000</pubDate><guid>https://tokenise.rosvetic.com/posts/claude-code-auto-mode-numbers/</guid><description>&lt;p&gt;Anthropic published how Claude Code&amp;rsquo;s auto mode works, with measured error rates. That&amp;rsquo;s unusual for a security feature, and it makes the engineering post worth reading before you let an agent run unattended. The &lt;a href="https://www.anthropic.com/engineering/claude-code-auto-mode" target="_blank" rel="noopener noreferrer"&gt;full write-up&lt;/a&gt;&#10; is on Anthropic&amp;rsquo;s engineering blog.&lt;/p&gt;</description></item><item><title>Cursor's Security Review bot reads your pull requests for exploitable bugs</title><link>https://tokenise.rosvetic.com/posts/cursor-security-review-bot/</link><pubDate>Thu, 01 Oct 2026 12:00:00 +0000</pubDate><guid>https://tokenise.rosvetic.com/posts/cursor-security-review-bot/</guid><description>&lt;p&gt;Cursor launched a Security Review bot on September 23, alongside the Rollouts deploy monitor we covered in &lt;a href="https://tokenise.rosvetic.com/posts/cursor-rollouts-bot-watches-deploys/"&gt;an earlier post&lt;/a&gt;&#10;. It reads pull requests and reports vulnerabilities an attacker could actually exploit. Per the &lt;a href="https://cursor.com/changelog/rollouts-and-security-reviewer" target="_blank" rel="noopener noreferrer"&gt;Cursor changelog&lt;/a&gt;&#10;, it&amp;rsquo;s on Teams and Enterprise plans.&lt;/p&gt;</description></item></channel></rss>