Anthropic just banned the use of consumer OAuth tokens in third-party tools like Cline and Roo Code — and sent OpenClaw a cease and desist (OpenAI promptly hired the dev). Meanwhile, Cursor 2.5 launches a full plugin marketplace with partners like Stripe, Figma, and AWS, plus async background agents and sandbox access controls.
We also cover a serious data isolation bug in Claude for PowerPoint that served one user another person's legal documents. Pro Tip: the MCP server that claims to cut refactoring costs by 95% by giving AI surgical precision instead of a sledgehammer.