The Next TokenLearnBookArchive
Saved

Wednesday, July 8, 2026 · about a 2 minute read

AI Agents Do What You Tell Them, Including the Wrong Things

Today's stories keep circling the same quiet truth: giving an AI real access to real things is a different game than chatting with a bot.

Get the calm version of AI news.

One email a day on what is actually happening in AI, in plain English. No hype, no doom.

Free. One calm email a day. No hype, no doom.

Hacker NewsSafety
GitLost: We Tricked GitHub's AI Agent into Leaking Private Repos

Security researchers at Noma found they could manipulate GitHub's AI into exposing private repository contents just by crafting the right prompts. If your team uses AI that have read access to your codebase, this is a concrete reason to ask exactly what that agent can touch and who can ask it questions.

Read
Hacker NewsTools
Geosql: A Claude/Codex skill for geospatial data

A new tool called GeoSQL lets Claude and Codex work with geospatial data, meaning you can ask an AI to query and reason about maps and location data without writing the SQL yourself. For anyone who works with geographic data and has always needed a specialist to write those queries, this is the kind of small tool that quietly saves an afternoon.

Read

Get this every morning.

arXiv cs.CLResearch
The yes-no bias of large language models reflects answer order and wording, not shifts in moral judgment

This paper shows that LLMs give different yes or no answers to the same moral question depending on which option is listed first or how the sentence is worded, not because their underlying judgment shifted but because they are, at the core, predicting which word comes next. This is exactly what the book talks about: the model is not reasoning from principles, it is pattern-matching on the shape of the question, and that is a genuinely important thing to hold in your head when you are using AI to help you make decisions.

Read
Want the slow, plain-English version of why this matters? This is exactly the kind of idea the book was written to unpack, one light-switch analogy at a time.JPWExplained properly in the book
Simon WillisonTools
github-code Web Component

Simon Willison built a small web component using GPT-5.5 and shared the exact prompt he used, which is a useful reminder that a lot of real software is now being written this way, one prompt at a time. Watching what experienced developers actually prompt for, and how they share that work, tells you more about where the tools are headed than most product announcements do.

Read

That's today. See you tomorrow.

Get this every morning.

One email a day on what is actually happening in AI, in plain English. No hype, no doom.

Free. One calm email a day. No hype, no doom.

Just Predicting Words book cover

The book behind this newsletter

Just Predicting Words

How ChatGPT, Claude, and Modern AI Actually Work

The trick is small. The world it built is not.

PaperbackKindleAudiobook · SpotifyAudiobook · Google Play