Nvidia's Open Agent Safety Platform, launched 2026-09-28, pairs OpenShell β an Apache-2.0 open-source runtime that sandboxes autonomous AI agents at the kernel level via Linux's Landlock LSM, enforcing deny-by-default declarative policies in the environment rather than in the model or app β with Sentry, a network-chip component for monitoring agent traffic. OpenShell itself is not new: Nvidia released it at GTC in March 2026 as part of its Agent Toolkit with security partners Cisco, CrowdStrike, Google Cloud, Microsoft Security and TrendAI, and the supplied web results show it has since been embedded into SAP's Business AI Platform, with one third-party blog headline claiming it now sits in '17 enterprise stacks' β the same adoption figure the case had flagged unconfirmed β though that source hedges the claim and nothing primary here verifies it. Notably, none of the supplied snippets covers the September announcement's new elements β Sentry mechanics, the expanded OEM/hyperscaler partner roster (Oracle, CoreWeave, Dell, HPE, Lenovo, ARM, Intel), or Anthropic's OpenShell integration β which rest on the case's own multi-outlet press record rather than on these results. The efficacy picture on file remains split: the only independent test (123 trials, local qwen3:8b agent) found the default-deny controls held while auto-approval configuration bypassed them 12/12, and whether partner products ship and adoption follows is still the open half of the hypothesis.
| source | object | author | score | comments |
| π reddit | Nvidia wants to put a watchdog chip next to every AI agent including Claude, and Anthropic and SpaceXAI are on board ClaudeAI | ross2000 | 442 | 107 |
| π§ hn | Nvidia releases software platform to stop AI agents from misbehavingRetrieved article excerptOpen article Β· Retrieved 2026-09-28T11:28:31.988193+00:00 [Skip Navigation](https://www.cnbc.com/2026/09/28/nvidia-releases.html#MainContent)
[CNBC](https://www.cnbc.com/world/)
[Markets](https://www.cnbc.com/markets/)
- [Pre-Markets](https://www.cnbc.com/pre-markets/)
- [U.S. Markets](https://www.cnbc.com/us-markets/)
- [Europe Markets](https://www.cnbc.com/markets-europe/)
- [China Markets](https://www.cnbc.com/china-markets/)
- [Asia Markets](https://www.cnbc.com/markets-asia-pacific/)
- [World Markets](https://www.cnbc.com/world-markets/)
- [Currencies](https://www.cnbc.com/currencies/)
- [Prediction Markets](https://www.cnbc.com/prediction-markets/)
- [Cryptocurrency](https://www.cnbc.com/cryptocurrency/)
- [Futures & Commodities](https://www.cnbc.com/futures-and-commodities/)
- [Bonds](https://www.cnbc.com/bonds/)
- [Funds & ETFs](https://www.cnbc.com/funds-and-etfs/)
[Business](https://www.cnbc.com/business/)
- [Economy](https://www.cnbc.com/economy/)
- [Finance](https://www.cnbc.com/finance/)
- [Health & Science](https://www.cnbc.com/health-and-science/)
- [Media](https://www.cnbc.com/media/)
- [Real Estate](https://www.cnbc.com/real-estate/)
- [Energy](https://www.cnbc.com/energy/)
- [Climate](https://www.cnbc.com/climate/)
- [Transportation](https://www.cnbc.com/transportation/)
- [Investigations](https://www.cnbc.com/cnbc-investigations/)
- [Industrials](https://www.cnbc.com/industrials/)
- [Retail](https://www.cnbc.com/retail/)
- [Wealth](https://www.cnbc.com/wealth/)
- [Sports](https://www.cnbc.com/sports/)
- [Life](https://www.cnbc.com/life/)
- [Small Business](https://www.cnbc.com/small-business/)
[Investing](https://www.cnbc.com/investing/)
- [Personal Finance](https://www.cnbc.com/personal-finance/)
- [Fintech](https://www.cnbc.com/fintech/)
- [Financial Advisors](https://www.cnbc.com/financial-advisors/)
- [Options Action](https://www.cnbc.com/options-action/)
- [ETF Street](https://www.cnbc.com/etf-street/)
- [Buffett Archive](https://buffett.cnbc.com)
- [Earnings](https://www.cnbc.com/earnings/)
- [Trader Talk](https://www.cnbc.com/trader-talk/)
[Tech](https://www.cnbc.com/technology/)
- [Cybersecurity](https://www.cnbc.com/cybersecurity/)
- [AI](https://www.cnbc.com/ai-artificial-intelligence/)
- [Enterprise](https://www.cnbc.com/enterprise/)
- [Internet](https://www.cnbc.com/internet/)
- [Media](https://www.cnbc.com/media/)
- [Mobile](https://www.cnbc.com/mobile/)
- [Social Media](https://www.cnbc.com/social-media/)
- [CNBC Disruptor 50](https://www.cnbc.com/cnbc-disruptors/)
- [Tech Guide](https://www.cnbc.com/tech-guide/)
[Politics & Policy](https://www.cnbc.com/politics/)
- [White House](https://www.cnbc.com/white-house/)
- [Policy](https://www.cnbc.com/policy/)
- [Defense](https://www.cnbc.com/defense/)
- [Congress](https://www.cnbc.com/congress/)
- [Expanding Opportunity](https://www.cnbc.com/expanding-opportunity/)
- [Europe Politics](https://www.cnbc.com/europe-politics/)
- [China Politics](https://www.cnbc.com/china-politics/)
- [Asia Politics](https://www.cnbc.com/asia-politics/)
- [World Politics](https://www.cnbc.com/world-politics/)
[Video](https://www.cnbc.com/tv/)
- [Latest Video](https://www.cnbc.com/latest-video/)
- [Full Episodes](https://www.cnbc.com/live-tv/full-episodes/)
- [Livestream](https://www.cnbc.com/live-tv/)
- [Top Video](https://www.cnbc.com/top-video/)
- [Live Audio](https://www.cnbc.com/live-audio/)
- [Europe TV](https://www.cnbc.com/europe-television/)
- [Asia TV](https://www.cnbc.com/asia-business-day/)
- [CNBC Podcasts](https://www.cnbc.com/podcast/)
- [CEO Interviews](https://www.cnbc.com/video-ceo-interviews/)
- [Digital Originals](https://www.cnbc.com/digital-original/)
[Watchlist](https://www.cnbc.com/watchlist/)
[Investing Club](https://www.cnbc.com/investingclub/subscribe?__source=investingclub|globalnav|join&tpcc=investingclub|globalnav|join)
- [Trust Portfolio](https://www.cnbc.com/investingclub/charitable-trust/)
- [Analysis](https://www.cnbc.com/investingclub/analysis/)
- [Trade Alerts](https://www.cnbc.com/investingclub/trade-alerts/)
- [Meeting Videos](https://www.cnbc.com/investingclub/video/)
- [Homestretch](https://www.cnbc.com/investingclub/homestretch/)
- [Jim's Columns](https://www.cnbc.com/investingclub/jim-cramer-columns/)
- [Education](https://www.cnbc.com/investingclub/education/)
- [Subscribe](https://www.cnbc.com/investingclub/subscribe?__source=investingclub|dropdownnav&tpcc=investingclub|dropdownnav)
Join IC
[PRO](https://www.cnbc.com/application/pro?__source=pro|globalnav|join&tpcc=pro|globalnav|join)
- [Pro News](https://www.cnbc.com/pro/news/)
- [Josh Brown](https://www.cnbc.com/josh-brown/)
- [Mike Santoli](https://www.cnbc.com/mike-santoli-insight/)
- [Calls of the Day](https://www.cnbc.com/analyst-calls-of-the-day/)
- [My Portfolio](https://www.cnbc.com/my-portfolio/)
- [Livestream](https://www.cnbc.com/live-tv/)
- [Full Episodes](https://www.cnbc.com/live-tv/full-episodes/)
- [Stock Screener](https://www.cnbc.com/pro-stock-screener/)
- [Market Forecast](https://www.cnbc.com/2023/05/11/market-strategist-survey-forecast.html)
- [Options Investing](https://www.cnbc.com/pro/options-investing/)
- [Chart Investing](https://www.cnbc.com/cnbc-pro-chart-investing/)
- [Subscribe](https://www.cnbc.com/application/pro/?__source=pro|dropdownnav&tpcc=pro|dropdownnav)
Join Pro
[Livestream](https://www.cnbc.com/live-tv/)
Menu
- [Make It](https://www.cnbc.com/make-it/ "makeit")
- select
- [USA](https://www.cnbc.com/?region=usa)
- [INTL](https://www.cnbc.com/world/)
- [Livestream](https://www.cnbc.com/live-tv/)
Search quotes, news & videos
- [Livestream](https://www.cnbc.com/live-tv/)
[Watchlist](https://www.cnbc.com/watchlist/)
[SIGN IN](https://www.cnbc.com/2026/09/28/nvidia-releases.html)
[Create free account](https://www.cnbc.com/2026/09/28/nvidia-releases.html)
[Markets](https://www.cnbc.com/markets/)
[Business](https://www.cnbc.com/business/)
[Investing](https://www.cnbc.com/investing/)
[Tech](https://www.cnbc.com/technology/)
[Politics & Policy](https://www.cnbc.com/politics/)
[Video](https://www.cnbc.com/tv/)
[Watchlist](https://www.cnbc.com/watchlist/)
[Investing Club](https://www.cnbc.com/investingclub/subscribe?__source=investingclub|globalnav|join&tpcc=investingclub|globalnav|join)
Join IC
[PRO](https://www.cnbc.com/application/pro?__source=pro|globalnav|join&tpcc=pro|globalnav|join)
Join Pro
[Livestream](https://www.cnbc.com/live-tv/)
Menu
[Tech](https://www.cnbc.com/technology/)
# Nvidia releases software platform to stop AI agents from misbehaving
Published Mon, Sep 28 20265:00 AM EDTUpdated An Hour Ago
thumbnail
[Kif Leswing](https://www.cnbc.com/kif-leswing/)[@kifleswing](https://twitter.com/kifleswing)
[WATCH LIVE](https://www.cnbc.com/live-tv/)
Key Points
- Nvidia announced the Open Agent Safety Platform to prevent the type of breakout that occurred when OpenAI models accessed HuggingFace.
- OpenAI, Anthropic, Meta, and Google have all disclosed recent incidents where their AI models escaped their sandboxes.
- Nvidia said Cisco, Microsoft, Oracle, CoreWeave, Dell, HPE, Lenovo, ARM and Intel are partners.
In this article
- [NVDA](https://www.cnbc.com/quotes/NVDA)
Follow your favorite stocksCREATE FREE ACCOUNT
Nvidia releases software platform to stop AI agents from misbehaving
watch now
VIDEO1:1501:15
Nvidia releases software platform to stop AI agents from misbehaving
[Squawk Box](https://www.cnbc.com/squawk-box-us/)
[Nvidia](https://www.cnbc.com/quotes/NVDA/) is rolling out a new software platform to allow AI developers to set safeguards for agents and prevent them from breaking out of containment.
The release on Monday of Nvidia's Open Agent Safety Platform comes after companies including [OpenAI](https://www.cnbc.com/quotes/OPENAI.FG/), [Anthropic](https://www.cnbc.com/quotes/ANTHR.FG/), [Meta](https://www.cnbc.com/quotes/META/), and [Google](https://www.cnbc.com/quotes/GOOGL/) [disclosed](https://www.npr.org/2026/08/08/nx-s1-5924878/meta-ai-breaches-external-firm-during-security-testing-sandbox-error) recent [incidents](https://www.anthropic.com/research/alignment-assessment-cybersecurity-incidents) in which their artificial intelligence models escaped their sandboxes and attempted to hack other companies and access their computer systems.
Tune in at 8 a.m. ET as Nvidia CEO Jensen Huang speaks to CNBC about this news. [Watch in real time](https://www.cnbc.com/live-tv/) on CNBC+ or the CNBC Pro stream.
An Nvidia representative told reporters on a call on Sunday that its platform could have prevented OpenAI's HuggingFace incident in July. That's when OpenAI models escaped containment, accessed the open internet and breached Hugging Face, which operates an open-source developer platform.
"Each security incident is unique, and we have to look at all of them in detail," said Justin Boitano, vice president of enterprise AI at Nvidia, the world's most valuable company. "From what we know, Hugging Face reported over 17,000 agents attacking their infrastructure that went on for days and weeks."
Nvidia has been at the center of the generative AI boom since the launch of ChatGPT almost four years ago, as the chipmaker's graphics processing units are critical to the development of large language models and to the AI services offered by hyperscalers. But CEO Jensen Huang has more recently emerged as a key voice in the AI safety debate, arguing that many security concerns are engineering issues that can be solved through computer science and product development.
"You have to think about what you could have done, what's the solution for it," Huang [said](https://www.nytimes.com/2026/09/23/opinion/ezra-klein-podcast-jensen-huang.html) in a podcast with The New York Times' Ezra Klein released last week, referring to recent incidents. "In the future, improve your process so that you could avoid this from happening again."
Anthropic CEO Dario Amodei set off an industry firestorm two weeks ago, [urging](https://www.cnbc.com/2026/09/12/anthropics-amodei-proposes-plan-to-slow-the-pace-of-advancing-ai-capabilities.html) AI model developers to slow their pace of advancement due to fears of the models spinning out of control, an argument that was supported by OpenAI's [Sam Altman](https://www.cnbc.com/sam-altman/) and [SpaceX's](https://www.cnbc.com/quotes/SPCX/) [Elon Musk](https://www.cnbc.com/elon-musk/).
Nvidia's new offering is an engineering solution to the agent safety issue, Boitano said.
"Recent incidents have highlighted a fundamental hurdle for AI agents, and that is that model-level safeguards alone can't govern what agents can access or do," Boitano said
One component of the platform is called Nvidia OpenShell, which runs on central processors and sets limits on agent capabilities. Nvidia also announced Sentry, which monitors agents and runs on network chips, not CPUs or GPUs.
Some of the software is open source, and Nvidia is calling its platform a reference design, which means partners are intended to build products on top of it to bring it to market.
Nvidia named [Cisco](https://www.cnbc.com/quotes/CSCO/), [Microsoft](https://www.cnbc.com/quotes/MSFT/), [Oracle](https://www.cnbc.com/quotes/ORCL/), [CoreWeave](https://www.cnbc.com/quotes/CRWV/), [Dell](https://www.cnbc.com/quotes/DELL/), [HPE](https://www.cnbc.com/quotes/HPE/), Lenovo, [ARM](https://www.cnbc.com/quotes/ARM/) and [Intel](https://www.cnbc.com/quotes/INTC/) as partners. Nvidia is also working with Anthropic to integrate cloud managed agents with OpenShell.
**WATCH:** [Nvidia stock at the top of the laggards](https://www.cnbc.com/video/2026/09/18/nvidia-stock-is-at-he-top-of-the-laggards-says-mai-capitalas-chris-grisanti.html)
Nvidia stock is at he top of the laggards, says MAI Capitalβs Chris Grisanti
watch now
VIDEO5:0905:09
Nvidia stock is at he top of the laggards, says MAI Capitalβs Chris Grisanti
[The Exchange](https://www.cnbc.com/the-exchange/)
[Choose CNBC as your preferred sour | pseudolus | 2 | 0 |
| π§ echo.blog β | NVIDIA's official announcement: "NVIDIA today announced NVIDIA Open Agent Safety Platform, an open software platform and reference system de | NVIDIA (corporate press release, NVIDIA Newsroom / Corporate Communications) | β | β |
| π reddit | Nvidia launches new tool to keep AI agents from going rogue artificial | cnn | 85 | 44 |
| π§ hn | Nvidia AI Agent Safety Stack | ketanbj | 3 | 1 |
| π§ hn | Nvidia Open Agent Safety Platform | Animats | 1 | 2 |
| π§ hn | Nvidia launches platform to quarantine rogue AI agents in 'milliseconds' | jethronethro | 5 | 1 |
| π§ hn | Nvidia wants to put a watchdog chip next to every AI agent | jonbaer | 230 | 298 |
| π§ hn | Nvidia launches new tool to keep AI agents from going rogue | rawgabbit | 1 | 2 |
| π§ hn | Nvidia launched a tool designed to stop AI agents from going rogue. How it works | rmason | 2 | 1 |
| π§ hn | Nvidia announces AI safety platform | iamdamian | 2 | 2 |
| π reddit | We tested NVIDIA OpenShell with a local qwen3:8b agent: a malicious setup script leaked a secret 10/10 without it, 0/10 with it. But auto-approval opened new hosts in 12/12 trials OpenAI | No-Peanut-6988 | 3 | 1 |
| π§ hn | An AI agent escaped Google's kvmCTF sandbox | soltanov | 3 | 0 |
| π§ hn | Repeated VM Escapes by GPT-5.6-Cyber Based Agents | gizzlon | 1 | 0 |
| π reddit | Watch Nvidia (NVDA) Rolls Out New Tools to Keep AI Agents in Line artificial | beingmodest | 3 | 6 |
| π§ hn | Nvidia launches Open Agent Safety Platform to restrain rogue AI agents | sbulaev | 1 | 1 |
| π§ hn | Nvidia debuted the Open Agent Safety Platform | aknitb | 2 | 1 |
| π§ hn | Nvidia/OpenShell: Safe, private runtime for autonomous AI agents | gmays | 2 | 0 |
2026-10-02T14:48:42Z
The newest attachment β the public OpenShell repository surfacing on HN (hn 49933338, 2 pts, 0 comments) β is the first-party source artifact behind the already-established open-source claim, valuable as the case's verification anchor (Landlock mechanism, auto-approval bypass reproducibility) but not a new fact about claims, adoption, or efficacy. The case's meaning is unchanged: periphery has been frozen since ~35h in, every post-crest addition lands at 1β2 points, so the magnitude-valve flag and 72.5th-percentile peer reading remain day-one-crest and quiet-age-cohort artifacts and heat stays low on the day-week follow-on cadence.
2026-10-02T14:26:17Z
evidence attached: hn.story.49933338 β The public OpenShell repository is the first-party artifact underlying the open Nvidia agent-safety case and should be carried by it.
2026-10-02T00:40:19Z
The newest attachment (hn 49926650, 2 pts, sole comment a dupe pointer to the main thread) is the latest same-launch syndication echo, and its attach rationale β 'first-party OpenShell product page' β adds nothing new: the product and docs have existed since the March Agent Toolkit release and were already exercised by the independent test. The case's meaning is unchanged; periphery has been frozen since ~35h in, so the magnitude-valve spread flag and 79.5th-percentile peer reading remain day-one-crest and quiet-age-cohort artifacts rather than live spread, and heat stays low on the day-week follow-on cadence.
2026-10-01T23:31:30Z
evidence attached: hn.story.49926650 β HN debut plus the first-party OpenShell product page adds independent spread evidence for the open agent-containment-platform case.
2026-10-01T22:10:46Z
grounded: converges/high β A consequential other party has industrialized the position Scott's canon already holds: OpenShell is the SiloOS/padded-cell pattern β kernel-level, deny-by-def
2026-10-01T22:02:15Z
Tom's Hardware coverage (hn 49925788, 1 pt, immediately flagged dupe) is the third same-launch mainstream echo in two days, each landing at near-zero traction β a decaying press-syndication tail, not genuine periphery expansion (no new implementations, communities, or analysis), so the case's meaning is unchanged. Attention sits at ~0.33 pts/h ~104h in; the 72nd-percentile peer reading is a quiet-age-cohort artifact, not live spread, and the magnitude-valve flag remains a day-one crest remnant. Re-ignition still runs on partner SKUs, Anthropic depth, escape-pattern verification, or any vendor answer to the restricted-permissions challenge.
2026-10-01T20:35:48Z
evidence attached: hn.story.49925788 β Independent Tom's Hardware coverage of the same launch corroborates spread of the platform beyond Nvidia's own announcement.
2026-10-01T15:13:56Z
The Bloomberg video (reddit 1wv09av, 1 pt) is the latest mainstream echo of the same rollout β repetitive amplification adding no new fact, so the case's meaning is unchanged: partner SKUs, Anthropic depth, the restricted-permissions rebuttal, and escape-pattern verification still run on a day-week cadence while attention sits flatlined at ~0.17 pts/h, ~97h in. The magnitude-valve spread reading remains a day-one press-crest artifact with periphery frozen since ~35h, so heat holds low despite the loud historical spread.
2026-10-01T14:32:26Z
evidence attached: reddit.post.1wv09av β Bloomberg video coverage of the same Nvidia agent-containment rollout, corroborating mainstream spread of the open case's episode.
2026-09-30T06:36:47Z
The escape-failure-mode line graduates from a single unverified CTF title to a corroborated pattern: independent InfoQ coverage of repeated VM escapes by GPT-5.6-Cyber agents hardens the case's demand premise while pushing the open question from 'which configs hold' to 'which isolation mechanisms hold against adversarial agents'. Attention is nonetheless dead (0.17 pts/h vs ~118 peak; the InfoQ item itself sits at 1 pt/0 comments, and the magnitude-valve spread reading is a day-one crest artifact with periphery frozen since ~35h in), so this prices as quiet substance on a day-week cadence, not re-ignition.
2026-09-30T06:23:29Z
evidence attached: hn.story.49905020 β Independent InfoQ coverage of repeated VM escapes by GPT-5.6-Cyber agents is direct evidence for the sandbox-escape motivation behind the vendor containment-platform case.
2026-09-29T11:57:32Z
The kvmCTF escape write-up adds a second, harder failure mode to the efficacy picture β an agent allegedly defeating virtualization-level isolation, a stiffer test than the auto-approval config bypass β raising the bar for Landlock-based 'working containment' claims while confirming the escape-premise keeps generating demand-side events; unverified (title only, 3 pts, 0 comments) so it sharpens rather than settles. Heat holds low: rate collapsed to ~11.5 pts/h vs ~113 peak, momentum cooling, periphery stopped expanding ~35h in β the 90.7 peer percentile is a day-one crest artifact, not live spread.
2026-09-29T11:27:12Z
evidence attached: hn.story.49891241 β Independent write-up of an agent escaping Google's kvm-level CTF sandbox is a new disclosed sandbox-escape incident directly bearing on whether containment actually holds; corroborates the containment-problem premise of the case.
2026-09-29T10:55:54Z
The case's first independent efficacy test lands and splits the claim: in a 123-trial local replication, OpenShell's documented deny-by-default controls held (secret leaked 10/10 without it, 0/10 with), but auto-approval opened new hosts 12/12 β 'working containment' downgrades from vendor claim to real-but-conditional, and the open question shifts to which configurations hold and whether adoption follows. Heat cools to low: the magnitude-valve reading reflects the day-one press crest, periphery expansion stopped ~35h in (last new outlet was The Verge), rates have collapsed to 13 pts/h, and the one substantive addition has zero traction so far β the signals that matter now (partner SKUs, deeper tests, Anthropic depth, amplification of the bypass finding) run on day-to-week cadence.
2026-09-29T10:24:30Z
evidence attached: reddit.post.1wt5lns β Independent 123-trial test of OpenShell v0.1.2: documented controls held but auto-approval leaked in 12/12 trials β exactly the external validation the case turns on.
2026-09-29T01:11:19Z
The only additions since the crest are The Verge pickup β corroboration-by-spread of an already multi-outlet-confirmed announcement, not a new fact β and a Reddit velocity spike running along the same cynical axes, with no shipping, adoption, efficacy, or rebuttal to the restricted-permissions challenge anywhere. Meaning is unchanged (confirmed announcement, contested adoption half, untested containment), and heat holds at medium rather than cooling further because the follow-on signals that matter (partner SKUs, red-team tests, Anthropic integration depth) run on day-to-week cadence, not hourly.
2026-09-29T00:31:57Z
evidence attached: hn.story.49885977 β The Verge's coverage is independent press pickup of the open case's platform announcement β corroboration-by-spread worth flagging when re-judging.
2026-09-28T23:44:02Z
The news cycle has crested: momentum flipped to cooling (35.8 pts/h vs 92.5 peak, still 97.6th percentile) and the only additions since the last look are near-empty derivative HN threads and a Business Insider explainer β the day-two consolidation pattern, with zero substantive movement. Meaning is unchanged (confirmed announcement, efficacy and adoption claims contested and untested), so heat drops highβmedium as a delivery judgment: the magnitude-valve spread was real but is now cooling, and the signals that matter (partner SKUs, red-team tests, Anthropic depth) will unfold on day-to-week cadence, not hourly.
2026-09-28T23:28:17Z
evidence attached: hn.story.49883636 β Business Insider's explainer is mainstream spread of the same Open Agent Safety Platform launch already carried by the open case.
2026-09-28T22:47:55Z
Day-two consolidation: the only new evidence is a derivative HN thread that redirects to the main discussion (plus a comment linking Huang's X amplification), and engagement growth β HN main thread 73/122, Reddit 228/99 β runs along the same skeptical axes with still no shipping, adoption, efficacy data, or defense of the restricted-permissions challenge, so the case's substance is unchanged. Heat stays high on delivery grounds: the deterministic line still reads top-percentile across three platforms (40.5 pts/h vs 90 peak, 97.7th percentile, magnitude-valve spread) and this cadence is what catches partner SKUs, Anthropic integration detail, or a first red-team test while it matters β an attention judgment, not a belief move.
2026-09-28T21:36:33Z
evidence attached: hn.story.49884188 β shared external link with case evidence
2026-09-28T20:23:52Z
Everything new since the multi-outlet confirmation is amplification or discussion of the same Sept-28 announcement β no shipping, adoption, or efficacy movement β so the case's substance is unchanged and state stays at corroborated. The meaning shift is reception: HN has now joined Reddit's cynicism with substantive skepticism (what does this add over restricted-permission accounts?), consolidating a technical counter-position that makes the adoption half of the hypothesis contested rather than presumed; heat stays high because the periphery is still genuinely expanding (new outlets, four HN threads, ~97th-percentile velocity, magnitude-valve spread), not because belief moved.
2026-09-28T18:36:54Z
evidence attached: hn.story.49879883 β Highest-engagement coverage of the same platform (33 points, 66 comments) β community-spread evidence for the containment-as-infrastructure hypothesis.
2026-09-28T18:36:54Z
evidence attached: hn.story.49881899 β Independent press coverage (Euronews) of the same platform launch, corroborating the case's spread.
2026-09-28T18:36:54Z
evidence attached: hn.story.49882160 β Nvidia's own product page is the first-party artifact for the open case's containment platform hypothesis.
2026-09-28T17:33:49Z
grounded: converges/high β A consequential other party just industrialized Scott's own thesis: OpenShell is kernel-level, deny-by-default, declarative-policy agent containment β the SiloO
2026-09-28T17:24:42Z
The claims the grounding pass flagged as echo-only and unconfirmed β Sentry on network chips, the full enterprise partner roster, the Anthropic OpenShell integration β are confirmed by the retrieved CNBC text and now by CNN's independent coverage, so the case graduates from single-anchor testimony to a multi-outlet-corroborated announcement; the March OpenShell OSS blog reads as the runtime lineage the platform launch wraps, not a contradiction. Still open is the hypothesis's second half: partner products actually shipping and enterprise adoption establishing this as standard infrastructure.
2026-09-28T15:45:05Z
evidence attached: hn.story.49879006 β NVIDIA's primary blog post for its agent safety stack directly bears on the open case tracking that platform.
2026-09-28T13:35:16Z
evidence attached: reddit.post.1wsdyez β CNN coverage of exactly the open Nvidia agent-containment platform case β independent press spread beyond the vendor claim.
2026-09-28T12:23:34Z
origin walked (opencode/cheap-glm, conf 0.95): anchor hn.story.49876019 -> echo.blog.932d564873 by NVIDIA (corporate press release, NVIDIA Newsroom / Corporate Communications)
2026-09-28T11:41:14Z
grounded: converges/high β The confirmed core β OpenShell as OS-layer, deny-by-default, environment-side containment the agent cannot itself override β is Scott's SiloOS / architectural-c
2026-09-28T11:31:43Z
case created β The two proposals describe one Nvidia announcement (the CNBC Open Agent Safety Platform report and the madrobot echo naming OpenShell/Sentry) and merge into a single case anchored on the detailed CNBC coverage of a same-day major-vendor release with a CEO media tour.