News World

Artificial Intelligence
Vol. I · Issue September 13, 2026 4 minutes

News World AI

Hello,

This issue is built around one question: can you assemble a news pipeline run by machines, from collection to editing? Five layers, six real tools, one hole at the second, and the bill that comes with it.

Releases

Releases: wherethey runModels and tools, sorted by whetherthey run with a provider or on yourown machine.WITH A PROVIDERON YOUR MACHINETOOLMODELGPT-6 AstraKimi K3DeepSeekSlotStreamOpenMontageScrapeGraphAIScrapeGraphAIserviceGPT-6 AstraCannot be self-hosted, $50 per millionoutput tokensKimi K3466 GB at its lightest, you need a hostDeepSeekV4-Flash-Vision-Exp, text andimages, freeSlotStreamA 105 GB model on a Mac with 48 GBOpenMontageHeavy install, $1.33 to $5 per videoScrapeGraphAIFree library, the model calls are on youScrapeGraphAI serviceHosted version, from $20 a monthNEWS WORLD AI
Releases: where they run. Models and tools, sorted by whether they run with a provider or on your own machine. GPT-6 Astra. Cannot be self-hosted, $50 per million output tokens. Kimi K3. 466 GB at its lightest, you need a host. DeepSeek. V4-Flash-Vision-Exp, text and images, free. SlotStream. A 105 GB model on a Mac with 48 GB. OpenMontage. Heavy install, $1.33 to $5 per video. ScrapeGraphAI. Free library, the model calls are on you. ScrapeGraphAI service. Hosted version, from $20 a month.

Open the infographic full size

GPT-6 Astra

$10 per million input tokens, $50 per million output tokens. Rolling out across ChatGPT Plus, Pro, Business, Enterprise and the OpenAI API.

What it's for Programming, cybersecurity, scientific research, computer control. It is the first model to cross the "critical" threshold of OpenAI's preparedness framework in cybersecurity, meaning it can attack as well as defend. A fast mode doubles the speed, and doubles the price.

The limit The rollout is not finished, not everyone has it yet. And it is a model you cannot host yourself: output runs at $50 per million tokens, where Google's Flash range sits at $3.75.

openai.com/​index/​gpt-6-astra

Read on

Share this section

Repos

Four repos, and whatthey do not doFor each repo, what it brings on oneside, what it does not do on the other.What it doesIts limitMSITARZEWSKI/AGENCY-AGENTS273 role cards forcoding assistantsNo code runs,writteninstructions onlyTRAILHQ/GRAFTA map of yourcode, 19% less costOnly23 languages,settings for allyour reposTCOTL/AGENTCAPTURETraps agents thatvisit your siteDoes not detectagents thatonly readADVAITPALIWAL/FEYNMANReads papers,checks thesources existDoes not verifya news claimFeynman checks citations, not newsfacts: that verificationremains to be written.NEWS WORLD AI
Four repos, and what they do not do. For each repo, what it brings on one side, what it does not do on the other. What it does / Its limit. msitarzewski/agency-agents. 273 role cards for coding assistants. No code runs, written instructions only. trailhq/Graft. A map of your code, 19% less cost. Only 23 languages, settings for all your repos. Tcotl/AgentCapture. Traps agents that visit your site. Does not detect agents that only read. advaitpaliwal/feynman. Reads papers, checks the sources exist. Does not verify a news claim. Feynman checks citations, not news facts: that verification remains to be written.

Open the infographic full size

msitarzewski/agency-agents · 150,281 stars · MIT · last commit 5 September 2026

A library of role cards for coding assistants. Each card is a text file describing a specialist (security, testing, SEO, finance) that you drop into your tool. The repo announces more than 230 agents. Our own count after cloning, on 6 September 2026, gives 273 cards. What it does not do: no code runs, these are written instructions only. The cost is whatever the model reading them charges. The project itself documents that some tools only register part of the cards and silently drop the rest.

github.com/​msitarzewski/​…

trailhq/Graft · 5,609 stars · MIT · last commit 2 September 2026

It maps your code, in text, and gives the map to your coding assistant so it stops re-reading the entire repo on every question. Its standard protocol (SWE-bench Verified, 50 cases, same model on both sides) shows 19% less cost and 12 more accuracy points. What it does not do: it understands only 23 languages and ignores the rest, and it does not confine itself to the current repo unless you ask it to. The plain-language summaries require an API key and cost money, only the structural map is free. Its install command writes settings for all your repos, unless you pass --no-global.

github.com/​trailhq/​Graft

GRAFT ON SWE-BENCH VERIFIED, 50 CASES, SAME MODEL ON BOTH SIDES
Cost without Graft
$52.34
Cost with Graft
$42.43

Tcotl/AgentCapture · 35 stars · AGPL-3.0 · last commit 4 September 2026

A honeypot for agents: 23 techniques to identify an agent visiting your site, trap it, and replay its session. Tested against five mainstream agents, all trapped. What it does not do: does not detect agents that only read without interacting. It does not block anything either, it watches and records, the decision stays yours.

github.com/​Tcotl/​AgentCapture

advaitpaliwal/feynman · 8,871 stars · MIT · last commit 6 September 2026

A command-line assistant that fetches scientific papers (arXiv, PubMed, OpenAlex, ClinicalTrials.gov), reads them, ranks them, produces a synthesis, and checks that every cited source actually exists. What it does not do: its ground is scientific literature, not current events. It does not verify a news claim. You must plug in your own model, and running heavy experiments means installing Docker, Modal or RunPod yourself.

github.com/​advaitpaliwal/​feynman

Share this section

In brief

Two commitmentsannounced this weekA takeover and a cyberdefenceprogramme, side by side: amount,target, promise and limit.NVIDIAOpenAITHE AMOUNT$12.9 billionOne billiondollarsWHAT IT ISThe acquisitionof Hugging FaceDaybreak,a cyberdefenceprogrammeTHE TARGETThe mainrepository foropen modelsCritical services,local government,open sourceTHE PROMISEKeep theplatform openSubsidised access,training andsupportTHE LIMITNeutrality willdepend on whatcomes nextStarting with theUnited StatesNEWS WORLD AI
Two commitments announced this week. A takeover and a cyberdefence programme, side by side: amount, target, promise and limit. NVIDIA / OpenAI. The amount. $12.9 billion. One billion dollars. What it is. The acquisition of Hugging Face. Daybreak, a cyberdefence programme. The target. The main repository for open models. Critical services, local government, open source. The promise. Keep the platform open. Subsidised access, training and support. The limit. Neutrality will depend on what comes next. Starting with the United States.

Open the infographic full size

NVIDIA acquires Hugging Face for $12.9 billion. The main repository for open models passes under the control of the leading GPU supplier. Jensen Huang pledges to keep the platform open: neutrality will depend on what comes next. blogs.nvidia.com/​blog/​…

OpenAI commits one billion dollars to cyberdefence for critical services. The Daybreak programme opens subsidised access to its cyber models and products for operators of critical infrastructure, local government and open-source maintainers, with training and support, starting with the United States. openai.com/​index/​…

Share this section

The problem of the week

Five layers, one holeat the secondWhat exists at each layer of a newsroomrun by machines, what it costs,where it breaks.1. CollectScrapeGraphAI reads a webpage and hands back structureddata. No RSS feeds, no X.HOSTED FROM $20 A MONTH2. VerifyNothing off the shelf: Feynmanchecks citations, not whethera news fact is true.REMAINS TO BE WRITTEN3. Summarise andtranslateKimi K3 swallows1,048,576 tokens at once, but itssmallest build weighs 466 GB.A HOST, A SUBSCRIPTION4. Turn into videoOpenMontage chains script,voice, music, editing, and cutsranked short clips.$1.33 TO $5 PER VIDEO5. CoordinateCrewAI, LangGraph andTemporal, all MIT. Machine,queue and retries are on you.OPEN SOURCE, SELF-HOSTEDNEWS WORLD AI
Five layers, one hole at the second. What exists at each layer of a newsroom run by machines, what it costs, where it breaks. 1. Collect. ScrapeGraphAI reads a web page and hands back structured data. No RSS feeds, no X.. Hosted from $20 a month. 2. Verify. Nothing off the shelf: Feynman checks citations, not whether a news fact is true.. Remains to be written. 3. Summarise and translate. Kimi K3 swallows 1,048,576 tokens at once, but its smallest build weighs 466 GB.. A host, a subscription. 4. Turn into video. OpenMontage chains script, voice, music, editing, and cuts ranked short clips.. $1.33 to $5 per video. 5. Coordinate. CrewAI, LangGraph and Temporal, all MIT. Machine, queue and retries are on you.. Open source, self-hosted.

Open the infographic full size

Building a newsroom run by machines

You want a continuous information flow: collect sources, check what is true, summarise, turn it into video, and coordinate the whole thing. Five layers. Here is what exists at each one, what it costs, and where it breaks.

Layer 1: collect. ScrapeGraphAI (30,601 stars, MIT) reads a web page and hands back structured data. You give it an address and a sentence, it figures it out. But it does not read RSS feeds or X: for those two sources, you have to write or plug in your own collection. The hosted service costs from $20 a month, the library alone is free but the model calls are on you.

github.com/​ScrapeGraphAI/​…

Read on

Share this section

Worth reading

THREE READS, AND WHAT EACH ONE GIVES YOU
Latent Space on GPT-6 Astra20 billion tokens spent
Funes, by Hugging Facean agent memory you host
Project HydraFusion, by GitHubseveral models on one agent

GPT-6 Astra: an automated AI engineer for under $6 an hour · Latent Space spent over 20 billion tokens exploring Astra in depth. The article details the real gains per task, the cases where the model fails, and why it costs more per token but less per result. latent.space/​p/​astra

Give your coding agents a memory you own · Hugging Face introduces Funes, a persistent memory system for coding agents that you host and control. huggingface.co/​blog/​funes

Project HydraFusion: frontier quality through multi-model orchestration · GitHub shows how to have several models work on the same agent to reach big-model quality while cutting cost. github.blog/​ai-and-ml/​…

Share this section

The security reflex

LiteLLM: the made-uptoken that opensyour toolsCVE-2026-59822, severity 8.8 outof 10, actively exploited, added to theCISA catalogue on 2 September.The proxyMany teams place LiteLLMbetween their agents and theirmodel providers.A made-up tokenA stranger presents a tokenmade up out of thin air.The check gives wayThe check fails and, rather thanrefuse, the proxy lets it throughwith an empty identity.Your tools reachedThe attacker reaches the toolsyour agents expose, withno key at all.The right moveMove to 1.84.0 or later.Otherwise, cut inbound accessand rotate the proxy's API keys.NEWS WORLD AI
LiteLLM: the made-up token that opens your tools. CVE-2026-59822, severity 8.8 out of 10, actively exploited, added to the CISA catalogue on 2 September. The proxy. Many teams place LiteLLM between their agents and their model providers. A made-up token. A stranger presents a token made up out of thin air. The check gives way. The check fails and, rather than refuse, the proxy lets it through with an empty identity. Your tools reached. The attacker reaches the tools your agents expose, with no key at all. The right move. Move to 1.84.0 or later. Otherwise, cut inbound access and rotate the proxy's API keys.

Open the infographic full size

LiteLLM is a proxy that many teams place between their agents and their model providers, to route requests to the right place. An authentication flaw (CVE-2026-59822, severity 8.8 out of 10) lets a stranger present a token made up out of thin air: the check fails, and instead of refusing, the proxy lets the request through with an empty identity. The attacker then reaches the tools your agents expose, with no key at all. The flaw is actively exploited, CISA added it to its catalogue on 2 September. The technical detail, the severity and the fixing version come from the project's own security advisory: github.com/​BerriAI/​litellm/​…

The right move. Move LiteLLM to version 1.84.0 or later today, that is the version that fixes the flaw. If you cannot update immediately, cut inbound network access to the proxy and rotate every API key registered there.

cisa.gov/​news-events/​alerts/​2026/​…

Reply to this email and tell us what you are building. Every reply is read.

News World AI

Share this section

Read the full issue

Get the newsletter

Every Tuesday, in four minutes: what shipped in AI and what you can actually try the same day.

Double opt-in by email. One-click unsubscribe, link in plain sight in every issue.

News World AI

Geneva, Switzerland. Write to hello@newsworldai.xyz.