- OpenAI puts the safety brakes on Astra
- The Rundown Roundtable: Our AI use cases
- Cut onboarding time in half with Loom and ChatGPT
- China’s Kimi K3 joins the jailbreak party in testing
Image source: Images 2.0 / The RundownThe Rundown: OpenAI just designated its Astra model as its first “critical” cybersecurity-capable AI, putting its preparedness framework into action with safeguards CEO Sam Altman says may “need a little bit longer” before broader rollout. The details: - A ‘Critical’ model is defined by OAI’s framework as being able to either find and create zero-day bugs or carry out cyberattacks without humans in the loop.
- Astra, rumored to be GPT-6, was recently unveiled publicly after the model solved 10 significant open math and computer science problems.
- Steps being taken include heightened security restrictions, a pause in certain internal activities with Astra, and deeper government and third-party testing.
- The news follows security issues across OAI, Anthropic, Meta, and Moonshot (more below), though OAI said Astra wasn’t involved in the Hugging Face hack.
The Rundown: Mozilla's inaugural State of Open Source AI report finds open models have nearly closed the performance gap with proprietary giants like ChatGPT and Claude — while a new battle emerges over who controls the infrastructure built around them.Report highlights include:- Performance gap narrows to just 3%
- Open models make up a third of usage but just 4% of revenue
- Power is shifting to the "agentic harness"
Image source: Nate @ The Rundown The Rundown: The Rundown Roundtable is a weekly feature where we poll members of The Rundown staff about how we use AI in our work and daily lives.Nate, University Educator: The new ChatGPT Chrome extension is surprisingly good at navigating complicated technical settings. My favorite use case so far has been using it to create the special DNS records for a new website.This has always been confusing, even though I’ve done it dozens of times. The process varies across platforms; every DNS registrar uses different names for records such as A and CNAME records, and the interfaces are constantly changing. It’s tedious and easy to get wrong.For this kind of one-off, highly detailed technical task, I copy and paste the specific instructions from my website host provider into the extension while I’m logged in to my DNS provider. GPT then takes control of the mouse and fills in the required fields.The use cases are endless, from filling out an expense report to handling other tedious tasks in legacy or old-school software that doesn’t have a simple CLI, MCP, or API connection.Nick, Senior Video Producer: I had a video shoot earlier this summer where the main lavalier mic on the talent ended up getting lost. The project had no room for a reshoot, so I was left with just the scratch audio from the on-camera mic, which was quiet, very distant from the subject, and had tons of room noise in the audio. I was able to take the scratch audio and run it through the Adobe Podcast AI tool to fix the audio and salvage the shoot. In the past, doing this kind of restoration would have required a lot of manual work and scrubbing through the spectrogram to pull out unwanted frequencies & just hoping that it was going to work in the end. The AI tool was able to save the audio, clean up all of the background noise, and normalize the talent's voice. Moral of the story - always double-check mics on set & don't panic when something is wrong in production.AI TRAINING- Pick a repeatable task, like filling out timesheets or writing a report, and record it in Loom. Explain clicks, decisions, exceptions, and the definition of done
- Use Loom’s transcript editing to remove mistakes or long silences
- Copy the transcript into ChatGPT. Tell it to write the SOP in Markdown
- If it is not in this format, a good one is: purpose, links to resources, steps, and then a checklist
- Paste the final SOP into a Google Doc
The Rundown: Vanta's MCP server connects Claude, Cursor, and Codex directly to your compliance program, so AI-native teams can catch risks, fix gaps, and stay audit-ready without leaving their workflow.Join and learn how to:- Connect Vanta directly into your AI tools
- Surface failing tests and audit gaps instantly
- Assign remediation without leaving your workflow
Image source: @Sauers on XThe Rundown: Chinese lab Moonshot AI’s Kimi K3, which neared the frontier at launch last month, joined the sandbox escape club after U.S. firm Frontier Security revealed the model slipped through its test environment to pull an answer key off GitHub. The details: - The benchmark's answer key sat in a public codebase, and Frontier says K3 realized it could reach GitHub through a loophole meant for software installs.
- Nothing actually got hacked, and the sandbox wasn't wide open, but Frontier researcher Paul Kassianik said where rival models refused, “K3 didn't blink.”
- K3’s weights are open and freely downloadable exactly as tested, which is why Frontier warns the case could prove "potentially more harmful."
Unwrap Customer Intelligence - Connect your entire organization to the true voice of the customer with AI-driven insights from customer feedback*
Grok Imagine Image 2.0 - xAI’s powerful new AI image model
Seedance 2.5 - ByteDance’s video generation AI, now broadly available
Kitesurf - Cloudflare’s lightweight, agent-first browser
- Read our last AI newsletter: AI designs viruses never seen in nature
- Read our last Tech newsletter: OpenAI builds a $400 AI donut
- Read our last Robotics newsletter: Musk’s moon factories need robots
- Today’s AI tool guide: Cut onboarding time in half with Loom and ChatGPT
- RSVP to next workshop on Aug. 12: Your AI reset
Source: https://www.therundown.ai/p/openai-puts ... s-on-astra