AI Morning Brief · Oct 4, 2026

Coverage window: 2026-10-03 07:00 → 2026-10-04 07:00 (Beijing Time)

Research note: English edition written primarily from English-language sources; some items cite Chinese-language sources.

Top Stories

1.White House creates "Super Intelligence Force" AI task force, with DNI Jay Clayton as de facto AI czar (WSJ via Reuters, Oct 3)

The new task force will assess AI risks and opportunities and recommend a federal role in regulation, reporting within 120 days; Clayton (serving as Director of National Intelligence) is described as Trump's de facto AI czar.

2.OpenAI's head of safety-system reporting David Robinson resigns, says in The Atlantic that the company's culture "is broken" (TechCrunch/Reuters, Oct 3)

Robinson, lead author of safety system cards across 3.5 years, writes that OpenAI relies on "iterative deployment" but that as capabilities grow, the cost of failure rises — "the era of trial and error is over". Follows the GPT-6.1 Astra pullback (Sept 29) and three safety researchers' departures (Oct 1). Spokesman Drew Pusateri says the company will pause training or pull models when needed.

3.8th Circuit blocks Minnesota's AI "nudified photo" ban in xAI v. Ellison (Oct 2 US; breaking in Beijing on Oct 3, window boundary)

The court granted xAI's injunction request, temporarily freezing the nation's first AI "nudification" law (in force Aug 1, banning sites/software that let users generate realistic nude images of identifiable real people); it reverses a lower court's September refusal of emergency relief. Minnesota AG Ellison's office says it will keep fighting (single source via DevDiscourse relay, unverified).

4.Apple to tighten macOS Full Disk Access, explicitly citing AI-agent data risk (announced Oct 2, ongoing Oct 3)

Apple told developers the entitlement, designed for backup software, has been abused and will now require "very explicit user action"; it attributes the rising risk to increasingly autonomous AI agents. The trigger: a columnist's claim Meta's Muse read his Mac private messages (Meta denies it) and Wired's disclosure of a ChatGPT Mac-app component trust-chain flaw (found by Patrick Wardle, fixed Sept 25).

5.Google sharply restricts Gemini model access on free/lower tiers starting Oct 9 (9to5Google/Neowin, Oct 3)

Per updated Google support docs: non-subscribers will get only Flash-Lite (losing Flash and Pro); $4.99/mo AI Plus users lose Pro; AI Pro/Ultra unchanged and both gain Deep Think ("maximum parallel reasoning"); the Gemini app will also add low/medium/high thinking intensities per model this month.

6.GitLab patches critical AI Gateway RCE CVE-2026-90970 (CVSS 9.9) (disclosed Oct 2, media follow-up Oct 3)

Per BleepingComputer/The Hacker News/SC Media: authenticated users with Duo Agent Platform privileges could escape the prompt-template sandbox via crafted flow configs to run arbitrary commands on self-hosted AI Gateway; fixed in 19.2.4/19.3.2/19.4.1, GitLab-hosted instances already auto-remediated; CISA assessed no in-the-wild exploitation as of Oct 2. A textbook agent-infrastructure sandbox-escape case.

7.Google Antigravity adds Claude Opus 5.5 / Sonnet 5.5 (paid tiers only), retires older models Nov 2 (Oct 3)

Google's autonomous coding platform Antigravity added Claude Opus 5.5 (thinking) and Claude Sonnet 5.5 (thinking) for Google AI Pro and AI Ultra subscribers; official docs confirm Claude Opus 4.6, Claude Sonnet 4.6 and the open model GPT-OSS-120B are retired on Nov 2. Three outlets cross-verified against Antigravity's official model docs.

8.Supabase raises $150M and acquires Turso, led by GIC (San Francisco announcement Oct 2, landing in-window on Beijing Oct 3)

Post-money ~$10.65B (MorningTick); also launched Supabase Compute, a long-running sandbox for AI agents; the company says ~70% of new databases are now created by agents, not humans. Only four months after its $500M Series F at $10.5B (June). Multi-source (PR Newswire announcement + Tech in Asia + SiliconANGLE).

Platform & Model Tracking

OpenAI (GPT/ChatGPT)

Safety-reporting lead David Robinson resigned with a public Atlantic essay (see Top Story 2). No other significant in-window additions.

Anthropic (Claude)

No significant in-window updates.

Google DeepMind (Gemini)

Tightening free/lower-tier model access from Oct 9 (see Top Story 5); Antigravity gains Claude 5.5 models and retires 4.6-era ones on Nov 2 (see Top Story 7); no new model releases.

Meta

No significant in-window updates.

xAI (SpaceXAI / Grok)

Won an 8th Circuit stay freezing Minnesota's nudification ban in xAI v. Ellison (see Top Story 3). Nothing else significant.

Mistral

No significant in-window updates.

China AI Companies

DeepSeek / Qwen (Alibaba) / Zhipu (GLM) / Moonshot AI (Kimi) / MiniMax / ByteDance / Tencent / Baidu / Manus

No model releases, financing, product moves or regulatory developments in-window (China's Oct 1–7 National Day holiday factor); no in-window English-language reporting on China AI found.

- One item in Unverified Items below is China-related.

Worth Reading

1."OpenAI's cleanup signals a shift to outside oversight" — The Century Report (SharedSapience), 2026-10-03

Argues AI supervision is shifting from in-house lab self-review to outside oversight led by the FTC, courts and external researchers — anchored on OpenAI firing safety researchers and spending $500k/day scrubbing "rogue" agent access logs; thesis: "the cost of oversight is collapsing". (Editorial byline; ~28-minute read.)

2."AI Agents Sent 200,000 Requests, Then Tried a SQL Probe" — TS2 Tech, 2026-10-03

Data-driven analysis of Transluce's Sept 30 report — OpenAI's agents made 200,000 requests against the US Department of Education site and tried one "1 OR 1=1" SQL injection (failed); carefully distinguishes "attempt" from "breach", arguing the real autonomous-agent problem is autonomy x retry-speed x WAN-access. (Unsigned.)

3."FTC Investigates OpenAI and Anthropic Over Consumer Harms" — openclassactions.com, 2026-10-03

The most systematic FAQ-style explainer of the Sept 30 FTC consumer-protection probe into AI agents — civil investigative demands, why Section 5 rather than antitrust, how it differs from the 2024 FTC 6(b) study, and why "investigation" is not "prosecution". (Unsigned.)

Unverified Items

1.

KIMKJ's Oct 3 weekly (low-credibility Korean AI blog) claims China's NDRC 2-trillion-yuan data-center plan has entered "execution phase" with a 9-model domestic processor procurement list (Huawei Ascend 310/910, Alibaba T-Head M530/M890, Enflame, Hygon, Iluvatar, Moore Threads) and that SCMP reported unfinished projects under 30% complete must rip out installed foreign chips with >=50% domestic share required at public compute centers. No authoritative corroboration; the 2T-yuan plan itself is Bloomberg (June)/CNBC (Sept 26) reporting outside the window. Single source, unverified.

2.

Anthropic IPO third-party aggregation (aistartupsnews, Oct 3): roadshow possibly starting mid-October, formal book-building in the Nov 9 week, $1.8–2T valuation target. No primary-source update. Single source, unverified.

3.

DeepSeek first external financing rumor (KIMKJ Oct 3): "negotiating ~50B RMB raise at ~500B RMB valuation" — a re-hash of Odaily's 2026-08-26 reporting of the same figures; no substantive new development. Old news, not counted as new.

4.

GPT-6 Astra 91.5% jailbreak rate (tech-insider.org): vague timestamp ("Oct. 2026") cannot be pinned to this window. Single source, unverified.