<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Aaron Chartier — Blog</title><description>Aaron Chartier — a technologist&apos;s workshop: tools, agents, and playful machines.</description><link>https://aaronchartier.com/</link><language>en-us</language><item><title>Perplexity won the wrong argument</title><link>https://aaronchartier.com/blog/perplexity-won-the-wrong-argument/</link><guid isPermaLink="true">https://aaronchartier.com/blog/perplexity-won-the-wrong-argument/</guid><description>The Ninth Circuit vacated Amazon&apos;s injunction against Comet: a shopping agent is a tool, not a person under the CFAA. The strategy that won this round is the one that loses everything that comes after it.</description><pubDate>Wed, 05 Aug 2026 00:00:00 GMT</pubDate><category>ai-agents</category><category>law</category><category>cfaa</category><category>web-infrastructure</category></item><item><title>Provenance proves the build, not the builder</title><link>https://aaronchartier.com/blog/provenance-proves-the-build-not-the-builder/</link><guid isPermaLink="true">https://aaronchartier.com/blog/provenance-proves-the-build-not-the-builder/</guid><description>npm&apos;s own trusted-publishing pipeline cryptographically attested a worm on August 4 because the compromise happened one layer above the token it was designed to protect. The same gap just showed up in agent skill marketplaces and MCP registries too.</description><pubDate>Tue, 04 Aug 2026 00:00:00 GMT</pubDate><category>supply-chain</category><category>npm</category><category>agents</category><category>security</category></item><item><title>Cheaper tokens, richer labs</title><link>https://aaronchartier.com/blog/cheaper-tokens-richer-labs/</link><guid isPermaLink="true">https://aaronchartier.com/blog/cheaper-tokens-richer-labs/</guid><description>OpenAI just cut its cheapest model&apos;s price 80%. Anthropic&apos;s inference margins climbed from 38% to over 70% in the same year. Both are true at once, and the reason says more about who holds pricing power in AI than any per-token chart does.</description><pubDate>Sat, 01 Aug 2026 00:00:00 GMT</pubDate><category>ai</category><category>economics</category><category>inference</category></item><item><title>Multi-agent systems spend more and call it architecture</title><link>https://aaronchartier.com/blog/multi-agent-systems-spend-more-and-call-it-architecture/</link><guid isPermaLink="true">https://aaronchartier.com/blog/multi-agent-systems-spend-more-and-call-it-architecture/</guid><description>Two 2026 papers show automated multi-agent LLM systems losing to a single agent at matched compute — and the exception, Anthropic&apos;s own research system, turns out to prove the same rule from the other side.</description><pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate><category>agents</category><category>llm-systems</category><category>distributed-systems</category></item><item><title>The weights didn&apos;t change. The score did.</title><link>https://aaronchartier.com/blog/the-weights-didnt-change-the-score-did/</link><guid isPermaLink="true">https://aaronchartier.com/blog/the-weights-didnt-change-the-score-did/</guid><description>Anthropic revised a prior model&apos;s benchmark score in May 2026; OpenAI nearly tripled another&apos;s two months later — both without touching the weights, only the harness. What that says about self-run evals.</description><pubDate>Thu, 30 Jul 2026 00:00:00 GMT</pubDate><category>benchmarks</category><category>evals</category><category>ai</category></item><item><title>Agent memory solves storage, not recall</title><link>https://aaronchartier.com/blog/agent-memory-solves-storage-not-recall/</link><guid isPermaLink="true">https://aaronchartier.com/blog/agent-memory-solves-storage-not-recall/</guid><description>Cloudflare and MinIO both shipped durable &apos;agent memory&apos; products this year, framed as the fix for context rot. The research the fix is named after says the hard part was never storage.</description><pubDate>Wed, 29 Jul 2026 00:00:00 GMT</pubDate><category>llms</category><category>memory</category><category>context-engineering</category></item><item><title>The remote code execution hole in MCP is a design decision</title><link>https://aaronchartier.com/blog/mcp-remote-code-execution-design-decision/</link><guid isPermaLink="true">https://aaronchartier.com/blog/mcp-remote-code-execution-design-decision/</guid><description>OX Security&apos;s April disclosure showed every official MCP SDK will run an unsanitized command string as a subprocess. The answer was a documentation update, because on the transport&apos;s own terms this is intended behaviour — and neutral governance has no way to overrule an argument of that shape.</description><pubDate>Tue, 28 Jul 2026 00:00:00 GMT</pubDate><category>mcp</category><category>security</category><category>agents</category></item><item><title>Kimi K3&apos;s license got stricter the week open weight went political</title><link>https://aaronchartier.com/blog/kimi-k3-license-open-weight-went-political/</link><guid isPermaLink="true">https://aaronchartier.com/blog/kimi-k3-license-open-weight-went-political/</guid><description>The letter 25 companies signed in July 2026 argued open and closed models have converged enough that regulators should back off. Days later, the open model closest to proving that point shipped a tighter license than its predecessor.</description><pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate><category>ai</category><category>licensing</category><category>open-source</category></item><item><title>The crawler rulebook finally has an enforcer</title><link>https://aaronchartier.com/blog/the-crawler-rulebook-finally-has-an-enforcer/</link><guid isPermaLink="true">https://aaronchartier.com/blog/the-crawler-rulebook-finally-has-an-enforcer/</guid><description>Cloudflare will start blocking mixed-use AI crawlers by default this September. The mechanism that makes it possible is cryptographic, but the power it hands out isn&apos;t going to a standards body.</description><pubDate>Fri, 24 Jul 2026 00:00:00 GMT</pubDate><category>ai</category><category>crawlers</category><category>infrastructure</category><category>economics</category></item><item><title>The queue got longer. The shelf didn&apos;t.</title><link>https://aaronchartier.com/blog/the-queue-got-longer-the-shelf-didnt/</link><guid isPermaLink="true">https://aaronchartier.com/blog/the-queue-got-longer-the-shelf-didnt/</guid><description>App Store submissions are up 80% year over year on iOS alone, and Apple just spent a guideline update policing apps that make other apps. The bottleneck was never the building.</description><pubDate>Wed, 22 Jul 2026 00:00:00 GMT</pubDate><category>app-store</category><category>distribution</category><category>software-economics</category></item><item><title>Valid JSON was never the hard part</title><link>https://aaronchartier.com/blog/valid-json-was-never-the-hard-part/</link><guid isPermaLink="true">https://aaronchartier.com/blog/valid-json-was-never-the-hard-part/</guid><description>Grammar-constrained decoding guarantees a language model&apos;s output will parse. Benchmarks from 2024 through 2026 keep finding that guarantee stops well short of the output being right.</description><pubDate>Mon, 20 Jul 2026 00:00:00 GMT</pubDate><category>llm</category><category>structured-output</category><category>constrained-decoding</category></item><item><title>The bug reports got better, and that&apos;s the problem</title><link>https://aaronchartier.com/blog/the-bug-reports-got-better-and-thats-the-problem/</link><guid isPermaLink="true">https://aaronchartier.com/blog/the-bug-reports-got-better-and-thats-the-problem/</guid><description>Curl killed its bug bounty in January over AI slop. By April the slop was gone and maintainers had more work than ever — because the thing they were filtering for was never correctness.</description><pubDate>Sat, 18 Jul 2026 00:00:00 GMT</pubDate><category>open-source</category><category>code-review</category><category>ai</category><category>security</category></item><item><title>The browser finally speaks GGUF</title><link>https://aaronchartier.com/blog/the-browser-finally-speaks-gguf/</link><guid isPermaLink="true">https://aaronchartier.com/blog/the-browser-finally-speaks-gguf/</guid><description>llama.cpp shipped a real WebGPU backend, benchmarked this May against WebLLM and Transformers.js. The in-browser model catalog just got 400x bigger — and the numbers show exactly what that gain cost.</description><pubDate>Fri, 17 Jul 2026 00:00:00 GMT</pubDate><category>webgpu</category><category>on-device-ai</category><category>llama.cpp</category></item><item><title>The API key was always the weird part</title><link>https://aaronchartier.com/blog/the-api-key-was-always-the-weird-part/</link><guid isPermaLink="true">https://aaronchartier.com/blog/the-api-key-was-always-the-weird-part/</guid><description>Consumer AI subscriptions are starting to authenticate the apps you use — no developer key, no token bill. It&apos;s a real shift in who holds the meter, and it lasts exactly as long as the labs allow it.</description><pubDate>Thu, 16 Jul 2026 00:00:00 GMT</pubDate><category>agents</category><category>ai</category><category>economics</category></item><item><title>You can&apos;t scale what you have to remember</title><link>https://aaronchartier.com/blog/you-cant-scale-what-you-have-to-remember/</link><guid isPermaLink="true">https://aaronchartier.com/blog/you-cant-scale-what-you-have-to-remember/</guid><description>MCP is dropping the session. That reads as a loss until you remember why every protocol that mattered ended up stateless — and what it actually costs to get there.</description><pubDate>Wed, 15 Jul 2026 00:00:00 GMT</pubDate><category>mcp</category><category>agents</category><category>web-architecture</category></item><item><title>The control question already has an answer</title><link>https://aaronchartier.com/blog/the-control-question-already-has-an-answer/</link><guid isPermaLink="true">https://aaronchartier.com/blog/the-control-question-already-has-an-answer/</guid><description>The argument over whether capable AI systems could be kept in check is effectively over. It wasn&apos;t won — the careful people just stopped holding the line, and an unattended ransomware agent showed what that costs.</description><pubDate>Wed, 08 Jul 2026 00:00:00 GMT</pubDate><category>agents</category><category>security</category><category>trust</category></item><item><title>Nobody is reading your llms.txt</title><link>https://aaronchartier.com/blog/nobody-is-reading-your-llms-txt/</link><guid isPermaLink="true">https://aaronchartier.com/blog/nobody-is-reading-your-llms-txt/</guid><description>97% of llms.txt files never get read, and we&apos;ve run this experiment before. What separates the sidecar files that shaped the web from the ones that became decoration.</description><pubDate>Fri, 03 Jul 2026 00:00:00 GMT</pubDate><category>agents</category><category>llms-txt</category><category>web-history</category></item></channel></rss>