This was a week where AI regulation and privacy scrutiny took center stage, from Brussels cracking down on major platforms to a federal judge pushing back on the Pentagon's attempt to blacklist Anthropic. Meanwhile, NASA's Roman telescope neared launch, cities kept ditching controversial surveillance cameras, and the mundane costs of the AI boom (bot traffic, opaque data collection) came into sharper focus alongside old-fashioned cybercrime.

  1. Nancy Grace Roman Space Telescope

    NASA's Nancy Grace Roman Space Telescope, launching soon, will carry an experimental coronagraph instrument designed to directly image starlight reflected off exoplanets for the first time, a capability that will affect astronomers across all areas of astrophysics. The coronagraph uses two palm-sized deformable mirrors equipped with approximately 2,300 tiny actuators each—NASA's first active deformable mirrors in space—along with advanced star-blocking masks and supersensitive detectors to overcome the extreme challenge of detecting faint planets against bright starlight, comparable to photographing a firefly next to a floodlight from across the country. Scientists including Vanessa Bailey at NASA's Jet Propulsion Laboratory and Margaret Turnbull at the SETI Institute will test the instrument by attempting to spot known exoplanets and observe dust around nearby stars, gathering crucial data to inform future telescopes like the planned Habitable Worlds Observatory and Lazuli Space Observatory. The coronagraph's success will pave the way for future space telescopes capable of detecting potentially habitable, Earth-like planets orbiting sun-like stars.

    Why it matters NASA's next flagship observatory is about to launch and will reshape astrophysics research for a decade, a rare durable science milestone amid the news churn.

    Why it made the cut: 291 points on Hacker News · Covered by 4 outlets

  2. ChatGPT, Reddit and Roblox to face the EU's strictest platform rules

    The European Commission has designated ChatGPT as a "Very Large Online Search Engine" and Reddit and Roblox as "Very Large Online Platforms" under the Digital Services Act, subjecting them to the EU's strictest regulatory requirements after each exceeded 45 million average monthly users in the European Union. These designations require the three platforms to implement stricter enforcement of their services and algorithmic systems, particularly regarding illegal content, protection of minors, and electoral integrity, while also submitting to closer EC supervision including data sharing, annual independent audits, and researcher access to platform data. With these additions, the European Commission now designates 28 services as very large online platforms or search engines under the DSA, joining previously designated services including WhatsApp, Facebook, and Instagram. The platforms have four months to comply with the tighter regulations.

    Why it matters The EU designating ChatGPT, Reddit and Roblox under its strictest platform rules sets a regulatory template that will shape how AI products operate globally.

    Why it made the cut: Covered by 2 outlets

  3. A Judge Has Blocked the Pentagon’s Attempt to Blacklist Anthropic

    US District Judge Rita Lin ruled Thursday that the Trump administration's February designation of AI company Anthropic as a "supply-chain risk" was unconstitutional retaliation, vacating Defense Secretary Pete Hegseth's decision to bar the company from federal contracts. The ruling also removed sanctions imposed by nine agencies including the Pentagon, Treasury Department, State Department, and Department of Homeland Security, though Lin affirmed the Pentagon retains the right to choose not to use Anthropic's models. The dispute originated from a failed $200 million contract negotiation over Anthropic's Claude AI models for military use, with Anthropic seeking restrictions on lethal autonomous weapons and mass surveillance applications that Hegseth rejected. The Pentagon is expected to appeal the decision, while Anthropic stated it remains focused on working with the government on AI for national security.

    Why it matters A federal court blocking the Pentagon's attempt to blacklist Anthropic is a major legal check on government power over AI companies, with implications far beyond one firm.

    Why it made the cut: Covered by 2 outlets

  4. I Asked 100 Companies for My Data. I Got Deletion Notices Instead

    A WIRED reporter filed over 100 data access requests under California's Consumer Privacy Act and found that many companies mishandled them, with Crunchbase deleting the reporter's account despite explicit instructions not to, and BeenVerified repeatedly misclassifying the access request as a deletion request. Cash App listed a phone number in its privacy policy for data access requests but customer service representatives were unable to process calls through that method, according to the reporter's experience. Privacy advocates and researchers told WIRED that these failures reveal companies are not investing adequate resources in CCPA compliance and suggest that data minimization—limiting what companies can collect in the first place—would be a more effective consumer protection approach than relying on access requests.

    Why it matters One reporter's data-access requests exposing how corporations dodge privacy law with deletion notices instead of transparency reveals a systemic problem affecting nearly every consumer.

    Why it made the cut: Covered by 2 outlets

  5. Cities terminate Flock contracts at record pace in August

    Local governments are rapidly ending contracts with Flock Safety, the company behind an AI-powered automated license plate reader camera network, with 214 cities and counties dropping the service since 2021 and 90 jurisdictions canceling in August alone. Concerns driving the cancellations include surveillance overreach, data sharing among agencies, system costs, and reports of police misuse, including cases where officers used Flock to search for an abortion patient and to identify gun show attendees. While Flock claims new partnerships are outpacing cancellations by roughly 10 to 1 and the company serves over 5,000 communities, the company has made policy concessions including reducing data retention from 30 days to seven days and prohibiting use for harassment or stalking. The backlash has expanded beyond privacy advocates to include political figures like Senator Josh Hawley and Governor Ron DeSantis, who are investigating the company's data practices and the potential for AI to transform license plate readers into mass surveillance tools.

    Why it matters The accelerating municipal revolt against Flock's surveillance camera network marks a real inflection point in the public backlash to AI-powered policing.

    Why it made the cut: Covered by 2 outlets

  6. Creepy Crawlies

    Git.kernel.org is experiencing severe strain from AI training scrapers that render commits as HTML instead of using efficient cloning methods, consuming 14-16 of the site's 90 CPU cores (roughly 20% of total capacity) at any given time across five geographically distributed nodes. The scrapers, which now originate from millions of residential and mobile IP addresses to evade blocking, represent approximately 98% of the site's traffic, with legitimate developer requests comprising only about 2%. The site implemented Anubis proof-of-work challenges to deter bots, but scrapers have adapted by solving increasingly difficult mathematical puzzles, with 33% now successfully bypassing the current difficulty level 5 challenge. Git.kernel.org maintainers are responding by disabling features and gating anonymous access to reduce crawlable URLs and expensive operations, while noting that no simple solution exists as long as companies continue developing AI models requiring training data.

    Why it matters Hard data on how AI crawlers are silently overloading web infrastructure quantifies a cost the entire internet is now quietly absorbing.

    Why it made the cut: 1299 points on Hacker News

  7. Hugging Face offers $399 robot duck to help you quack the AI code

    Pollen Robotics, a Hugging Face subsidiary based in Bordeaux, France, announced the Microduck, a 25-centimeter-tall robot duck priced at $399 that runs on open-source software and is designed to teach users about AI, machine learning, and robotics through reinforcement learning. The robot ships with 1 GB of RAM and 32 GB of storage, features an articulated beak, front-facing camera, and LiDAR sensor, and can perform tasks like picking up objects and roller skating with optional accessories. Microduck is available for preorder with shipments planned before Christmas 2026, and Pollen is encouraging users to share trained skills once the system launches, though the hardware itself will not be open-sourced. The announcement comes amid unconfirmed reports that Nvidia has agreed to acquire Hugging Face for approximately $13 billion, though neither company has publicly commented on the deal.

    Why it made the cut: Covered by 2 outlets

Get it every Monday

One edition a week, seven stories, nothing else. Subscribe with RSS — no email address, no tracking.