claude code / codex / cursor / gemini / grok

what shipped.

the latest updates to your ai tools, straight from their official changelogs.

sourcesclaude codecodexdegradedcursorgemini clidegradedno successful check yetgrok api
all

2026-06-25

  • +Added autoMode.classifyAllShell setting to route all Bash/PowerShell commands through the auto-mode classifier instead of only arbitrary-code-execution patterns
  • +Added auto-mode denial reasons to the transcript, the denial toast, and `/permissions` recent denials
  • +Added claude_code.assistant_response OpenTelemetry log event containing the model's response text. Redacted unless `OTEL_LOG_ASSISTANT_RESPONSES=1`; when that var is unset it follows `OTEL_LOG_USER_PROMPTS`, so deployments that already log prompt content will start receiving response content on upgrade — set `OTEL_LOG_ASSISTANT_RESPONSES=0` to keep prompts-only.
+ 12 more− less
full release →
  • +Added live file path autocomplete to bash mode (`!`)
  • +Added a startup notice when MCP servers need authentication, pointing at `/mcp`
  • +Added automatic memory-pressure reaping for idle background shell commands (disable with `CLAUDE_CODE_DISABLE_BG_SHELL_PRESSURE_REAP=1`)
  • ↑Improved background agents: the launch result no longer instructs Claude to "end your response" — it keeps working on other tasks while the agent runs
  • ↑Improved MCP headersHelper auth: the helper now re-runs and reconnects automatically when a tool call returns 401/403
  • ↑Improved plugin auto-rename: marketplace `renames` maps are now followed automatically, updating your settings to the new name
  • ↑Improved /add-dir message when the directory is already a working directory
  • ✓Fixed /model and other client-data-gated UI showing stale/empty state immediately after `/login`
  • ✓Fixed backgrounding (←←) spuriously cancelling with "N background tasks would be abandoned" when all running tasks carry over to the new session
  • ✓Fixed pinned background agents being re-prompted to "Continue from where you left off" after every auto-update
  • ✓Fixed backgrounding the main turn spawning a phantom "general-purpose (resumed)" subagent that re-ran the main conversation
  • ✓Fixed agent panel hiding sibling agents when viewing a subagent

2026-06-24

  • +Added /rewind support for resuming a conversation from before `/clear` was run
  • ↑Improved sandbox network permission dialog: hosts you allow with "Yes" are now remembered for the rest of the session instead of re-prompting on every connection
  • ↑Improved MCP server reliability: capability discovery (`tools/list`, `prompts/list`, `resources/list`) now retries transient network errors with short backoff
+ 17 more− less
full release →
  • ↑Improved MCP OAuth: discovery and token requests now retry once after transient network errors, and headless environments skip the browser popup and go straight to the paste-the-URL prompt
  • ↑Improved MCP error messages: HTTP 404 errors now show the URL and point to your MCP config
  • ↑Improved vim mode prompt-history search (NORMAL `/`) to hint how to reach slash commands
  • ↑Reduced CPU usage during streaming responses by ~37% by coalescing text updates to 100ms
  • ↑Reduced long-session memory growth from terminal output cache
  • ✓Fixed scroll position jumping to the bottom while reading earlier output during a streaming response
  • ✓Fixed background agents resurrecting after being stopped — stopping an agent from the tasks panel is now permanent
  • ✓Fixed /voice showing a generic "not available" message when disabled by an organization's policy — it now explains the restriction
  • ✓Fixed /login URL opening truncated in Windows Terminal when it wraps across lines
  • ✓Fixed Cmd+click on links in fullscreen mode for Ghostty over ssh/tmux
  • ✓Fixed claude agents sending builtin slash commands like `/usage` to background sessions as prompt text instead of showing a hint
  • ✓Fixed claude agents job rows showing full filesystem paths for pasted images instead of the `[Image #N]` placeholder
  • ✓Fixed hooks with comma-separated matchers (e.g. `"Bash,PowerShell"`) silently never firing
4 more fixed on the release page →

2026-06-23

  • +Added sandbox.credentials setting to block sandboxed commands from reading credential files and secret environment variables
  • +Added org-configured model restrictions to the model picker, `--model`, `/model`, and `ANTHROPIC_MODEL`, with a "restricted by your organization's settings" message when a restricted model is selected
  • +Added mouse click support to select menus (permission prompts, `/model`, `/config`, etc.) in fullscreen mode
+ 18 more− less
full release →
  • ↑Improved /install-github-app: GitHub Actions workflow setup is now optional — you can install just the GitHub App and skip the workflow/secret steps
  • ↑Improved /btw with ←/→ arrow navigation to step through earlier answers
  • ↑Improved /plugin to surface plugins you haven't used recently so you can clean them up
  • ✓Fixed --resume failing with "No conversation found" when the original `-p` run produced no model turns
  • ✓Fixed --json-schema and workflow `agent({schema})` structured output: the model can no longer re-call `StructuredOutput` indefinitely after a successful call, and follow-up turns now reliably return structured output
  • ✓Fixed remote MCP tool calls that hang with no response for 5 minutes — they now abort with an error instead of blocking indefinitely (override with `CLAUDE_CODE_MCP_TOOL_IDLE_TIMEOUT`)
  • ✓Fixed Claude Code Remote sessions taking ~2.7s longer to start after the agent proxy CA system-trust install was added
  • ✓Fixed pasted Korean/CJK text turning into mojibake in terminals that deliver paste as per-byte extended-key events
  • ✓Fixed /update over Remote Control hanging when a startup trust dialog would have shown
  • ✓Fixed background jobs in the agents view getting stuck in "working" indefinitely when the agent ended a turn without producing structured output
  • ✓Fixed channel connections dropping after navigating to the agents view and back, and after `/bg`, `/tui`, or `/update`
7 more fixed on the release page →

2026-06-22

  • +Added claude mcp login <name> and `claude mcp logout <name>` to authenticate MCP servers from the CLI without opening the interactive `/mcp` menu, with `--no-browser` stdin redirect support for completing over SSH
  • +Added status filtering (press `f`) to the `/workflows` agent detail view
  • +Added a "Skills" section to the `/plugin` Installed tab
+ 30 more− less
full release →
  • +Added teammateMode: "iterm2" setting with a warning when auto mode cannot find the `it2` CLI
  • +Added "Claude Platform on AWS - refresh credentials" option to `/login` when `awsAuthRefresh` is configured
  • ~! bash commands now trigger Claude to respond to the output automatically; set `"respondToBashCommands": false` in settings.json to keep the previous context-only behavior
  • ~Changed CLAUDE_CODE_MAX_RETRIES to cap at 15; for unattended sessions, use `CLAUDE_CODE_RETRY_WATCHDOG` instead
  • ~Changed background subagents to surface permission prompts in the main session instead of auto-denying; the dialog shows which agent is asking, and Esc denies just that tool
  • ~Changed /review <pr> to use the same review engine as `/code-review medium`
  • ↑Improved claude mcp get and `claude mcp remove` to suggest the closest configured server name on a typo and truncate long server lists
  • ↑Improved memory: the agent is now reminded to compact its `MEMORY.md` index when nearing the size limit
  • ↑Improved skill frontmatter: `display-name`, `default-enabled`, `fallback`, and `metadata.*` keys now accept kebab-case, snake_case, and camelCase
  • ↑Improved malformed SKILL.md YAML frontmatter handling: loads the skill body with empty metadata instead of failing silently
  • ✓Fixed streaming requests failing with "Content block not found" or JSON parse errors after the machine wakes from sleep
  • ✓Fixed subagent transcript scroll position bleeding into the main transcript on exit
  • ✓Fixed background task previews flashing raw tool names before the agent's plan loaded
  • ✓Fixed Chrome tab-group isolation not applying when the in-product permissions gate is off for concurrent CLI sessions
  • ✓Fixed background session recaps being duplicated; the agent's own end-of-turn summary now shows as the recap line
  • ✓Fixed opening a background session from `claude agents` leaving the previous screen painted behind it
  • ✓Fixed Agent(type) deny rules and `Agent(x,y)` allowed-types restrictions not being enforced for named subagent spawns
  • ✓Fixed Esc and Ctrl+C not responding while background agents are still running after the main turn ends
12 more fixed on the release page →

+Plugins, skills, and MCPs let you customize Cursor for your workflows.

+ read the post− less

Plugins, skills, and MCPs let you customize Cursor for your workflows. The new Customize page brings them into one place.

You can now add and manage plugins, skills, MCPs, subagents, rules, commands, and hooks at the user, team, or workspace level, and even bring your own custom MCPs.

Marketplace leaderboard

Cursor now shows you a leaderboard of the most popular plugins, skills, and MCPs across your team.

Add any to your setup with one click from the new Customize page and extend Cursor for your workflow.

Plugin canvases

Plugins now support prebuilt canvases: shared setup templates your team can open and reuse.

Use the Hex Canvas to build data visualizations.

continue reading on the release page →

2026-06-20

v2.1.185claude code
  • ~The stream-stall hint now reads "Waiting for API response · will retry in …" instead of "No response from API · Retrying in …", and triggers after 20s of silence instead of 10s

2026-06-19

  • +Added a warning when the requested model is deprecated or automatically updated to a newer model, shown on stderr in print mode (`-p`) and now also covering models set in agent frontmatter
  • +Added attribution.sessionUrl setting to omit the claude.ai session link from commits and PRs in web and Remote Control sessions
  • +Added /config --help to list all available shorthand keys for `/config key=value`
+ 14 more− less
full release →
  • ~Changed /config toggle behavior: Enter and Space both change the selected setting, and Esc now saves and closes instead of reverting
  • −Removed the startup "setup issues" line under the logo — run `/doctor` to see configuration issues or use `--debug`
  • ↑Improved auto mode safety: destructive git commands (`git reset --hard`, `git checkout -- .`, `git clean -fd`, `git stash drop`) are now blocked when you didn't ask to discard local work, `git commit --amend` is blocked when the commit wasn't made by the agent this session, and `terraform destroy`/`pulumi destroy`/`cdk destroy` are blocked unless you asked for the specific stack
  • ✓Fixed thinking.disabled.display: Extra inputs are not permitted 400 errors on subagent spawns and session-title generation for affected configurations
  • ✓Fixed WebSearch returning empty results in subagents
  • ✓Fixed the terminal cursor being stranded above the prompt after navigating history in vim mode with the native cursor enabled
  • ✓Fixed fullscreen TUI corruption (statusline mid-screen, duplicated spinner rows, merged text) in Windows Terminal under heavy nested-subagent load
  • ✓Fixed turns silently completing with no visible output when the model returned only a thinking block; Claude now re-prompts once
  • ✓Fixed user-level skills appearing multiple times in slash-command autocomplete when multiple plugins are enabled
  • ✓Fixed MCP servers requiring authentication exposing auth-stub tools to the model in headless/SDK mode
  • ✓Fixed tmux teammate panes failing to launch when the shell has slow rc-file initialization, and keystrokes typed during agent spawn leaking into the new tmux pane instead of the leader prompt
3 more fixed on the release page →

2026-06-18

  • +Issue comment: when a comment is made on a non-PR issue
  • +PR review comment: when an inline comment is left on a pull request diff
  • +PR review submitted: when a PR review is submitted
+ 5 more− less
full release →
  • +Review thread updated: when a review thread on a pull request is marked resolved or unresolved
  • +Workflow run completed: when a GitHub Actions workflow run finishes on a pull request or branch
  • ↑Automations can now be saved in an incomplete state, so you can navigate away to set up an MCP auth without losing your progress
  • ↑Automations can now open PRs by default; so you no longer have to specify that tool in the UI
  • ↑You can now delete memory files in the UI, or prompt your automation to delete outdated memories when it runs

2026-06-17

  • +Added /config key=value syntax to set any setting from the prompt (e.g. `/config thinking=false`) — works in interactive, `-p`, and Remote Control
  • +Added sandbox.allowAppleEvents opt-in setting that lets sandboxed commands send Apple Events on macOS
  • +Added CLAUDE_CLIENT_PRESENCE_FILE environment variable: point it at a marker file to suppress mobile push notifications while you're at the machine
+ 36 more− less
full release →
  • ~Upgraded the bundled Bun runtime to 1.4
  • ~Changed fullscreen mode URL opening to require Cmd+click (macOS) / Ctrl+click, matching native terminal behavior
  • ~Changed the Improved N memories line to no longer list individual files outside verbose mode
  • ↑Improved streaming of long paragraphs: text now appears line-by-line instead of waiting for the first line break
  • ↑Improved auto-retry: API connection drops mid-thinking now automatically retry instead of showing "Connection closed while thinking"
  • ↑Improved the subagent panel: idle subagents auto-hide after 30s, the list caps at 5 rows with scroll hints, and keyboard hints now show in the footer
  • ↑Improved the MCP OAuth browser page to match Claude Code's visual style and auto-close on success
  • ✓Fixed prompt caching not reading on custom `ANTHROPIC_BASE_URL` and on Foundry due to a per-request attestation token changing every turn
  • ✓Fixed Write/Edit producing 0-byte or truncated files on network drives and cloud-synced folders
  • ✓Fixed open, `osascript`, and browser-based auth flows failing with error -600 on macOS by adding the Apple Events entitlement
  • ✓Fixed a startup regression (~120ms per launch in fresh environments, introduced in 2.1.169): the first prompt no longer waits for the managed-settings fetch when no MCP servers are configured
  • ✓Fixed startup blocking with a blank terminal for up to 15 seconds when the account settings fetch is slow on a degraded network
  • ✓Fixed startup crash (TypeError: Cannot read properties of null) when `.claude.json` contains corrupted null project entries
  • ✓Fixed macOS TUI freezing at session start (Ctrl+C unresponsive) when Spotlight is busy reindexing
  • ✓Fixed long-running idle sessions losing their history when another Claude Code process ran the 30-day transcript cleanup
21 more fixed on the release page →

+This release introduces updates to cloud agents in the Agents Window of the Cursor desktop app.

+ read the post− less

This release introduces updates to cloud agents in the Agents Window of the Cursor desktop app.

Cloud environment setup

Cursor can now help you set up your dev environment in the cloud in less than 10 minutes. You can watch the agent's progress in a shared terminal session as it handles setup tasks like installing dependencies.

Your environment is captured in a reusable snapshot, so future cloud agents start up faster with the ability to test changes by running your software. It can iterate over long time horizons until outputs are verified. This benefits your entire team when committed to .cursor/environment.json.

Cloud subagents with /in-cloud

Use /in-cloud to spin up a cloud subagent in its own VM to work on the next task you submit. It runs on its own VM and branch, so your local workspace stays clean and responsive.

This is especially useful for isolating long-running or parallel work like fixing CI, investigating an issue, or exploring a codebase while you keep working locally.

You can also ask a cloud subagent to babysit a PR by clicking on the quick-action pill or using /babysit. The cloud agent will iterate remotely to prepare your PR for merge without tying up the local session.

continue reading on the release page →

2026-06-16

  • ↑Improved plugin loading performance in remote sessions
  • ✓Fixed mid-stream connection drops: partial responses are now preserved instead of showing a raw error, and the spinner no longer gets stuck at "running tool"
  • ✓Fixed mouse-wheel scrolling in WSL2 under Windows Terminal and VS Code (regression in 2.1.172)
+ 6 more− less
  • ✓Fixed a sandbox denyRead/`allowRead` glob over a large directory tree making the Bash tool description enormous and the session unusable on Linux
  • ✓Fixed the feedback survey capturing a single-digit reply as a session rating immediately after a turn completes
  • ✓Fixed the welcome screen stacking multiple promotional banners — at most one promo now shows per session
  • ✓Fixed Ctrl+O not showing the subagent's transcript when viewing a subagent
  • ✓Fixed clicking the prompt input not returning focus from the subagent/footer panel
  • ✓Fixed remote session background tasks appearing stuck as "still running" between turns

2026-06-15

  • +Added Tool(param:value) syntax for permission rules to match a tool's input parameters (with `*` wildcard), e.g. `Agent(model:opus)` to block Opus subagents
  • ~Agent teams: removed the `TeamCreate` and `TeamDelete` tools. With `CLAUDE_CODE_EXPERIMENTAL_AGENT_TEAMS=1` set, every session now has one implicit team — spawn teammates directly with the Agent tool's `name` parameter, no setup step needed. The `team_name` parameter on the Agent tool is still accepted but ignored.
  • ~Skills in nested .claude/skills directories now load when working on files there; on a name clash, the nested skill appears as `<dir>:<name>` so both stay available
+ 21 more− less
full release →
  • ~Nested .claude/ directories: the agent, workflow, and output-style closest to the working directory now wins when names collide; project-scope workflow saves now target the closest existing `.claude/workflows/`
  • ~Changed the workflow prompt keyword to use a purple shimmer highlight and trigger only on explicit phrases like "run a workflow" or "workflow:", not on any mention of the word
  • ~/bug now requires a description before submitting, and no longer uses model-refusal text as the GitHub issue title
  • ↑Improved auto mode: subagent spawns are now evaluated by the classifier before launch, closing a gap where a subagent could request a blocked action without review
  • ↑Improved /doctor with consistent flat tree layout across all sections, clearer section status icons, and highlighted command names
  • ↑Improved the skill listing truncation warning to show how many skill descriptions are affected
  • ↑Improved Remote Control error messages: connection failures now show a persistent red "/rc failed" indicator in the footer, and the "not yet enabled" error now explains whether it's a gate, a check failure, stale entitlement, or org policy
  • ✓Fixed a crash (out-of-memory) when the CLI inherits a stale websocket/OAuth file-descriptor environment variable from a parent process
  • ✓Fixed Claude in Chrome silently failing to connect when the OAuth token belongs to a different account than the Claude Code login
  • ✓Fixed nested .claude/skills skills with directory-qualified names being blocked by permission prompts in non-interactive runs
  • ✓Fixed several subagent issues: viewing a subagent's transcript now shows tool results and live progress, messages sent while it finishes its turn are no longer dropped, and backgrounding a running subagent (ctrl+b) no longer restarts it from scratch
  • ✓Fixed claude agents workers failing with `401 Invalid bearer token` when the daemon was started from a shell with a custom API gateway via `ANTHROPIC_BASE_URL` and `ANTHROPIC_AUTH_TOKEN`
  • ✓Fixed compaction not honoring `--fallback-model`: compaction now falls back to the configured fallback model chain on overload or model-availability errors
  • ✓Fixed model requests continuing to fail with auth errors after credentials were refreshed outside the session, due to a stale cached request configuration
  • ✓Fixed background sessions created with `/bg` or `←←` after a turn finished showing "Working" forever in the agents list
6 more fixed on the release page →

+You can now request higher scheduling priority per request by setting service_tier: "priority" on text inference endpoints (Chat Completions and Responses).

+ read the post− less

You can now request higher scheduling priority per request by setting service_tier: "priority" on text inference endpoints (Chat Completions and Responses). The response's service_tier field reports the tier actually applied, and priority rates are billed only when priority is used. For more details, see the Priority Processing docs.

continue reading on the release page →

2026-06-12

  • +Added footerLinksRegexes setting for regex-matched link badges in the footer row, configurable via user or managed settings
  • ~Session titles are now generated in the language of your conversation (set the `language` setting to pin a specific language)
  • ~Background sessions now show clearer guidance when a window left open across an auto-update can't submit a reply, and `claude daemon status` explains version-skew behavior
+ 19 more− less
full release →
  • ↑Improved Bedrock credential caching: credentials from `awsCredentialExport` are now cached until their `Expiration` instead of a fixed 1 hour
  • ✓Fixed availableModels enforcement: alias model picks can no longer be redirected to a blocked model via `ANTHROPIC_DEFAULT_*_MODEL` environment variables, and `/fast` now refuses to toggle when it would switch to a model outside the allowlist
  • ✓Fixed auto mode failing on Fable 5 for organizations without Opus 4.8 enabled — the classifier now falls back to the best available Opus model
  • ✓Fixed hook if conditions for Read/Edit/Write tool paths: documented patterns like `Edit(src/**)`, `Read(~/.ssh/**)`, and `Read(.env)` now match correctly
  • ✓Fixed Linux sandbox failing to start when `.claude/settings.json` is a symlink with an absolute target
  • ✓Fixed /copy and mouse-selection copy not reaching the system clipboard inside tmux over SSH, and tmux paste buffer not loading on versions older than 3.2
  • ✓Fixed Remote Control connecting from web/mobile silently switching the session's model
  • ✓Fixed Remote Control disconnect notifications showing a bare numeric code instead of a human-readable reason, and connection failures adding a duplicate line to the conversation transcript
  • ✓Fixed Remote Control sessions not disconnecting when you sign in to a different account
10 more fixed on the release page →
v2.1.175claude code
  • +Added enforceAvailableModels managed setting — when enabled, the `availableModels` allowlist also constrains the Default model (a Default that would resolve to a disallowed model now falls back to the first allowed model), and user or project settings can no longer widen a managed `availableModels` list

2026-06-11

  • +Added wheelScrollAccelerationEnabled setting to disable mouse-wheel scroll acceleration in fullscreen mode
  • +VSCodeAdded usage attribution to the Account & usage dialog (`/usage`) showing cache misses, long context, subagents, and per-skill/agent/plugin/MCP breakdowns over the last 24h or 7d
  • ✓Fixed the /model picker hiding the model family that Default resolves to — Opus now appears as its own row on Max/Team Premium/Enterprise plans, Sonnet on Pro/Team plans, and Opus on pay-as-you-go API accounts
+ 10 more− less
  • ✓Fixed /model picker showing a hardcoded Sonnet version label when `ANTHROPIC_DEFAULT_SONNET_MODEL` pins a different Sonnet
  • ✓Fixed the "Fable 5 is now consuming usage credits" banner incorrectly showing for enterprise accounts with usage-based billing
  • ✓Fixed Bedrock GovCloud regions (`us-gov-*`) deriving the wrong inference profile prefix (`global` instead of `us-gov`), causing 400 errors on derived model IDs
  • ✓Fixed background sessions inheriting another session's `ANTHROPIC_*` provider env (gateway URL, custom headers, `/model` aliases) from the shell that started the background daemon
  • ✓Fixed a 1-2 second pause when exiting Claude Code shortly after a shell command was interrupted or killed on macOS and Linux
  • ✓Fixed git commit co-author attribution showing an incorrect model name for some models
  • ✓Fixed the /advisor dialog pre-selecting a saved advisor model that is blocked by the `availableModels` allowlist
  • ✓Fixed skill hot-reload re-sending the entire skill listing when a single skill changed; only changed skills are now re-announced
2 more fixed on the release page →
v2.1.173claude code
  • ✓Fixed Fable 5 model names with a `[1m]` suffix not being normalized — Fable 5 includes 1M context by default, so the suffix is now stripped automatically
  • ✓Fixed a spurious "sandbox dependencies missing" startup warning on Windows when sandbox was enabled in settings

2026-06-10

  • +Added a search bar when browsing a marketplace's plugins in `/plugin`
  • +Added model attribute to the `claude_code.lines_of_code.count` OTEL metric
  • ~Sub-agents can now spawn their own sub-agents (up to 5 levels deep)
+ 27 more− less
full release →
  • ~Amazon Bedrock now reads the AWS region from `~/.aws` config files when `AWS_REGION` isn't set, matching AWS SDK precedence; `/status` shows where the region came from
  • ~Disable mouse tracking on Windows consoles that don't fully support it
  • ~/code-review now keeps the `ultra` option visible when you're not signed in to claude.ai, with an explanation that the cloud review requires a claude.ai account
  • ~Shortened the Remote Control footer indicator to "/rc active" and hid it on narrow terminals
  • ~Stopped promoting /loop in remote sessions, where pending loops don't keep the container alive
  • ↑Improved performance in long conversations by removing redundant message normalization and avoiding full message-history transforms when streaming tool-use state is unchanged
  • ↑Reduced idle CPU usage: `/goal` status chip no longer re-renders the terminal at 5 Hz while idle, and fewer UI re-renders while subagents run in parallel
  • ↑Improved Claude in Chrome tool loading: browser tools now load in a single batched call instead of one per tool
  • ↑Improved the non-interactive Usage Policy refusal message to suggest starting a new session or changing your model
  • ✓Fixed sessions using 1M context without usage credits getting permanently stuck — the session now automatically compacts back under the standard context limit
  • ✓Fixed a repeating "an image in the conversation could not be processed and was removed" error when the conversation contained multiple images
  • ✓Fixed the agents view keeping a session under Working with a busy spinner for up to 30 seconds after the worker replied
  • ✓Fixed background agents potentially reading another directory's project settings (`.mcp.json` approvals, trust) when dispatched onto a pre-warmed worker
  • ✓Fixed background-session attach failing with EAUTH for sessions started on an older version after the daemon auto-updated
  • ✓Fixed a background sub-agent staying stuck as "active" in the agent panel after a nested agent it spawned was stopped
  • ✓Fixed /model suggestions in the `claude agents` dispatch input rendering with a misleading slash prefix and showing models disabled for your org
  • ✓Fixed availableModels restrictions not being applied to subagent model overrides, the agent dispatch model picker, and the advisor model
10 more fixed on the release page →

~The average review time for Bugbot is now ~90 seconds, down from ~5 minutes.

+ read the post− less

The average review time for Bugbot is now ~90 seconds, down from ~5 minutes. Bugbot also finds 10% more bugs per review on average — 0.62, up from 0.56 — and costs ~22% less per run.

These performance gains are made possible by progress we've made training Composer 2.5, which now powers Bugbot. Bugbot respects model block lists, and speed and performance can vary depending on your configuration.

Run Bugbot before you push

You can now run Bugbot and Security Review with /review before pushing code. /review prompts you to choose which agents to run, or use /review-bugbot and /review-security directly.

/review also syncs with Bugbot on GitHub and GitLab. If you run /review and then open a PR with the same diff, Bugbot recognizes it, skips the review, and leaves a comment noting it has already reviewed that diff.

Available in Cursor 3.7+ and on cursor.com/agents, with support in CLI coming soon.

You can now configure Bugbot to only review what's new since the last review, keeping feedback focused on your latest updates.

continue reading on the release page →