#01 - Aug 05, 2026
State of AI: Crushing Case Study
agent-swarm.dev first Case Study, Vercel's Deepsec benchmark, YC's QM release
Read plain text
We released agent-fs + DuckDB https://www.youtube.com/watch?v=xRgFTYPiPJA, & agent-swarm.dev steering https://www.youtube.com/watch?v=uqE7qxFNGjs. Here's what else happened. ---------------------------------------- The Capchase Blueprint tl;dr: First live case study https://www.agent-swarm.dev/case-studies/capchase. 1 workshop, 3 months, 10k+ tasks a week, 26 agents, 500 PRs. We've been running swarms, giving workshops, and writing about AI-Native for months. This is the first time we share detailed company numbers. * Brownfield sensitive software. Capchase is 6yo fintech, multi-product, that transacts in the millions per day. They needed a solution that takes security, quality and reliability at core. They chose the swarm. * 30% non-tech users. Operations, Support, Sales, Risk, etc. now direct their daily requests to the swarm. The tech team got time back, and the rest of the company is now instantly unblocked . Capchase SWEs are focused on building the machine that builds the machine. * 80+ scheduled workflows for explosive productivity. Tech has accelerated the swarm handles 2 full on-call triages a day, saved ~1020hrs per CI/CD cycle and each issue ticket now reaches an engineer with a hypothesis, evidence and a classification. Read the article for Ops, Product and CX. > "When a provider goes down, we just flip a switch." - Daniel, Capchase TL. → Challenge. Read the case study https://www.agent-swarm.dev/case-studies/capchase. Do you still think "AI adoption" is one person with a Max sub? Is your upskilling strategy to teach people? ---------------------------------------- YC’s Popularity Contest tl;dr: YC open-sourced qm https://github.com/yc-software/qm, the meta-harness it runs itself on. I thought they were better. It’s MIT-licensed, and they say it runs accounting, legal, events and engineering on https://qm.ycombinator.com/. Our take: * Multiplayer, not multi-agent. One shared agent, a scoped workspace and one single harness behind the scenes. No agent roster, no delegation. Ramp style https://builders.ramp.com/post/why-we-built-our-background-agent. * Known limitations https://github.com/yc-software/qm/blob/main/SECURITY.md. The best feature is their honesty on the limitations. With the current AI security threats, it seems like a smarter move than relying on hiding information. Make it evident, and you can build accordingly. * No code, only ADRs. Good idea, waiting to see what happens. ~63 open PRs, 0 merged, many with ADRs. Conceptually nice, but they quietly loosened it yesterday to allow for issue reports. → Wait. If they start investing heavily on this, it could be an interesting harness. We are looking forward to the security updates. ---------------------------------------- The Securily Hacked Paradox tl;dr: Every model is escaping their sandbox, so Vercel gave us a benchmark. You probably have heard the Hugging Face https://huggingface.co/blog/security-incident-july-2026 & OpenAI https://openai.com/index/hugging-face-model-evaluation-security-incident/ drama Or how Anthropic's FOMO https://www.anthropic.com/news/investigating-incidents-cybersecurity-evals. Vercel’s DeepSec Bench https://vercel.com/ai-gateway/leaderboards/deepsecbench shows us the way: * Cheaper than you think https://vercel.com/blog/deepsecbench-evaluating-model-performance-in-finding-cybersecurity-vulnerabilities. Vercel shares how Kimi, Qwen and DeepSeek now can produce good results for a fraction of the price. Still Anthropic and OpenAI dominate, but if you factor pricing, they actually don’t. * It takes hours. Even for the best models, results can take multiple hours. That means, these scans will be sporadic at best. * Nobody is coming to help you. 2/3 organizations found out they were hacked when Anthropic informed them. Hugging Face’s first try also failed to detect the issue. → Adopt. We’ve been using superagent.sh http://superagent.sh, by Capchase’s https://www.agent-swarm.dev/case-studies/capchase recommendation, deepsec is a good alternative too. Whatever you do, you need to do something. ---------------------------------------- 3 days, your codebase, your infra, we get 1 project working and a roadmap. Reply for details https://calendar.app.google/iGqU8g1ZPquyJcGA6. Or keep reading newsletters https://www.desplega.sh/newsletters. Your call. Best, ---------------------------------------- Sent with ❤ by desplega.sh http://desplega.sh unsubscribe .