Trust Agent: AI — Local Agent for macOS
What's New:
The Trust Agent: AI Local Agent is now available for macOS. This extends AI usage visibility beyond VS Code to the tools developers use every day — including Claude Code, Codex CLI and their desktop variants — giving security teams a cross-tool view of AI activity across their developer fleet.
Key Benefits:
- Visibility into AI tool usage is no longer limited to VS Code — the local agent captures signals from CLI tools and desktop AI assistants on macOS
- The same privacy model applies: no source code, prompts, or model responses leave the device; only metadata and signals are collected
- AI usage signals feed into Trust Agent governance and Adaptive Learning, keeping training aligned with real developer behaviour
How to Access:
The macOS Local Agent is currently available for all partners. Contact your customer success manager to join the rollout.
Adaptive Learning with Vulnerabilities
What's New:
Adaptive Learning with Vulnerabilities is now live, turning vulnerability scan data into targeted training assigned automatically to the developers responsible for the affected code. Admins set up a policy once — choosing org-level or repo-level assignment and defining repo scope — and the platform handles matching vulnerabilities to repos and repos to contributors in the background, refreshing every 90 days. A new Adaptive Learning report gives visibility into rollout and completion.
Key Benefits:
- Training is driven by the actual vulnerabilities in a developer's own repos, not generic content disconnected from their day-to-day work
- Virtually zero ongoing admin effort after the initial policy is configured
- Choice of org-level (Top 3 vulns assigned to all platform users) or repo-level (Top 3 vulns per repo, assigned to that repo's contributors)
- Automatic 90-day refresh keeps assignments current without manual re-configuration
How to Access:
Reach out to your CSM or support@securecodewarrior.com. Learn more in this article: Adaptive Learning with Trust Agent: Vulnerabilities
Trust Agent Navigation — Now a Top-Level Product
What's New:
Trust Agent is now a top-level item in the platform navigation, giving it a dedicated home in the main menu rather than sitting inside the Reporting section. Trust Agent configuration has also been consolidated into a single Admin settings page, replacing the previously scattered setup across multiple screens.
Key Benefits:
- Trust Agent is easier to find — no more navigating through Reporting to reach risk insights
- All Trust Agent configuration (for all signal types) is now managed from one consolidated Admin settings page
- Existing learning report workflows remain unchanged; the update is purely additive
How to Access:
Available now for all customers. Trust Agent appears in the main navigation. Configuration is accessible under Admin settings.
Accurate Time Estimates for Videos
What's New:
Videos now display an estimated viewing time calculated from their actual length, replacing the generic two-minute estimate that previously applied to every video regardless of duration. Quest insight panels and learner views reflect the updated estimates.
Key Benefits:
- Learners see a realistic time commitment before starting a video, helping them plan their learning sessions
- Admins can build training programs with accurate total time estimates
- Quest views stay consistent with the updated per-video estimates
How to Access:
Time estimates update automatically on all videos and in Quest views. No setup is required.
Reorder Quests Within a Program
What's New:
Admins and team managers can now drag and drop Quests into a custom order when creating or editing a program. Previously, when multiple Quests shared the same start date, end date, and mandatory status, their sequence was determined automatically with no way to control it.
Key Benefits:
- Admins control the sequence learners see when multiple Quests have the same schedule and priority
- Reordering works across draft, scheduled, and currently active programs
- Drag-and-drop controls appear automatically on eligible Quests — no extra configuration needed
How to Access:
Available now for all customers using Quests. Open any program in edit mode to see the reorder controls on eligible Quests.
Accurate Time Estimates for Guidelines
What's New:
Guidelines now display an estimated reading time calculated from their actual word count, replacing the fixed ten-minute estimate that previously applied to every guideline. Quest insight panels and learner views reflect the updated estimates.
Key Benefits:
- Learners see a realistic reading time before starting a guideline
- Admins can plan training programs using reliable time estimates
- Quest views stay consistent with the updated estimates
How to Access:
Time estimates appear automatically on Guidelines and in Quest views. No setup is required.
New Language/Framework: C# (.NET) Desktop
What's New:
C# (.NET) Desktop is a C# curriculum built for specifically for non-web contexts, designed to teach security to learners building Windows desktop applications, background services, and software for direct machine and instrument control, high performance diagnostics, simulation tools, and manufacturing R&D tooling.
Available Topics:
- OS Command Injection
- Improper Authentication
- Insufficiently Protected Credentials
- Weak Algorithm Use
- Improper Permissions
- Disabled Security Features
- Unprotected Transport of Sensitive Information
- Using Components From Untrusted Source
- Using Known Vulnerable Components
- Insufficient Logging and Monitoring
How to Access:
This curriculum is available in Quests, Learn and Explore.
New Language/Framework: PL/I Mainframe
What's New:
Our PL/I curriculum is built specifically for Mainframe contexts, designed to teach security to learners building and maintaining Mainframes in PL/I.
Available Topics:
- Business Logic - Insufficient Validation
- Business Logic - Logical Error
- Information Exposure - Sensitive Data Exposure
- Information Exposure - Error Details
- Insufficient Logging and Monitoring - Insufficient Logging and Monitoring
- Injection Flaws - SQL Injection
- Memory Corruption - Buffer Overflow
How to Access:
This curriculum is available in Quests, Learn and Explore.
135 New AI Challenges Across 15 Languages
What's New:
135 new AI Challenges have been added to Quest topics across 15 languages, including:
- Bash: 1 new AI Challenge
- C# (.NET) MVC: 22 new AI Challenges
- C# (.NET) Web API: 2 new AI Challenges
- C Basic: 19 new AI Challenges
- C++ Basic: 11 new AI Challenges
- GO Basic: 4 new AI Challenges
- Java Android SDK: 17 AI Challenges
- JavaScript React: 1 new AI Challenge
- Kotlin Android SDK: 16 new AI Challenges
- JavaScript Node.js Express: 3 new AI Challenges
- Pseudocode Web: 17 new AI Challenges
- Python Basic: 1 new AI Challenge
- Swift iOS SDK: 17 new AI Challenges
- Typescript Basic : 1 new AI Challenge
- Typescript Node.js Express: 3 new AI Challenges
How to Access:
New challenges appear automatically in Quests, Learn, and Explore where applicable. Filter by language in Explore to browse the full catalogue.
Comments
0 comments
Please sign in to leave a comment.