MCP Weekly: Microsoft Locks Down Agentic AI, Google Upgrades Security at RSAC, Meta Acquires Dreamer
March 27, 2026

MCP Weekly: Microsoft Locks Down Agentic AI, Google Upgrades Security at RSAC, Meta Acquires Dreamer

Security moves to the center as platforms harden agent infrastructure and formalize governance

Table of Contents

This issue of MCP Weekly spans March 20th to March 27th, 2026 and covers enterprise security platform launches, new AI governance frameworks, autonomous coding tools, and real-time voice model releases.

TL;DR

Microsoft published an end-to-end security framework for agentic AI and shipped VS Code 1.113 with nested agents and MCP support for the command line. Google launched autonomous security agents at RSAC 2026, responding to a 22-second attacker window. OpenAI released a public behavioral framework defining how its models handle autonomous decisions. Anthropic released Claude Code Auto Mode, which offers developers a supervised way to run long coding tasks without continuous manual approvals. Meta acquired the Dreamer team, bringing plain-English software creation into its Superintelligence Labs. 

On the security side, Palo Alto Networks updated Prisma AIRS 3.0 and Cisco relaunched its platform specifically for the agentic workforce. Lucid Software and Domo both launched new MCP servers and agent-building tools for business teams. Finally, Google DeepMind released Gemini 3.1 Flash Live, a low-latency voice and vision model built for real-time agent conversations across 90 languages.

Major Updates of the Week

Microsoft: End-to-End Agentic Security and VS Code 1.113

Microsoft published its end-to-end agentic AI security framework this week, covering identity, data governance, threat monitoring, and access control for autonomous agents running inside enterprise environments. The framework is designed to give security teams a consistent way to manage agents across Microsoft tools and third-party platforms.

Alongside this, VS Code 1.113 shipped with nested subagent support, MCP server bridges to Copilot CLI and Claude agents, and a new Thinking Effort control that lets developers manually adjust how deeply a model reasons on any given task.This establishes a reference architecture for how enterprises are expected to secure and govern agents across environments.

Google at RSAC 2026: Autonomous Defense and the 22-Second Window

At RSAC 2026, Google Cloud announced the completed Wiz acquisition and the preview launch of autonomous security agents. The M-Trends 2026 report found that defenders now have only 22 seconds, necessitating automated responses. This compresses the response window beyond human reaction time, making automated defense systems a necessity rather than an optimization. New Triage and Investigation agents in Google Security Operations automatically gather evidence and deliver verdicts. A Gemini-powered dark web intelligence tool processes millions of signals daily, identifying intent-based threats with 98% accuracy. Google also introduced remote MCP server support for enterprises to build and govern their own security agents under unified controls.

OpenAI Publishes Its Model Spec

OpenAI unveiled its open-sourced Model Spec, a formal framework detailing how its models should behave, resolve instruction conflicts, and prioritize safety and helpfulness. The spec dictates that hard safety rules always override developer or user instructions. It also guides agentic behavior, preferring reversible actions and avoiding surprises in autonomous tasks. The spec includes a scenario-based evaluation suite to track compliance.

Anthropic Ships Claude Code Auto Mode

Anthropic released Auto Mode for Claude Code (research preview for Team plan users), enabling Claude to handle complex coding tasks, like multi-file writes and shell commands, without step-by-step approval. A real-time safety classifier monitors tool calls, blocking unsafe actions (e.g., mass file deletion) while allowing safe ones. If repeatedly blocked, the system finds an alternative or asks the user. Auto Mode is available on the Claude Code CLI, VS Code extension, and desktop app, and can be disabled by organization admins.

Other Updates

Vendor / Product Key Action / Feature Significance
Meta acquires Dreamer The full Dreamer team, including founders David Singleton, Hugo Barra, and Nicholas Jitkoff, joins Meta Superintelligence Labs. Meta licenses the Dreamer technology, which lets users build personal software agents using plain English. Signals Meta's push toward letting everyday users create their own bespoke AI tools without writing code.
Palo Alto Networks: Prisma AIRS 3.0 Updated Prisma AIRS with new controls for securing agentic AI workloads, covering runtime protection, model access governance, and threat detection for autonomous agents. Positions Palo Alto as a dedicated security layer for agent pipelines as enterprises move from pilots to production.
Cisco: Agentic Workforce Security Cisco relaunched its security platform with a focus on the agentic workforce, adding identity verification, behavioral monitoring, and access controls built specifically for AI agents operating inside business networks. Extends Cisco's existing enterprise security model to cover autonomous agents as a distinct category of network participant.
Lucid Software: MCP Server and Process Agent Lucid launched an updated MCP server and introduced a Process Agent that maps, analyzes, and improves business workflows using visual diagrams directly inside the Lucid platform. Brings AI-driven process improvement into diagramming tools, reducing the gap between planning and execution for operations teams.
Domo: AI Agent Builder and MCP Server Domo launched an AI Agent Builder and a native MCP server, allowing business users to create data-driven agents that connect directly to Domo dashboards and live datasets. Lowers the barrier for non-technical teams to deploy agents that act on business data without requiring custom development work.
Google: Gemini 3.1 Flash Live Google DeepMind launched Gemini 3.1 Flash Live in preview, a low-latency voice and vision model built for real-time conversation. It supports over 90 languages, filters background noise, and is available via the Live API in Google AI Studio. Removes the two main technical barriers to voice AI, latency and noise, making real-time voice agents practical for production use.

My Thoughts: Governance is Becoming Mandatory

Four major security vendors shipped agent-specific tools in the same week. That does not happen by coincidence. Microsoft, Google, Palo Alto, and Cisco are all responding to the same enterprise signal: organizations are moving agents into production, and the controls are not keeping up. Security is no longer a feature request. It is a deployment requirement.

What is worth paying attention to beneath the product announcements is the governance layer taking shape. OpenAI codifying model behavior into a public, auditable spec and Anthropic building a real-time safety classifier directly into Claude Code Auto Mode are solving the same problem from different angles. Both are making agent behavior legible and inspectable, which is the prerequisite for any enterprise that needs to explain to a regulator or a board what its AI systems are actually doing.

The pattern across this week is consistent. Agents are being granted more autonomy, and the infrastructure around them is being hardened in parallel. The teams that treat governance as an architectural layer from the start will move faster with fewer constraints. The ones who bolt it on later will spend their time rebuilding trust instead of building products.

Om Shree

Technical Evangelist

About Om Shree

Om Shree is a researcher, technical writer, and AI evangelist who focuses on making complex AI and agent workflows easier to understand. Om's passion is  breaking down emerging technologies into clear, practical insights. He's excited to provide useful in-depth research  that supports product planning and helps developers navigate new tools and systems with ease.

Further Reading

Turn Your OpenAPI Specs Into MCP Tools—Instantly
Introducing a powerful new feature in Gentoro that lets you automatically generate MCP Tools from any OpenAPI spec—no integration code required.
April 22, 2025
6 min read

Customized Plans for Real Enterprise Needs

Gentoro makes it easier to operationalize AI across your enterprise. Get in touch to explore deployment options, scale requirements, and the right pricing model for your team.