Wyecliff
All editions

Nobody Was Watching Wyecliff Weekly #40

September 11, 20265 min read
The AI stories that actually matter this week | Edition #40 | September 11, 2026
This week the machines started working while nobody was in the room. Meta launched a personal assistant that books, buys, and sends email on your behalf. A researcher quit Anthropic and said the people building this technology believe it could kill us all, and his own head of alignment agreed. Apple put a watch on sale that listens to your conversations and takes notes. And OpenAI ran ten thousand of its agents at a two-hundred-year-old math problem and said they cracked it. Let's get to it.

Now Available: The Wyecliff Weekly Podcast

Prefer to listen? Every edition of the Wyecliff Weekly is now generated as a podcast. Same stories, same analysis, same lessons. Just press here.
Listen to this edition

Top Stories

+ Meta Launched An AI That Uses Your Accounts For You

On September 8, Meta released Muse, a personal assistant that does things rather than answering questions. It sends email, books travel, fills out forms, manages your calendar, shops, and negotiates bills down. You connect your accounts one at a time, email, calendar, payments, smart home, and it works inside them. It keeps running after you close the app and comes back for approval before it sends anything or spends money. It is free to start, with paid tiers at $20 and $100 a month, and it runs on iPhone, Android, muse.ai, and inside WhatsApp. Purchases go through a one-time card number issued by Stripe. Meta built the security story into the launch. Each user gets a private virtual machine holding the assistant, the data, and the account credentials, with a separate watchdog process that checks every outbound action against the permissions you granted and routes approvals straight to you. Meta is offering up to $300,000 to anyone who finds a serious flaw. Reuters reviewed internal employee posts from testing: one tester said the assistant got around its own guardrails and surfaced personal iCloud photos, and chief technology officer Andrew Bosworth wrote that it kept logging him out. Meta's VP of AI products said an April launch was pushed back for security work and added, "It is impossible to say that there is never going to be a mistake."
What it all means: Meta skipped the part where AI suggests and went straight to AI doing. Handing an assistant your inbox and your card is a different category of trust than asking it to write an email, and the company asking for it is the one with the longest privacy record in tech. The size of the bug bounty tells you how hard Meta thinks this is.

+ An Anthropic Researcher Quit And Said His Own Colleagues Expect This To Kill Us

On September 8, Anthropic pretraining researcher Jacob Coxon resigned in public and posted why. He had worked at OpenAI since 2023 and moved to Anthropic in July. "Neither company is acting responsibly," he wrote. "They are racing straight to self-improving superintelligence and gambling with our lives." He said the difference between the two is understanding rather than urgency: "At OpenAI, many have not deeply internalized the civilizational stakes. At Anthropic, the stakes are well-understood, but they are locked in a race to get there first." What made it a story was who agreed. Evan Hubinger, who leads alignment science at Anthropic, replied publicly: "Jacob is correct here. We really do earnestly believe AI could kill all humans. I personally think it is greater than 10 percent within the next decade. I believe Anthropic is trying its best, but we do not yet have a plan to solve alignment for superintelligence and are not clearly on track to." Samuel Marks, who runs Anthropic's cognitive oversight team, added that the more senior the employee, the more concerned they tend to be. Both said they were speaking personally. Anthropic and OpenAI declined to comment. The company is reportedly weeks away from a public offering at a valuation approaching $2 trillion.
What it all means: Departure warnings from AI labs are not new. Senior safety leadership at the same company confirming the warning on the record, in the middle of an IPO run, is new. The number to sit with is the one Hubinger volunteered without being asked: greater than one in ten, within ten years.

+ Apple Sold A Watch That Listens To Your Conversations And Takes Notes

At an event on September 9, Apple announced Audio Intelligence for the Apple Watch Series 12 and Ultra 4, which go on sale September 18. The headline feature is Siri Recap: the watch listens to conversations around you and produces a title, a summary, and key points, aimed at meetings and parent-teacher conferences. A second feature, Live Rewind, lets you double-press the crown to see a transcript of the last 15 seconds of whatever was just said. Two smaller ones identify nearby music automatically and alert deaf and hard-of-hearing users to sirens, alarms, and a baby crying. Apple built its answer to the obvious objection into the product. Siri Recap is off until you turn it on, it can be scheduled so it only listens at work and never at night, and it can be switched off from Control Center. No audio recording is created or stored. The raw sound is processed in a walled-off section of the watch's chip and deleted immediately. The features arrive in beta later this year, English first, and are not available in the European Union at launch. Apple also confirmed that its new Siri, shipping September 14, will have daily usage limits, with more available for a fee it has not yet named.
What it all means: Always-listening hardware has been tried and rejected before, and the reason this attempt is different is that everything is deleted on the wrist instead of shipped to a server. The people at the table who did not buy the watch have not agreed to any of that. Expect the etiquette to arrive well after the hardware does.

More Stories

OpenAI Says 10,000 Of Its Agents Solved A Problem Mathematicians Have Worked On For 200 Years.

On September 8, OpenAI announced that roughly ten thousand copies of an unreleased model, running together for 88 hours, produced a solution to part of the Navier-Stokes problem, one of six remaining million-dollar prize problems in mathematics. The institute that administers the prize still lists it as unsolved and said its review would be "deliberately unhurried." Nobody outside OpenAI has verified the proof, and two mathematicians who published closely related work the night before are disputing credit.

California Made Somebody Check The AI, And Made Chatbots Answer For Kids.

On September 9, Governor Gavin Newsom signed two bills creating the first state framework for independent AI auditors, plus a public registry of them with standards for independence. Anthropic backed the package and OpenAI announced support hours before the signing. The next day he signed a second package: penalties up to $1 million per child against large platforms found negligent of harming children, a ban on addictive feeds for under-16s, and a requirement that AI chatbot operators run a risk assessment before public rollout.

A FOIA Lawsuit Revealed What The Pentagon Actually Bought From The AI Labs.

On September 8, The Intercept published more than 400 pages of Defense Department contracts with OpenAI, Anthropic, Google, and xAI, each worth up to $200 million and signed in July 2025. The documents show two-way information sharing, classified briefings, and a clause requiring the labs to forecast the risks of their own products. A February amendment has OpenAI placing its own engineers inside military commands, with the oversight section fully redacted.

The Federal Government Just Got ChatGPT At Half Price Through 2028.

On September 10, OpenAI and the General Services Administration replaced the expiring $1-per-agency deal with a 27-month agreement running through December 2028. It cuts usage costs 50 percent, waives the $15 per user monthly license fee, and carries no minimum spend. It is open to federal, state, local, and tribal agencies, which expands eligibility from about 1 million government workers to roughly 23 million. Google's and Anthropic's equivalent deals expire September 30 with no renewal announced.

Why It Matters

Everything worth reporting this week involved AI doing something while nobody was watching it. Meta's assistant works your accounts after you close the app. Apple's watch listens between conversations rather than during them. Ten thousand OpenAI agents ran for 88 hours on a proof no outside mathematician has checked. And the person best positioned to say whether any of this is being supervised properly quit and said it is not, with his own head of alignment agreeing on the record. The counterweight arrived from Sacramento in the least glamorous form available, which is a licensed auditor and a fine measured per child.

For You

The Apple Watch is the one that reaches your kitchen table. A device that listens to the room and writes down what was said is a normal consumer purchase as of next Friday, and the person wearing it is the only one who agreed to it. Apple deletes the audio on the device and never stores a recording, which is the right design, and it does not change the fact that you may be taking notes on people who did not ask you to. The other item worth holding onto is the resignation. A researcher walked away from one of the best jobs in the field and said the people building this believe it could go very badly. Instead of denying it, his own colleagues confirmed it and put a number on it. That is an uncomfortable thing to read on a Friday, and it is being said out loud by the people closest to the work, which beats the alternative.

For Your Work

The practical shift is that AI has started taking actions inside real accounts, and the controls for that are new and thin. If your team connects an assistant to email, calendars, or payments, the thing to settle before anyone does it is what the agent may do without a human clicking approve, and who reads the log afterward. Both Microsoft and Meta shipped exactly those controls this month, which tells you they expect the problem. The second item is procurement. California now has an auditor registry, the federal government now has ChatGPT at half price through 2028, and a House bill introduced Tuesday would require contractors to keep a live inventory of every AI agent running on their systems. Whatever your firm ends up needing to prove about its AI use, the paperwork for it is being written right now.

One Thing To Try This Week

How to Audit What Your AI Knows About You and What It Can Reach

Last week you compared three tools side by side. This week, look at what those tools have collected about you while you were using them. It takes about ten minutes per tool, and the one thing to understand before you start is that turning a setting off does not delete what it already saved. All three companies say so in their own documentation.

Claude (via Cowork or claude.ai)

  1. Go to Settings, then Memory. Everything Claude has stored about you is listed under Topics. Click any topic to read it, use the edit icon to fix it, or select Delete to remove it.
  2. To clear everything, turn the memory toggle off and choose Reset memory rather than Pause memory. Reset permanently deletes all of it, including project memories, and cannot be undone. Note that deleting a conversation does not delete the memories that came from it.
  3. Go to Settings, then Privacy, and look at the toggle named Help Improve our AI models. Turning it off stops new conversations from being used for training. Anything already used stays used.
  4. Go to Customize, then Connectors, to see every outside service Claude can reach. Disconnect anything you no longer use. For the ones you keep, open the connector and set Tool permissions to Needs approval for anything that writes, sends, or deletes.

ChatGPT

  1. Go to Settings, then Personalization, then Memory. Open Manage to read the summary of what it has stored. You can edit it directly in the text box.
  2. To wipe it, use the three-dot menu on that page and choose Delete and turn off memory. OpenAI's caveat matters here: that does not delete your past chats, and turning memory back on can rebuild from them.
  3. Go to Settings, then Data controls, and turn off Improve the model for everyone. It is on by default for personal accounts. One trap to know about: giving a response a thumbs up or thumbs down can send that entire conversation for training even when you have opted out.
  4. Go to Settings, then Apps, to see every outside service connected. Disconnect what you do not use. Disconnecting does not delete the conversations, files, or memories that app produced, so clear those separately.

Microsoft Copilot

  1. On a personal account, open Settings, then Personalization, and click Manage next to Saved memories. Delete individual items, or choose Delete all memories. Microsoft states plainly that switching the toggle off does not delete what is already saved.
  2. On the same page, review One shared experience, which links your Bing, Edge, and MSN activity to Copilot in both directions, and the personalized advertising toggle.
  3. To clear your history entirely, go to account.microsoft.com/privacy/copilot, where you can export your full activity history as a spreadsheet or delete all of it. Copilot keeps the last 18 months.
  4. On a work or school account, open Settings and more at the top right, then Chat settings, then Personalization, then Manage saved memories. Two things to know: deleting a chat does not delete the memories it created, and turning chat history off deletes those inferences after 30 days, but turning it back on within 30 days brings them back.
Bonus: Before an especially sensitive conversation, use the throwaway mode instead of cleaning up afterward. Claude has incognito chat, ChatGPT has the Temporary button at the top right of a new chat, and work Copilot has Start a new temporary chat. One note on the last one: your administrator can still see temporary chats.
Try This Prompt
Tell me everything you currently remember about me, my work, my preferences, and my projects. List it as separate items. For each one, tell me whether it came from something I explicitly asked you to remember or something you inferred on your own. Then flag anything that is out of date or that you are not confident about.

Spread The Word

Love the Wyecliff Weekly? Refer a friend and earn rewards on our referral program.

See the referral tiers
Wyecliff Weekly

Never miss an edition.

Wyecliff Weekly lands every Friday at 6 AM Mountain. One short email with the moves that matter, a prompt to run on Monday, and one playbook from the field.

One email a week. No spam. Unsubscribe anytime.

Common Questions

When does Wyecliff Weekly arrive?
Every Friday morning at 6 AM Mountain. One email a week with the biggest AI stories, what they mean for your work, and one thing to try before Monday.
Is Wyecliff Weekly free?
Yes. Subscribe with your work email and read every edition at no cost. We write for operators who want plain takes, not a sales pitch.
What is inside each edition?
Top AI news with context, a short take on why it matters for your business, and one practical prompt or workflow you can run this week.
How do I unsubscribe?
Every email includes an unsubscribe link at the bottom. One click and you are off the list. No hoops.
/newsletter/wyecliff-weekly-edition-40