Note di rilascio
Il radar mostra la situazione di oggi. Qui c'è ciò che è cambiato per arrivarci: ogni voce aggiunta, spostata, riscritta o rimossa, versione dopo versione.
September 2026
27 voci modificate
State of the domain
The agentic shift has stopped being a demo and started being an operations problem. Across three harvests totalling more than 6,000 signals, the strongest recurring theme is that the interesting decisions now sit at the boundaries of agents: their memory, their tools, their sandboxes, and their supply chains. Security signals arrived attached to almost everything — Langflow RCE, a LiteLLM gateway compromise, malicious Git configs in coding agents, the Hugging Face/OpenAI incident, prompt-injection and exfiltration advisories against GitHub Copilot and Copilot CLI, a pgvector HNSW index-build CVE with SQL injection in common integrations, and Milvus authentication-bypass and unauthenticated-management-port advisories. Meanwhile older, settled debates are fading: privacy-preserving training, HDFS migration, and v1-era model serving no longer need standalone opinions.
The ring shape reflects that: 58 assess and 38 trial against 26 adopt and 14 hold. This is a domain where credible categories are appearing faster than production evidence.
This release
Seven new entries, ten refreshes, one promotion, nine retirements.
The promotion is CrewAI to adopt, on the strength of named enterprise case studies (PwC, IBM, Gelato, AWS) and reported large-scale operational usage. We handle the framework risk through production controls rather than by withholding adoption — and we say so explicitly in the new agent-framework-supply-chain-risk hold, which argues against adopting agent harnesses and tool ecosystems without sandboxing, dependency control, least privilege and runtime monitoring.
New assess entries carve out categories that have outgrown their parents: agent-memory-layers (Mem0, Zep/Graphiti, Cognee, Letta, TencentDB, Redis and Oracle agent memory) is now distinct from RAG; agentic-data-control-planes (Orchestra, Kaarvi, DataBahn, Astera Centerprise AI) inverts the platform-to-agent relationship; agentic-test-automation and agentic-vulnerability-research-for-code (Kritt, OpenAI Aardvark/Codex Security) point agents at delivery quality and secure review. ai-control-protocol-evaluation and Apache Fluss stay deliberately early.
Refreshes are mostly rationale rewrites, not ring changes. mcp-by-default sharpens from generic protocol caution to a specific warning about deploying MCP without identity and tool-boundary controls. ai-risk-governance-frameworks moves the decision point from framework mapping to auditable evidence, citing CEN/CENELEC's first AI Act standard. Devin Desktop (formerly Windsurf) gains named deployments — Nubank, Ramp, Itaú, Goldman Sachs — plus a published critique.
What we're watching
The watchlist carries 45 candidates into the next cycle, each one launch post short of an entry. Our open questions: whether agentic data control planes and agentic testing carry real capability or marketing, whether provenance tooling (Cisco Model Provenance Kit, FlureeDB, SettleTop) moves past launch announcements, and whether AI-BOM practice extends credibly to datasets, licensing and serialized-model risk.
Cambio di anello
1Aggiunto
7- Agent Memory LayersValutaAI & Data Engineering
- Agentic Data Control PlanesValutaData Platforms & MLOps
- Agentic Test AutomationValutaDeveloper AI & Delivery
- Agentic Vulnerability Research for CodeValutaDeveloper AI & Delivery
- AI Control Protocol Evaluation for Untrusted AgentsValutaAI Security & Governance
- Apache FlussValutaData Platforms & MLOps
- Unsandboxed Agent Framework ExecutionSospendiAI & Data Engineering
Riscritto sulla base di nuovi elementi
10- Agent SkillsValutaDeveloper AI & Delivery
- AI Risk Governance FrameworksAdottaAI Security & Governance
- AI SBOMProvaAI Security & Governance
- Devin and WindsurfProvaDeveloper AI & Delivery
- Digital ProvenanceValutaAI Security & Governance
- GitHub CopilotAdottaDeveloper AI & Delivery
- MCP by DefaultSospendiAI Security & Governance
- MilvusValutaData Platforms & MLOps
- pgvectorProvaData Platforms & MLOps
- Sandboxed Execution for Coding AgentsProvaDeveloper AI & Delivery
Tolto dal radar
9Le voci rimosse conservano le loro pagine. Il ritiro non è un verdetto contro una tecnologia — significa che il radar non ha più bisogno di un'opinione a parte in merito.
- BloomValutaAI Security & GovernanceSostituito da 3 voci
- Federated LearningValutaAI Security & GovernanceSostituito da 2 voci
- Figma MakeProvaDeveloper AI & DeliverySostituito da 1 voce
- Hadoop HDFSSospendiData Platforms & MLOpsSostituito da 2 voci
- Monte Carlo Data ObservabilityValutaData Platforms & MLOpsSostituito da 1 voce
- PageIndexValutaAI & Data EngineeringSostituito da 3 voci
- Pi Coding AgentProvaDeveloper AI & DeliverySostituito da 4 voci
- Prefect 3ValutaAI & Data EngineeringSostituito da 2 voci
- Seldon Core v1SospendiData Platforms & MLOpsSostituito da 2 voci