Vercel announced that signed URLs are now available for Vercel Blob. Based on the title, the feature relates to controlled access to Blob resources and may help with restricted file delivery workflows. The source text was not provided, so implementation details, expiration behavior, plan limits, and pricing implications cannot be confirmed.
Simon Willison highlights a 404 Media report about hackers taking over Instagram accounts through Meta's AI support bot. A video reportedly shows an attacker asking the bot to link a target account to a new email address and providing a code. Willison argues this barely qualifies as prompt injection: the core failure was granting a support bot enough authority to fast-forward the account recovery process.
Vercel announced a team-wide provider allowlist for AI Gateway. Based only on the title, the update appears focused on centralized governance over which AI providers a team may use. This is likely most relevant to teams managing compliance, cost control, and approved provider access across multiple projects, rather than a new model capability.
This is a case study on how Indent, a security access control platform, uses Next.js and Vercel to build its enterprise-grade security service. Indent…