{"id":6755,"date":"2026-09-04T12:42:42","date_gmt":"2026-09-04T12:42:42","guid":{"rendered":"https:\/\/areeblog.com\/?p=6755"},"modified":"2026-09-04T12:42:42","modified_gmt":"2026-09-04T12:42:42","slug":"next-js-canary-adds-controls-for-server-actions-and-ai-apps","status":"publish","type":"post","link":"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/","title":{"rendered":"Next.js Canary Adds Controls for Server Actions and AI Apps"},"content":{"rendered":"<p><img loading=\"lazy\" loading=\"lazy\" decoding=\"async\" data-attachment-id=\"6756\" data-permalink=\"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_z2wmccv\/\" data-orig-file=\"https:\/\/areeblog.com\/wp-content\/uploads\/2026\/09\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV.webp\" data-orig-size=\"1200,675\" data-comments-opened=\"1\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;,&quot;alt&quot;:&quot;&quot;}\" data-image-title=\"9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV\" data-image-description=\"\" data-image-caption=\"\" data-large-file=\"https:\/\/areeblog.com\/wp-content\/uploads\/2026\/09\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV-1024x576.webp\" class=\"aligncenter size-full wp-image-6756\" src=\"https:\/\/areeblog.com\/wp-content\/uploads\/2026\/09\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV.webp\" alt=\"Next.js Canary Adds Controls for Server Actions and AI Apps\" width=\"1200\" height=\"675\" srcset=\"https:\/\/areeblog.com\/wp-content\/uploads\/2026\/09\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV.webp 1200w, https:\/\/areeblog.com\/wp-content\/uploads\/2026\/09\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV-300x169.webp 300w, https:\/\/areeblog.com\/wp-content\/uploads\/2026\/09\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV-1024x576.webp 1024w, https:\/\/areeblog.com\/wp-content\/uploads\/2026\/09\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV-768x432.webp 768w, https:\/\/areeblog.com\/wp-content\/uploads\/2026\/09\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV-860x484.webp 860w\" sizes=\"auto, (max-width: 1200px) 100vw, 1200px\" \/><\/p>\n<p>Next.js is refining how its framework handles Server Action requests in its latest Canary release, introducing clearer <a href=\"https:\/\/areeblog.com\/ai-agents-are-creating-a-new-software-supply-chain-air-security-warns\/\">HTTP responses<\/a> for malformed action references and valid references that are no longer available in a deployment.<\/p>\n<p>The change was included in <a href=\"https:\/\/github.com\/vercel\/next.js\/releases\/tag\/v16.4.0-canary.16\">Next.js v16.4.0-canary.16<\/a>, published on September 3, 2026. The release is a pre-release build rather than a stable version of the framework.<\/p>\n<p>The update comes through <a href=\"https:\/\/github.com\/vercel\/next.js\/pull\/98123\">GitHub pull request #98123<\/a>, titled \u201cReturn client errors for unrecognized Server Actions.\u201d It changes how Next.js classifies requests when the framework cannot identify the Server Action being called.<\/p>\n<p>Under the new behavior, a malformed Server Action ID results in an HTTP 400 Bad Request response. A correctly formatted ID that refers to an action unavailable in the current deployment produces HTTP 409 Conflict.<\/p>\n<p>The distinction applies to Server Actions submitted through the <code>Next-Action<\/code> header as well as multipart form submissions. The implementation also covers direct and bound actions and supports both Node and Edge runtimes.<\/p>\n<p>The change addresses cases in which a client can hold a reference to an action that is no longer present on the server. Next.js specifically identifies deployment skew as one situation that can lead to an otherwise valid action ID becoming unavailable after a deployment.<\/p>\n<p>For example, a browser may load an application from one deployment and later submit an action after the application has been updated. If the server no longer recognizes the action reference associated with the earlier deployment, Next.js can now classify that request as a conflict instead of treating it as the same type of error as a malformed request.<\/p>\n<p>The pull request also changes how these errors are handled across workers. Next.js can forward Server Action requests between workers, and the new implementation derives the forwarded response status from the original action ID rather than allowing a downstream response to redefine the classification.<\/p>\n<p>The framework also avoids exposing the action ID in the error response. Instead, the client receives a generic response associated with the error category.<\/p>\n<p>Before this change, fetch-based Server Actions had specific handling for some unrecognized action requests, while equivalent multipart or form submissions could reach a more generic server-error path. The new implementation brings those request paths under a clearer error model.<\/p>\n<p>The Server Actions change is separate from Next.js&#8217;s broader work on tools for AI-assisted development. The Canary release itself does not describe the new HTTP handling as an AI-specific feature.<\/p>\n<p>Next.js has, however, been expanding its support for AI coding agents across recent releases. Its <a href=\"https:\/\/nextjs.org\/docs\/app\/guides\/ai-agents\">AI agents documentation<\/a> describes a workflow built around version-matched documentation, agent instructions, browser inspection and development tooling.<\/p>\n<p>The framework&#8217;s documentation says Next.js can provide documentation tied to the installed version so coding agents can work from APIs that match the project instead of relying solely on potentially outdated information. Next.js also documents support for <code>AGENTS.md<\/code> and <code>CLAUDE.md<\/code> files in supported agent environments.<\/p>\n<p>Recent Next.js releases have also added other AI-oriented development tools. The project has highlighted first-party Skills, an Agent Browser with React inspection, actionable development errors and a Next.js MCP server as part of that broader effort.<\/p>\n<p>Those features are part of a wider direction for the framework, but they should not be confused with the Server Actions change in Canary 16.4.0-canary.16.<\/p>\n<p>Server Actions themselves remain an important security boundary in Next.js applications. The framework&#8217;s <a href=\"https:\/\/github.com\/vercel\/next.js\/blob\/canary\/docs\/01-app\/02-guides\/data-security.mdx\">data security guidance<\/a> explains that exported Server Actions can be reached through direct POST requests and should therefore be protected with authentication and authorization checks inside the action itself.<\/p>\n<p>Next.js also uses encrypted, non-deterministic identifiers for Server Actions and performs dead-code elimination to avoid exposing unused actions. Its security guidance further documents origin protection and configuration through <code>serverActions.allowedOrigins<\/code> for applications operating behind additional infrastructure.<\/p>\n<p>The framework also provides <code>serverActions.bodySizeLimit<\/code> for controlling the size of Server Action request bodies. The current Server Action handler uses a default limit of 1 MB.<\/p>\n<p>Beyond Server Actions, Canary 16.4.0-canary.16 includes several other changes. The release contains a Turbopack performance improvement that skips ignored files during server tracing, an upgrade to <code>web-vitals<\/code> v6 with soft-navigation reporting, and a React Canary update.<\/p>\n<p>The release also adds documentation noting that <code>experimental.taint<\/code> taints <code>process.env<\/code>, along with additional testing around static parameters and Cache Components migration. Maintenance changes include a new hourly Next Maintainer auto-close workflow and the removal of stale deployment manifest exclusions.<\/p>\n<p>Because v16.4.0-canary.16 is a Canary build, the changes are still in the pre-release channel. <a href=\"https:\/\/nextjs.org\/support-policy\">Next.js&#8217;s support policy<\/a> describes Canary releases as builds that contain changes being prepared for stable releases and recommends using them for experimentation rather than production traffic.<\/p>\n<p>The new Server Actions behavior therefore represents an incremental framework change rather than a stable platform-wide rollout. Its immediate focus is clearer error classification, particularly when a request contains an invalid action reference or a valid reference that is no longer available in the active deployment.<\/p>\n<p>For developers testing the Canary channel, the distinction between HTTP 400 and HTTP 409 provides a more precise signal about what went wrong. For the broader Next.js ecosystem, the change arrives alongside continued development of tools intended to help both developers and AI coding agents work with the framework&#8217;s application runtime and documentation.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Next.js is refining how its framework handles Server Action requests in its latest Canary release, introducing clearer HTTP responses for malformed action references and valid references that are no longer available in a deployment. The change was included in Next.js v16.4.0-canary.16, published on September 3, 2026. The release is a pre-release build rather than a [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":6756,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"content-type":"","_monsterinsights_skip_tracking":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_feature_clip_id":0,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_post_was_ever_published":false},"categories":[164],"tags":[166],"class_list":["post-6755","post","type-post","status-publish","format-standard","has-post-thumbnail","category-tech-updates","tag-ai"],"share_on_mastodon":{"url":"","error":""},"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v28.4 (Yoast SEO v28.5) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Next.js Canary Adds Controls for Server Actions and AI Apps - Aree Blog<\/title>\n<meta name=\"description\" content=\"Next.js Canary improves Server Action error handling with clearer 400 and 409 responses for invalid and unavailable actions.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Next.js Canary Adds Controls for Server Actions and AI Apps\" \/>\n<meta property=\"og:description\" content=\"Next.js Canary improves Server Action error handling with clearer 400 and 409 responses for invalid and unavailable actions.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/\" \/>\n<meta property=\"og:site_name\" content=\"Aree Blog\" \/>\n<meta property=\"article:published_time\" content=\"2026-09-04T12:42:42+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/areeblog.com\/wp-content\/uploads\/2026\/09\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV.webp\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"675\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/webp\" \/>\n<meta name=\"author\" content=\"Daniel Chinonso John\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Daniel Chinonso John\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/areeblog.com\\\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/areeblog.com\\\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\\\/\"},\"author\":{\"name\":\"Daniel Chinonso John\",\"@id\":\"https:\\\/\\\/areeblog.com\\\/#\\\/schema\\\/person\\\/d972222c55618fb0f4b4c0c11ff52f63\"},\"headline\":\"Next.js Canary Adds Controls for Server Actions and AI Apps\",\"datePublished\":\"2026-09-04T12:42:42+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/areeblog.com\\\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\\\/\"},\"wordCount\":873,\"commentCount\":0,\"image\":{\"@id\":\"https:\\\/\\\/areeblog.com\\\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/areeblog.com\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV.webp\",\"keywords\":[\"AI\"],\"articleSection\":[\"Tech Updates\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/areeblog.com\\\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/areeblog.com\\\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\\\/\",\"url\":\"https:\\\/\\\/areeblog.com\\\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\\\/\",\"name\":\"Next.js Canary Adds Controls for Server Actions and AI Apps - Aree Blog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/areeblog.com\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/areeblog.com\\\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/areeblog.com\\\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/areeblog.com\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV.webp\",\"datePublished\":\"2026-09-04T12:42:42+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/areeblog.com\\\/#\\\/schema\\\/person\\\/d972222c55618fb0f4b4c0c11ff52f63\"},\"description\":\"Next.js Canary improves Server Action error handling with clearer 400 and 409 responses for invalid and unavailable actions.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/areeblog.com\\\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/areeblog.com\\\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/areeblog.com\\\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\\\/#primaryimage\",\"url\":\"https:\\\/\\\/areeblog.com\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV.webp\",\"contentUrl\":\"https:\\\/\\\/areeblog.com\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV.webp\",\"width\":1200,\"height\":675,\"caption\":\"Next.js Canary Adds Controls for Server Actions and AI Apps\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/areeblog.com\\\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/areeblog.com\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Next.js Canary Adds Controls for Server Actions and AI Apps\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/areeblog.com\\\/#website\",\"url\":\"https:\\\/\\\/areeblog.com\\\/\",\"name\":\"Aree Blog\",\"description\":\"Unfiltered Perspectives, Unstoppable Insights\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/areeblog.com\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/areeblog.com\\\/#\\\/schema\\\/person\\\/d972222c55618fb0f4b4c0c11ff52f63\",\"name\":\"Daniel Chinonso John\",\"description\":\"Daniel Chinonso John is a web designer, penetration tester, and founder of Aree Tech. He writes clear, actionable posts at the intersection of productivity, AI, cybersecurity, and blogging to help readers get things done.\",\"sameAs\":[\"https:\\\/\\\/www.linkedin.com\\\/in\\\/daniel-john-45183a169\\\/\"],\"url\":\"https:\\\/\\\/areeblog.com\\\/author\\\/danojohn55gmail-com\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Next.js Canary Adds Controls for Server Actions and AI Apps - Aree Blog","description":"Next.js Canary improves Server Action error handling with clearer 400 and 409 responses for invalid and unavailable actions.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/","og_locale":"en_US","og_type":"article","og_title":"Next.js Canary Adds Controls for Server Actions and AI Apps","og_description":"Next.js Canary improves Server Action error handling with clearer 400 and 409 responses for invalid and unavailable actions.","og_url":"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/","og_site_name":"Aree Blog","article_published_time":"2026-09-04T12:42:42+00:00","og_image":[{"width":1200,"height":675,"url":"https:\/\/areeblog.com\/wp-content\/uploads\/2026\/09\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV.webp","type":"image\/webp"}],"author":"Daniel Chinonso John","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Daniel Chinonso John","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/#article","isPartOf":{"@id":"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/"},"author":{"name":"Daniel Chinonso John","@id":"https:\/\/areeblog.com\/#\/schema\/person\/d972222c55618fb0f4b4c0c11ff52f63"},"headline":"Next.js Canary Adds Controls for Server Actions and AI Apps","datePublished":"2026-09-04T12:42:42+00:00","mainEntityOfPage":{"@id":"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/"},"wordCount":873,"commentCount":0,"image":{"@id":"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/#primaryimage"},"thumbnailUrl":"https:\/\/areeblog.com\/wp-content\/uploads\/2026\/09\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV.webp","keywords":["AI"],"articleSection":["Tech Updates"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/","url":"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/","name":"Next.js Canary Adds Controls for Server Actions and AI Apps - Aree Blog","isPartOf":{"@id":"https:\/\/areeblog.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/#primaryimage"},"image":{"@id":"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/#primaryimage"},"thumbnailUrl":"https:\/\/areeblog.com\/wp-content\/uploads\/2026\/09\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV.webp","datePublished":"2026-09-04T12:42:42+00:00","author":{"@id":"https:\/\/areeblog.com\/#\/schema\/person\/d972222c55618fb0f4b4c0c11ff52f63"},"description":"Next.js Canary improves Server Action error handling with clearer 400 and 409 responses for invalid and unavailable actions.","breadcrumb":{"@id":"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/#primaryimage","url":"https:\/\/areeblog.com\/wp-content\/uploads\/2026\/09\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV.webp","contentUrl":"https:\/\/areeblog.com\/wp-content\/uploads\/2026\/09\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV.webp","width":1200,"height":675,"caption":"Next.js Canary Adds Controls for Server Actions and AI Apps"},{"@type":"BreadcrumbList","@id":"https:\/\/areeblog.com\/next-js-canary-adds-controls-for-server-actions-and-ai-apps\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/areeblog.com\/"},{"@type":"ListItem","position":2,"name":"Next.js Canary Adds Controls for Server Actions and AI Apps"}]},{"@type":"WebSite","@id":"https:\/\/areeblog.com\/#website","url":"https:\/\/areeblog.com\/","name":"Aree Blog","description":"Unfiltered Perspectives, Unstoppable Insights","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/areeblog.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/areeblog.com\/#\/schema\/person\/d972222c55618fb0f4b4c0c11ff52f63","name":"Daniel Chinonso John","description":"Daniel Chinonso John is a web designer, penetration tester, and founder of Aree Tech. He writes clear, actionable posts at the intersection of productivity, AI, cybersecurity, and blogging to help readers get things done.","sameAs":["https:\/\/www.linkedin.com\/in\/daniel-john-45183a169\/"],"url":"https:\/\/areeblog.com\/author\/danojohn55gmail-com\/"}]}},"jetpack_sharing_enabled":true,"jetpack-related-posts":[{"id":6890,"url":"https:\/\/areeblog.com\/tencents-browserskill-lets-ai-agents-control-logged-in-browsers\/","url_meta":{"origin":6755,"position":0},"title":"Tencent\u2019s BrowserSkill Lets AI Agents Control Logged-In Browsers","author":"Daniel Chinonso John","date":"September 19, 2026","format":false,"excerpt":"Tencent has released BrowserSkill, an open-source tool that allows AI agents to control a user\u2019s existing, logged-in Chromium browser through a command-line interface and browser extension. The project is designed to let agents including Cursor, Claude Code and Codex use real browser sessions instead of starting a separate browser with\u2026","rel":"","context":"In &quot;Tech Updates&quot;","block_context":{"text":"Tech Updates","link":"https:\/\/areeblog.com\/category\/tech-updates\/"},"img":{"alt_text":"Tencent\u2019s BrowserSkill Lets AI Agents Control Logged-In Browsers","src":"https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/09\/BrowserSkill.png?resize=350%2C200&ssl=1","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/09\/BrowserSkill.png?resize=350%2C200&ssl=1 1x, https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/09\/BrowserSkill.png?resize=525%2C300&ssl=1 1.5x, https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/09\/BrowserSkill.png?resize=700%2C400&ssl=1 2x, https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/09\/BrowserSkill.png?resize=1050%2C600&ssl=1 3x"},"classes":[]},{"id":6604,"url":"https:\/\/areeblog.com\/cisco-finds-cybercriminals-using-agentic-ai-to-automate-web-server-attacks\/","url_meta":{"origin":6755,"position":1},"title":"Cisco Finds Cybercriminals Using Agentic AI to Automate Web Server Attacks","author":"Daniel Chinonso John","date":"August 25, 2026","format":false,"excerpt":"Cisco Talos has identified a financially motivated Chinese-speaking cybercrime group that is using artificial intelligence alongside conventional offensive tools to automate parts of attacks against vulnerable Windows and Linux web servers. The group, tracked by Talos as UAT-10147, was discovered in early 2026 targeting internet-exposed servers in multiple regions. Investigators\u2026","rel":"","context":"In &quot;Tech Updates&quot;","block_context":{"text":"Tech Updates","link":"https:\/\/areeblog.com\/category\/tech-updates\/"},"img":{"alt_text":"Cisco Finds Cybercriminals Using Agentic AI to Automate Web Server Attacks","src":"https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/7BYGIHJJL5P63NCGQ67DJGYVTM.jpg?resize=350%2C200&ssl=1","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/7BYGIHJJL5P63NCGQ67DJGYVTM.jpg?resize=350%2C200&ssl=1 1x, https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/7BYGIHJJL5P63NCGQ67DJGYVTM.jpg?resize=525%2C300&ssl=1 1.5x, https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/7BYGIHJJL5P63NCGQ67DJGYVTM.jpg?resize=700%2C400&ssl=1 2x, https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/7BYGIHJJL5P63NCGQ67DJGYVTM.jpg?resize=1050%2C600&ssl=1 3x"},"classes":[]},{"id":6701,"url":"https:\/\/areeblog.com\/shadow-ai-is-moving-into-approved-enterprise-tools\/","url_meta":{"origin":6755,"position":2},"title":"Shadow AI Is Moving Into Approved Enterprise Tools","author":"Samuel Ogori","date":"August 31, 2026","format":false,"excerpt":"Security teams are facing a newer form of shadow AI as approved enterprise applications increasingly gain the ability to run extensions, connect to outside services and follow instructions supplied by software repositories. An analysis published by The Hacker News on August 31 argues that the security problem is no longer\u2026","rel":"","context":"In &quot;Tech Updates&quot;","block_context":{"text":"Tech Updates","link":"https:\/\/areeblog.com\/category\/tech-updates\/"},"img":{"alt_text":"Shadow AI Is Now Hiding Inside Sanctioned AI Tools","src":"https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/IMG-20260831-WA0027.jpg?resize=350%2C200&ssl=1","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/IMG-20260831-WA0027.jpg?resize=350%2C200&ssl=1 1x, https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/IMG-20260831-WA0027.jpg?resize=525%2C300&ssl=1 1.5x, https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/IMG-20260831-WA0027.jpg?resize=700%2C400&ssl=1 2x, https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/IMG-20260831-WA0027.jpg?resize=1050%2C600&ssl=1 3x"},"classes":[]},{"id":6639,"url":"https:\/\/areeblog.com\/wso2-makes-ai-workspace-fully-self-hostable-for-enterprise-ai-governance\/","url_meta":{"origin":6755,"position":3},"title":"WSO2 Makes AI Workspace Fully Self-Hostable for Enterprise AI Governance","author":"Daniel Chinonso John","date":"August 28, 2026","format":false,"excerpt":"WSO2 has made its AI Workspace available as a fully self-managed deployment, allowing organizations to run the platform\u2019s AI governance control plane inside their own infrastructure. The company announced the change on August 25, 2026, saying the new deployment model is designed for organizations that need greater control over where\u2026","rel":"","context":"In &quot;Tech Updates&quot;","block_context":{"text":"Tech Updates","link":"https:\/\/areeblog.com\/category\/tech-updates\/"},"img":{"alt_text":"WSO2 Makes AI Workspace Fully Self-Hostable for Enterprise AI Governance","src":"https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/wso2-logo.jpg?resize=350%2C200&ssl=1","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/wso2-logo.jpg?resize=350%2C200&ssl=1 1x, https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/wso2-logo.jpg?resize=525%2C300&ssl=1 1.5x, https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/wso2-logo.jpg?resize=700%2C400&ssl=1 2x, https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/wso2-logo.jpg?resize=1050%2C600&ssl=1 3x"},"classes":[]},{"id":6839,"url":"https:\/\/areeblog.com\/google-says-hackers-are-using-ai-agents-to-run-multi-stage-attacks-with-little-human-input\/","url_meta":{"origin":6755,"position":4},"title":"Google Says Hackers Are Using AI Agents to Run Multi-Stage Attacks With Little Human Input","author":"Daniel Chinonso John","date":"September 9, 2026","format":false,"excerpt":"Hackers are increasingly using artificial intelligence to automate multiple stages of cyberattacks, with Google Threat Intelligence Group reporting that some attackers have moved beyond simple prompting to AI-driven workflows capable of scanning targets, troubleshooting failures and harvesting credentials with limited human involvement. In a report published September 8, 2026, Google\u2026","rel":"","context":"In &quot;Tech Updates&quot;","block_context":{"text":"Tech Updates","link":"https:\/\/areeblog.com\/category\/tech-updates\/"},"img":{"alt_text":"Google Says Hackers Are Using AI Agents to Run Multi-Stage Attacks With Little Human Input","src":"https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/09\/images-55.jpeg?resize=350%2C200&ssl=1","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/09\/images-55.jpeg?resize=350%2C200&ssl=1 1x, https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/09\/images-55.jpeg?resize=525%2C300&ssl=1 1.5x"},"classes":[]},{"id":6610,"url":"https:\/\/areeblog.com\/oasis-security-researchers-reveal-security-flaw-in-nemoclaw-ai-agent\/","url_meta":{"origin":6755,"position":5},"title":"Oasis Security Researchers Reveal Security Flaw in NemoClaw AI Agent","author":"Daniel Chinonso John","date":"August 25, 2026","format":false,"excerpt":"Security researchers at Oasis Security have disclosed a vulnerability in NVIDIA\u2019s NemoClaw AI-agent environment that can allow a malicious webpage to reach the local Ollama server used for model inference and alter how an AI model processes instructions. The vulnerability, tracked as CVE-2026-65105, was reported to NVIDIA\u2019s Product Security Incident\u2026","rel":"","context":"In &quot;Tech Updates&quot;","block_context":{"text":"Tech Updates","link":"https:\/\/areeblog.com\/category\/tech-updates\/"},"img":{"alt_text":"Oasis Security Researchers Reveal Security Flaw in NemoClaw AI Agent","src":"https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/unnamed.jpg?resize=350%2C200&ssl=1","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/unnamed.jpg?resize=350%2C200&ssl=1 1x, https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/unnamed.jpg?resize=525%2C300&ssl=1 1.5x, https:\/\/i0.wp.com\/areeblog.com\/wp-content\/uploads\/2026\/08\/unnamed.jpg?resize=700%2C400&ssl=1 2x"},"classes":[]}],"jetpack_featured_media_url":"https:\/\/areeblog.com\/wp-content\/uploads\/2026\/09\/9c74ea42029a229829f2e06b039f4fb477938c83-2400x1350_Z2wmccV.webp","_links":{"self":[{"href":"https:\/\/areeblog.com\/wp-json\/wp\/v2\/posts\/6755","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/areeblog.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/areeblog.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/areeblog.com\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/areeblog.com\/wp-json\/wp\/v2\/comments?post=6755"}],"version-history":[{"count":1,"href":"https:\/\/areeblog.com\/wp-json\/wp\/v2\/posts\/6755\/revisions"}],"predecessor-version":[{"id":6757,"href":"https:\/\/areeblog.com\/wp-json\/wp\/v2\/posts\/6755\/revisions\/6757"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/areeblog.com\/wp-json\/wp\/v2\/media\/6756"}],"wp:attachment":[{"href":"https:\/\/areeblog.com\/wp-json\/wp\/v2\/media?parent=6755"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/areeblog.com\/wp-json\/wp\/v2\/categories?post=6755"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/areeblog.com\/wp-json\/wp\/v2\/tags?post=6755"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}