> daily_signal(2026_07_19)
This week in AI: Flock pulled back a surveillance mic, xAI's coding agent leaked user files, Canada threatens a US encryption backdoor, and a satellite showed how oversight should work.
PickBits Daily Signal · Sunday, July 19, 2026
// tl;dr
- Flock Safety ended its AI "Distress Detection" pilot this week, an audio feature layered onto its gunshot-detection microphones that flagged human screaming for an armed police response. The Electronic Frontier Foundation had been pushing back on it for 18 months. The underlying microphones — the same class of system that led Chicago police to fire at children lighting fireworks — stay deployed in hundreds of US cities.
- xAI open-sourced the full code for its Grok-Build terminal coding agent after users discovered it had been silently uploading entire local directories, including SSH keys and password databases, to xAI's own cloud servers. The upload path was disabled July 12 and Elon Musk says the collected data was deleted. xAI still hasn't said how many users were affected.
- Sen. Ron Wyden warned the Trump administration that Canada's Bill C-22 could legally compel US tech companies to secretly build encryption backdoors, the same backdoor language Canada's government promised to strip out back in May. The bill passed Canada's House of Commons last month with that language intact and now awaits Senate approval.
- Three AI-powered FireSat satellites launched from Vandenberg Space Force Base, able to spot a wildfire as small as a classroom from orbit and see through smoke and cloud cover. Built by Muon Space and funded through Google Research and the Earth Fire Alliance, they're the first piece of a fifty-plus satellite network targeting hourly global coverage by 2029.
We've been flagging Flock Safety since its license-plate database turned into a leak that exposed what cops were searching without a warrant, and it walked back another feature this week only after EFF spent eighteen months on it. xAI got caught the same way, but it responded differently: it put its own coding agent's source code on GitHub for anyone to check, days after users found the breach themselves. Canada's encryption fight is the one we've watched longest. The backdoor language we told you got promised away in May never actually left the bill, and now it's a US senator writing the warning letter instead of the tech companies that pushed back in the spring. Then there are three satellites, built to catch a wildfire while it's still the size of a classroom.
Today: Flock Safety killed its AI "Distress Detection" pilot under EFF pressure, xAI open-sourced its Grok-Build coding agent after a secret file-upload breach, Sen. Ron Wyden warned Canada's encryption-backdoor bill survived its promised fix, and three FireSat satellites launched to catch wildfires from orbit.
1. Flock Safety killed the AI feature that turned its gunshot microphones into a scream detector. The microphones stay.
The same class of sensor already led Chicago police to fire at kids lighting fireworks.
Flock Safety had been quietly building an AI feature called Distress Detection onto its existing acoustic gunshot-detection microphones, already deployed across hundreds of US cities, that listened for sounds of human distress, including screaming, and could flag them for an armed police response. The Electronic Frontier Foundation first reported the plan in October 2025. After EFF's reporting, the word "screaming" quietly disappeared from Flock's own marketing language, while the feature kept getting built under the vaguer label "distress detection." This week, after 18 months of EFF pressure, Flock ended the pilot outright, saying only that "after careful consideration and community consultation, we decided to remove the feature." EFF calls it a real win, not a resolution: the underlying acoustic hardware isn't going anywhere, and EFF describes it as "still a dangerous and often highly inaccurate technology that has resulted in real world harm," citing an incident in Chicago where the same class of acoustic-detection system led police to fire at children lighting fireworks.
A scream picked up by the microphones can no longer trigger an armed police response on its own. The base system's documented false-positive rate, the number EFF actually wants published, hasn't moved. It's also not Flock's first retreat this year; the same company walked away from an LAPD contract after reporting exposed how its license-plate database let thousands of police departments search without a warrant. Neither time did Flock touch the hardware.
eff.org: Victory! Flock Ends Rollout of Audio "Distress Detection" of Human Voices (July 2026)
2. xAI's coding agent was secretly uploading your files. Its fix was to publish the whole thing.
One affected user says SSH keys and password databases went out the door too.
xAI's terminal-based coding agent, Grok-Build, was found automatically uploading the full contents of users' local project directories to xAI's Google Cloud servers, with no consent screen. It wasn't scoped to the code being worked on; it grabbed whatever else happened to sit alongside it. One affected user says "SSH keys, password databases, documents, and photos were transferred" without authorization. xAI disabled the upload path on July 12, and Elon Musk announced that all previously uploaded user data would be permanently deleted. xAI didn't just patch it quietly. It published the entire Grok-Build source on GitHub this week under the Apache 2.0 license, roughly 844,530 lines of Rust, saying the release was meant to "provide full transparency." The disabled upload code is still visible in the published source, left in on purpose so anyone can confirm for themselves that it no longer runs. xAI has not disclosed how many users or how much data was affected before the fix.
Nobody outside xAI can check whether "we deleted it" is actually true. The open-sourced code is different: anyone can pull it down and look for themselves. It doesn't undo the underlying bug: a coding agent with local file access grabbed whatever sat nearby instead of staying scoped to the one task it was given. Users caught the breach before xAI did anything about it publicly. It's also the second time in as many months that a frontier AI lab's coding tooling needed a public correction; China separately warned about a security backdoor in a different company's coding tool. Worth watching whoever ships the next one.
grok terminal command on a machine with SSH keys, a password manager, or sensitive documents anywhere near the project directory you pointed it at, treat those credentials as potentially exposed regardless of xAI's deletion claim. Action this week: Rotate SSH keys and any passwords stored in files that could have been swept up, and check your password manager's own audit log for unexpected access around the dates you used the tool. It takes an hour. If you build or evaluate AI coding agents for a team, make "does it run fully local, with uploads opt-in only" an actual procurement question, not a line you take on faith from the pitch deck. Share this with any engineer on your team who's tried Grok-Build.the-decoder.com: xAI open-sources "Grok-Build" on GitHub after massive data breach (July 16, 2026)
3. The encryption-backdoor fix Canada promised in May never actually happened.
A US senator is now the one raising the alarm Canada's own lawmakers dropped.
Back on May 29, we told you Canada's Public Safety Minister had committed to stripping the encryption-backdoor language out of Bill C-22, the Lawful Access Act, after Apple, Google, Signal, and Meta pushed back together. That commitment didn't hold. The bill passed Canada's House of Commons last month with the concerning language still intact, and this week Sen. Ron Wyden sent a letter to the acting Attorney General and the acting national security adviser warning that the bill "threatens to weaponize American technology infrastructure" by letting Canada compel US companies to secretly build backdoors into their own products. Because Canadian law can reach the Canadian subsidiaries of US tech companies, Wyden's letter names five ways the bill could be used: forced local data storage, disabling encryption for specific targets, government-controlled decryption keys, relocated authentication systems, and spyware pushed through compromised updates. His letter describes US law as having "a glaring statutory vacuum," with nothing currently barring a US company from quietly complying with exactly that kind of foreign secret order.
The UK reportedly used a similar legal mechanism, a technical capability notice, to compel Apple to weaken its encrypted iCloud backups. Wyden cites that case directly. Wyden's recommendation is specific: use the ongoing US-Canada CLOUD Act negotiations to explicitly bar these mechanisms before Bill C-22 clears Canada's Senate. Google's public line so far is that it has "never built a backdoor or other mechanism to circumvent end-to-end encryption." No legal order with a gag clause has tested that claim yet. The bill has not yet passed Canada's Senate.
therecord.media: Wyden warns Canada surveillance law threatens US encryption (July 16, 2026)
reclaimthenet.org: Wyden urges Blanche and Rubio to fight Canada's Bill C-22 surveillance law (July 2026)
4. Three AI satellites launched this month with one job: catch a wildfire before it becomes one.
Muon Space, Google Research, and a nonprofit called Earth Fire Alliance are behind it.
Three FireSat satellites launched from Vandenberg Space Force Base on July 7, built by California-based Muon Space on its Condor-M spacecraft platform. Each carries a six-channel multispectral infrared payload capable of detecting fires as small as five by five meters, roughly the size of a classroom, and seeing through smoke and cloud cover that blinds most existing wildfire-monitoring satellites. Together, the three give fire agencies at least twice-daily revisit coverage over every fire-prone region on the planet. The nonprofit Earth Fire Alliance runs the program, and it wants fifty-plus satellites flying by 2029, delivering hourly coverage instead of twice a day. The program is a partnership between Earth Fire Alliance, Google Research (which has funded the effort with more than $15 million through Google.org), and Muon Space; California Governor Gavin Newsom's office promoted the launch as a state wildfire-defense milestone.
We flagged the ground-based version of this same idea on the very day these satellites launched, when California's AI-watched camera network, ALERTCalifornia, caught over half of last year's 3,600 wildfires before anyone dialed 911. FireSat is doing the same job from orbit: catch a fire at schoolyard scale, before it grows past what ground crews and aircraft can contain. Muon Space's own estimate puts the potential savings at over $1 billion in avoided fire damage and roughly 3,500 homes and properties protected annually once the network matures. None of that is live yet. This is three satellites of a planned fifty, still years from full global coverage. A precursor pilot satellite is the only field validation so far.
blog.google: FireSat satellites launch to detect wildfires before they spread (July 2026)
muonspace.com: Muon Space deploys first three operational FireSat satellites for Earth Fire Alliance (July 2026)
» What to watch this week
- Whether Flock Safety publishes the base gunshot-detection system's documented false-positive rate. Killing one feature under pressure is not the same as accounting for the hardware that stays deployed; EFF's next fight is likely the accuracy numbers themselves.
- Whether xAI discloses how many users or how much data was actually exposed before the July 12 fix. The open-sourced code proves the upload path is off; it doesn't tell you whether your own data was ever in it.
- Whether Bill C-22 clears Canada's Senate, and whether the CLOUD Act negotiations produce the explicit anti-backdoor language Wyden is asking for. This is the live venue Wyden named; watch whether any US company or trade group pushes for the carve-out before the bill's final text is settled unilaterally in Ottawa.
- Whether more US fire agencies sign on to receive FireSat's real-time alerts as the constellation grows. Three satellites just proves the concept works; getting to fifty is what actually gets fire agencies real-time coverage instead of a twice-a-day pass.
Tomorrow's signal lands here.