> daily_signal(2026_07_29)
The nudify tools jumped from the app store to an AI hub no takedown can reach, while the token bill turned on the companies that cheered it and only one of ten wearables locks up your health data.
PickBits Daily Signal · Wednesday, July 29, 2026
// tl;dr
- The EU nonprofit AI Forensics ran honeypots on Hugging Face and logged more than 1,000 prompts in a week: seven of the nine most-popular image editors undressed a photo on demand. About 95% of the sexual requests targeted women and roughly 1 in 15 targeted an apparent child. The fight moves off the app store, where San Francisco just pushed Apple and Google, and onto an open model host no store can pull down.
- The spring flex of "tokenmaxxing," burning as many AI tokens as possible as a productivity signal, has flipped into a summer cost-cutting scramble, per the AP. Bain pegs the run rate near $200 per developer per month across about 20,000 developers, with tool costs doubling roughly monthly. Palantir's Alex Karp, who talks the boom up, now calls the trend "completely wrong."
- The EFF reviewed 10 popular wearable makers and found only the Apple Watch encrypts stored health data end to end; only Apple and Google publish transparency reports. Heart rate, sleep, and location on the other nine sit as readable data, outside HIPAA and reachable by subpoena, and a surveillance vendor already flags fitness trackers to investigators as an overlooked data source.
- USC's Spatial Sciences Institute released a free AI tool that maps a city's tree canopy from free USDA aerial photos, no lidar, at accuracy it calls competitive with far pricier scans. It validated in San Francisco and Phoenix with no retraining, and its ArcGIS model has been downloaded more than 12,900 times, collapsing the cost barrier to shade-equity mapping.
A couple of the stories we have been following for weeks finally moved. The AI-cost one went from enterprise bills spiraling in late June to plain sticker shock last week, and now the AP says companies are hunting for cheaper AI and the token flex is over. The wearable-privacy one we keep circling got a scorecard: the EFF checked ten devices and only one encrypts what it stores. The other two are about who can reach what. The nudify tools San Francisco chased through the app stores have moved onto an open host no takedown can pull down, and a free tool out of USC hands a city the one map it needs to see where the heat lands hardest. The fourth is the one piece of good news, and it landed with the cities that usually get skipped.
AI Forensics ran a one-week honeypot on Hugging Face and caught seven of its nine top image tools stripping photos on command.
1. Seven of the nine most-popular image tools on Hugging Face will undress a photo on request, and about one in fifteen of the sexual prompts a watchdog logged went after a child.
The EU research nonprofit AI Forensics set up honeypot Spaces on Hugging Face, the dominant open-source AI hub, and logged more than 1,000 prompts over a single week, tested against the platform's most-popular image Spaces as of late June. Seven of the nine most-used image-editing models complied with undress requests.
Of the sexual requests, 83% sought to strip or sexualize the subject, 95% targeted women, and 6.7% targeted apparent children.
This is the same non-consensual-imagery harm San Francisco chased through the app stores earlier this month, but one step back, at the model itself rather than the app built on top of it.
And that is the catch: a takedown can reach an app, not a model everyone has already copied. On July 18, San Francisco pressed Apple and Google to pull nudify apps from their stores, and a store has a front door, an owner, and a delist button. An open model is just weights, and weights get mirrored. Pull one Space and copies are sitting on other hosts and hard drives by morning. That is why AI Forensics and the reporters covering it keep pointing past the apps to the host: shutting an app never reaches the files everyone has already copied.
theverge.com: Hugging Face is being used to easily undress women and children (July 28, 2026)
wired.com: Hugging Face has a nonconsensual deepfakes problem (July 2026)
2. The token bill your company treated as a productivity flex six months ago is the line item it is now scrambling to cut, and the cost is roughly doubling every month.
In the spring, burning as many AI tokens as possible was a status symbol. Sam Altman said in May he was "excited to see what will happen with tokenmaxxing startups," and Nvidia's Jensen Huang said that if your $500,000 engineer is not burning $250,000 in tokens, something is wrong.
By this summer, per the AP's Matt O'Brien, the same companies are hunting for cheaper AI. Bain's Jue Wang cites tool costs doubling roughly monthly, on the order of $200 per developer per month across about 20,000 developers.
The spend padded revenue at OpenAI and Anthropic, but analysts warn much of it bought work nobody needed.
This is not a mood swing. The price of the same work is climbing month over month, and Palantir's Alex Karp, who has every reason to talk the AI boom up, now calls the trend "completely wrong." Enterprise budgets are shifting from unlimited internal usage toward cheaper models and tighter cost control. The cost stopped living in the license and moved into the meter, and the meter is the part most teams still are not watching. You used to be able to forecast a seat price; now it doubles while you decide whether to look at it.
abcnews.com (AP): Once a flex in corporate America, AI 'tokenmaxxing' fades as workplaces cut costs (July 27, 2026)
techxplore.com: Once a flex in corporate America, AI tokenmaxxing fades (July 2026)
3. Only one of the ten most popular smartwatches and rings encrypts the health data it stores in the cloud, which leaves your heart rate, sleep, and location on the other nine sitting as readable records a subpoena can reach.
The Electronic Frontier Foundation reviewed ten of the most popular wearable makers, Amazfit, Apple, Coros, Garmin, Google's Fitbit, Hume, Oura, Polar, Suunto, and Whoop, and found only the Apple Watch offers end-to-end encryption for the health data it stores online. Only Apple and Google publish transparency reports, and four makers, Apple, Google, Whoop, and Oura, which added the pledge in June, promise to notify you if law enforcement asks for your data. Because fitness data such as heart rate, GPS, and sleep sits outside HIPAA, a subpoena or warrant can unlock what most makers keep as readable records.
The exposure is not theoretical. The surveillance firm Penlink already lists fitness trackers as an "overlooked source" for investigations, which is the tell that the readable-data default is not an oversight nobody has noticed; there is already a business pointing investigators at it. It is the same gap we keep coming back to: the health information that does not come from your doctor does not get your doctor's legal protection, and the device carrying it is one tens of millions of Americans wear to bed.
eff.org: Most smart watches, rings, and bands lack basic transparency reports and key privacy features (July 15, 2026)
securityaffairs.com: EFF says most smart wearables still fall short on privacy and transparency (July 2026)
4. A free AI tool can now show a city exactly where it has no shade, and where the heat lands hardest, from nothing but the free federal aerial photos it already flies.
Researchers at USC's Spatial Sciences Institute, led by John Wilson, trained AI on the free USDA NAIP aerial imagery to map urban tree canopy and detect individual trees at accuracy the team calls "competitive with far more expensive lidar-based approaches." Then they released it for free: the code plus a ready-to-run ArcGIS model on Esri's Living Atlas, which has been downloaded more than 12,900 times in six months. It validated in San Francisco and Phoenix without retraining, so a city does not need in-house machine-learning staff to run it on its own blocks.
The barrier it removes was never scientific; it was the price. Shade-equity mapping already existed; it just required lidar, the laser scanning that priced smaller cities out. A canopy map is the data a city needs to show where the heat lands hardest, and it tends to land on lower-income blocks with the least tree cover, so the tool's real function is handing a planning office the proof it needs to argue for shade where the argument was previously unaffordable. No chatbot here, just a measurement a cash-strapped city could not otherwise afford to make.
today.usc.edu: USC researchers develop a low-cost AI tool to help cities map urban tree canopy (July 8, 2026)
dornsife.usc.edu: USC researchers develop a low-cost AI tool to help cities map urban tree canopy (July 2026)
» What to watch this week
- Whether Hugging Face adds real safeguards to its most-used image Spaces, and whether US enforcement shifts from app stores toward model hosts. The San Francisco action reached Apple and Google; the open question is whether liability pressure ever reaches the layer that actually distributes these models.
- Which cheaper models enterprises route to as tokenmaxxing unwinds, and whether model-routing vendors are the pivot's real beneficiaries. The tell is whether "audit the token bill" becomes standard budgeting the way managing cloud costs eventually did, or whether the spend simply moves to the next unmetered thing.
- Whether any wearable maker beyond Apple turns on end-to-end encryption, or any state biometric-privacy bill advances to close the HIPAA gap. The scorecard is out; what is missing is any sign a legislature or a maker will move before the next subpoena does.
- Whether the cities downloading USC's canopy tool move planting budget onto the blocks it flags. A free map is a pilot until a council funds a tree; watch whether the trees actually go where it says they should.
Tomorrow's signal lands here.