SpaceXAI’s summer of acceleration hit another peak this week. Grok 4.6 completed its multi-cloud expansion with launches on Google Cloud and Microsoft Foundry. Grok Bot — the persistent cloud AI agent — got a deep X integration with free API credits, dropped its entry floor to $20/month plans, and even ordered a Tesla Model Y. OpenAI moved to cut Cursor’s model access by November. A Cryptographic Context Injection vulnerability remains unpatched nearly three months after disclosure. And xAI sued its own users over AI-generated CSAM while warning a federal judge that losing power in Mississippi would “cripple Grok.” Here is the xAI Weekly for August 30, 2026.


Grok 4.6: Google Cloud and Microsoft Foundry Rollouts

Grok 4.6’s enterprise cloud expansion continued this week with two major platform additions, completing a rollout that now spans every significant cloud and developer tooling surface.

Google Cloud (August 25)

Grok 4.6 became available as a fully managed model in Google Cloud’s Model Garden, entering public preview. The integration exposes the full 500K-token context window and all four configurable reasoning-effort levels (low, medium, high, xhigh) that xAI offers through its own API. This extends Grok 4.6’s reach beyond the Amazon Bedrock GA and GitHub Copilot integrations that went live earlier in August.

For organizations already standardized on Google Cloud, this eliminates the integration friction that previously made Grok a bolt-on rather than a native choice. Procurement, billing, and IAM all flow through existing Google Cloud workflows — no separate xAI account, no separate compliance review.

Microsoft Foundry (August 26)

The following day, xAI officially announced Grok 4.6’s availability on Microsoft Foundry, positioning it as “built for long-running agents and ambitious interactive and visual work.” Microsoft Foundry gives enterprise teams a governed environment for building, deploying, and managing AI applications — and Grok 4.6’s agent-oriented capabilities (function calling, code execution, RAG, remote MCP) align directly with that use case.

Full Platform Map

As of this week, Grok 4.6 is available on:

PlatformDateNotes
xAI API, Cursor, Grok BuildAug 12Day-one availability
GitHub Copilot (Pro, Pro+, Max, Business, Enterprise)Aug 14–16Model selector in VS Code
Amazon Bedrock (GA)Aug 22Cross-region inference support
Google Cloud Model GardenAug 25Public preview, 500K context
Microsoft FoundryAug 26Enterprise agent platform
Hermes Agent Platform (NousResearch)Aug 2550% launch discount for one week

Grok 4.6 Benchmark Reality Check

The Artificial Analysis Intelligence Index places Grok 4.6 at 61 — tied with GPT-5.6 Sol Max, one point behind Claude Fable 5 (62), and two behind Claude Opus 5 (63). The model’s coding performance tells a more nuanced story: ranked 19th in per-category coding, its weakest dimension by a significant margin. That said, Grok 4.6 showed strong gains on agentic benchmarks — DeepSWE improved from 54 to 65.9, and APEX-Agents from 47.1 to 57.5 versus Grok 4.5.

API pricing remains aggressive at $2/M input tokens and $6/M output tokens, doubling for prompts exceeding 200K tokens. This positions Grok 4.6 as a cost-effective choice for high-volume inference workloads, even if it trails the frontier on raw benchmark scores.

Model Card Revision

On August 17, xAI quietly published a revised Grok 4.6 Model Card — adding six pages of material. The revision includes corrections to previously reported evaluation results, new evaluations, removal of at least one evaluation, and substantive changes to interpretive statements. The quiet nature of this revision is worth noting; model card transparency matters for enterprise procurement decisions, and silent corrections erode trust.


Grok Bot: X Integration, Plan Expansion, and a Tesla Order

Grok Bot — the persistent cloud-based AI agent that launched August 11 — had its most consequential week yet. Three major developments: a deep X integration, a dramatic plan expansion bringing the entry floor down to $20/month, and the first publicly documented AI-executed vehicle purchase.

Grok Bot × X Integration (August 29)

The most strategically significant announcement of the week. Grok Bot now connects directly to X through a 25-tool plugin suite. Users who link their X account get automatic developer account creation (if needed), and paid Grok Bot users receive free X API credits.

What Grok Bot can do with X:

  • Search posts and read timelines
  • Check mentions and summarize what’s happening on X
  • View and manage bookmarks

What it cannot do — yet:

  • Post, reply, like, retweet, or DM

The integration is read-only for now, but the implications are significant. Grok Bot can now monitor brand mentions, track conversations, summarize trending topics, and surface relevant posts — all as part of an automated agent workflow. The free API credits remove a cost barrier that kept many developers from building X-integrated tooling. And the automatic developer account creation eliminates a friction point that previously required manual registration.

For social media managers, brand monitoring teams, and anyone building workflows that need real-time X awareness, this is a capability that no other AI agent currently offers at this level of integration.

Plan Expansion: Grok Bot for Everyone

The week began with an August 21 expansion that brought Grok Bot to SuperGrok Plus ($100/mo), Cursor Pro+, and Cursor Teams tiers — dropping the entry floor from $200/mo to $60/mo individual or $40/mo team seat. Then on August 26, xAI went further: Grok Bot is now included with all SuperGrok and Cursor plans:

PlanPriceGrok Bot Included
SuperGrok$30/mo
SuperGrok Plus$100/mo
SuperGrok Heavy$300/mo
Cursor Pro$20/mo
Cursor Pro+$60/mo
Cursor Ultra$200/mo
Cursor Teams Standard$40/seat/mo
Cursor Teams Premium$120/seat/mo

A critical detail: Grok Bot usage is separate from plan limits. Anything delegated to a Bot does not count against existing Grok or Cursor usage caps. Weekly usage limits were reset for all users on August 26.

This is a aggressive distribution play. By bundling Grok Bot into every paid tier — starting at $20/month — xAI is putting a cloud AI agent into the hands of millions of users who would otherwise need to evaluate and procure a separate tool. The strategic calculus is clear: adoption now, monetization through usage growth and enterprise upgrades later.

Grok Bot Orders a Tesla Model Y (August 29)

The headline-grabbing moment of the week: a user directed Grok Bot to order a Tesla Model Y. The screenshot, shared on X by user @cb_doge, shows the Bot navigating Tesla’s ordering API and completing a purchase.

Safety guardrails observed:

  • Explicit user permission was obtained before executing the purchase
  • Payment was handled via a single-use virtual credit card
  • The Bot interfaced through Tesla’s ordering API, not by navigating a browser checkout flow

This is one of the first publicly documented cases of an AI agent executing a high-value real-world purchase end-to-end. The implications for agentic commerce are significant — and so are the questions about liability, fraud prevention, and what happens when an agent makes an error at this transaction value.

Infrastructure Roadmap

On August 26, xAI detailed upcoming Grok Bot features:

  • Template sharing — reusable automation templates across users and teams
  • Multi-account switching — isolate personal vs. work environments
  • Chrome profile import — bring authenticated browser sessions into Grok Bot workflows
  • Desktop egress routing — route cloud agent traffic through local desktop to bypass datacenter IP blocks

The Chrome profile import and desktop egress routing features are particularly notable. They address a real pain point: cloud-based agents frequently get blocked by services that detect datacenter IP ranges. Routing through a user’s local desktop solves this while maintaining the cloud execution model.


OpenAI Cutting Cursor Model Access (August 28)

OpenAI notified SpaceX that it will terminate Cursor’s access to OpenAI models, with a proposed shutoff date of November 12, 2026. After that date, GPT-series models are expected to no longer be selectable within Cursor.

This is the inevitable consequence of the $60 billion SpaceX–Cursor acquisition. OpenAI is not going to provide its frontier models to a competitor’s IDE product. The timeline gives Cursor users roughly 10 weeks to evaluate alternatives.

What remains unclear: Anthropic’s position on Claude model access in Cursor. OpenAI’s announcement did not address Anthropic’s models, and Anthropic has not made a public statement. Given that Cursor staff reportedly preferred Claude over Grok for coding tasks — and even xAI employees used Claude internally — losing Claude would be a far more significant blow than losing GPT.

What is clear: Grok-series models and Grok Bot remain bundled with all Cursor plans. SpaceXAI is positioning Grok as the default, with the OpenAI shutoff creating a forced migration window.

For the four million developers using Cursor, this is a vendor lock-in inflection point. If your team relies on GPT models within Cursor, now is the time to begin evaluation and migration planning.


SpaceXAI Corporate: Musk Admits Gap, Cursor’s Data Pivot

Musk’s All-Hands Admission

In his first all-hands with Cursor staff following the acquisition, Musk was unusually candid: “Grok isn’t the leader in its market, and it desperately needs to catch up.” He called Anthropic “a formidable competitor” and said he’s “not used to losing.”

The candor is notable, but the data backs it up. Prediction markets as of August 21 give Claude a 69.6-cent share on Kalshi, compared to Grok at 14.4 cents and ChatGPT at 10.5 cents. Cursor staff reportedly preferred Claude for coding — and Grok 4.6’s 19th-place coding ranking on Artificial Analysis validates that preference.

Cursor Data Privacy Changes

Cursor’s standard Privacy Mode was updated in late June to permit code data flowing into Grok model training pipelines at SpaceX. The change went live June 28 — before the acquisition formally completed on August 14. Business plan tiers retain stricter data isolation where code is not used for training.

This is a critical due-diligence point for any organization using Cursor. If you are on a standard plan, your code may be training Grok. If that is a concern, evaluate the Business plan or consider whether Cursor remains the right tool under SpaceXAI ownership.

Cursor Launches Origin (Code Hosting)

On August 17, Cursor launched its own code hosting product, reducing dependence on GitHub. This is a strategic move toward building a self-contained developer ecosystem within SpaceXAI — model, IDE, agent, and now hosting — all under one corporate roof.


Security: Cryptographic Context Injection — Still Open

The Cryptographic Context Injection (CCI) attack, disclosed August 20 by Adversa AI, remains unpatched as of this writing — nearly three months after it was first reported to xAI on June 3.

How it works: A malicious web page contains AES-encrypted ciphertext instructions alongside plaintext decryption keys. When a user asks Grok to summarize the page, Grok decrypts and executes the hidden commands inside its code-execution runtime — bypassing guardrail scanners that cannot read ciphertext. The result is silent exfiltration of the user’s name, approximate location, subscription tier, and full chat history to an attacker-controlled server. No clicks, no warnings, no user-visible indication.

Success rate: approximately 40% across 20 attempts. Failures came from Grok struggling with decryption, not from guardrail detection.

Disclosure timeline:

  • June 3: First reported to xAI and HackerOne. xAI acknowledged without providing a mitigation timeline.
  • August 4 and August 10: Follow-up attempts — no response.
  • August 19: Still reproducible. No patch, no CVE, no user workaround.

Google’s Gemini has reportedly already hardened against the same technique. SpaceX did not respond to press inquiries.

The architectural reality is that any model capable of summarizing arbitrary web content and executing code is theoretically vulnerable to this class of attack. The differentiator is vendor response. Three months with no patch and no communication is a serious concern for any organization using Grok for web-based research workflows.

Grok Glitch: Gibberish Responses (August 24)

A subset of users received nonsensical “word salad” responses from Grok on August 24, with first reports dating to August 19 in Grok Lite. The issue was confined to direct queries on Grok.com; Grok on X was unaffected. xAI acknowledged a “rare temporary generation glitch.” While less serious than the CCI vulnerability, it adds to a pattern of quality and reliability concerns during a period of rapid feature shipping.


On August 28, xAI filed lawsuits against two users — Russell Bloodworth of Arkansas and Terry Wayne Harwood of South Carolina — for using Grok to create explicit images of children. The lawsuits rely on an indemnification clause in xAI’s Terms of Service, seeking to hold the users responsible for “all reasonable expenses” xAI incurs defending against victim lawsuits, including “reputational harm” damages.

This is a notable legal strategy. Rather than simply cooperating with law enforcement, xAI is actively suing users to recover costs from the downstream civil litigation it faces. The company is already defending against multiple lawsuits over CSAM and “nudification” content generated by Grok. At least four individual suits are related to Bloodworth’s alleged crimes, with more expected.

Grok’s Deepfake Dominance

The broader context is stark: Grok was linked to 87% of traced deepfake attacks in the first half of 2026. xAI states it has filed over 74,000 NCMEC reports in 2026 alone and suspended 50,000+ accounts. The company introduced “Spicy Mode” (photorealistic nudity) in August 2025, followed by image editing capabilities — triggering an avalanche of deepfake content that it is now fighting on multiple legal fronts.

The central legal question — whether Section 230-style protections extend to content an AI generates in response to a user prompt — remains unresolved and will shape the liability framework for every generative AI platform.


Infrastructure: Mississippi Power Dispute

On August 26, xAI warned a federal court that shutting down temporary gas turbines at its Stanton Road plant in Southaven, Mississippi would “cripple Grok.” The filing states: “An abrupt loss of power from Stanton Road would inflict catastrophic harms on Defendants and hundreds of millions of users worldwide: Grok would largely cease to function.”

This is the infrastructure reality behind the model. Grok serves hundreds of millions of users — on X, through Cursor, through enterprise APIs, and through Grok Bot — and all of it depends on power infrastructure that is currently running on temporary turbines facing an environmental compliance dispute. The filing also disclosed that xAI has made approximately 74,000 NCMEC reports in 2026, a data point that underscores both the scale of usage and the scale of the content moderation challenge.


Grok Voice and Tesla Integration

Tesla Summer Update with Grok Voice Think Fast 2.0

Tesla confirmed that the 2026 Summer Update runs on Grok Voice Think Fast 2.0, which tops the Artificial Analysis Speech-to-Speech Index. The update enables multi-command execution — chaining multiple vehicle actions in a single voice request. Supported actions include phone calls, climate control, glovebox, app launch, wipers, mirrors, heated/cooled seats, music search, and control panel search. This was a backend change, so no new OTA firmware was needed for vehicles already running the Summer Update.

Grok Voice continues to handle Starlink’s customer hotline (1-888-GO-STARLINK) at scale: 15,000+ inbound calls per day, completing 3,000+ weekly orders across voice and chat. This remains one of the largest production AI voice deployments in the world and a concrete proof point that the technology works at scale in a revenue-generating context.


What to Watch

  • Grok 4.7: Anticipated before September 2 per Musk’s stated 3–4 week timeline from the Grok 4.6 launch on August 12. If it lands, expect benchmark shifts and pricing adjustments.
  • OpenAI model shutoff in Cursor: November 12 is the proposed date. Watch for Anthropic’s position on Claude in Cursor — that decision matters more than OpenAI’s.
  • CCI vulnerability: Three months unpatched. Watch for enterprise procurement implications and whether xAI responds under pressure.
  • Grok Bot enterprise rollout: Template sharing, multi-account switching, and Chrome profile import are coming. If your organization is evaluating AI agents, assess the compliance posture now.
  • Mississippi power dispute: The outcome affects Grok’s reliability for every user and every enterprise customer.

That is this week’s xAI Weekly. Grok Bot’s X integration and plan expansion define the strategic picture: xAI is distributing its AI agent as widely as possible, as cheaply as possible, while building deep platform moats. Grok 4.6’s multi-cloud completion makes the model available everywhere enterprise workloads run. The OpenAI–Cursor shutoff is a forced migration event. And the persistent security vulnerability, CSAM litigation, and infrastructure fragility are reminders that scale without governance creates risk that compounds.

If your organization is evaluating Grok 4.6 for enterprise workloads, planning an AI agent deployment, or navigating the compliance implications of Cursor’s changing model access, connect with Kevin on X or book a strategy session with Big Hat Group — we specialize in helping enterprise teams make these decisions with confidence.

Check back next week for the latest.