AI Briefing
KO

Closing the Door on AI Security

·2026.04.16 00:43

Key point

Cal.com has switched its production code to closed source, citing AI security threats.

1 / 2

Details

Cal.com is moving its production codebase from a public repository to private, and will operate as closed source going forward.

The reason is the spread of AI security threats. The judgment is that AI can systematically comb through open source codebases to find vulnerabilities, and that the same capability is readily available to attackers as well.

Instead, the company is releasing Cal.diy to the community under the MIT license. However, it has already diverged significantly from the production code, and in particular core systems like authentication and data handling have been rewritten on a large scale.

The company claims that AI can quickly find old vulnerabilities and even turn them into actual exploits, and explains that keeping the code open source would expose customer data and the service to greater risk. For now, it is choosing closed source to prioritize security, but has left open the possibility of returning to open source if the security landscape changes in the future.

This summary was generated automatically by AI. Check the original for the author's claims and context. Copyright belongs to the original author.

Our guide explains how the AI works. Report summary errors, attribution issues, or removal requests via Contact.