xAI's Grok 4.5 is now available in GitHub Copilot, bringing the company's coding model to developers using VS Code and other GitHub products.

Copilot spans several products, including cloud agents, the Copilot CLI, and the VS Code IDE, and Grok 4.5 is now accessible across these. To try it, developers pick "Grok 4.5" from Copilot's model picker. Some business and enterprise customers will need to enable the model manually via Copilot settings before it appears.

Grok 4.5 is also available directly through xAI's own console, priced at $2 per million input tokens and $6 per million output tokens.

The move extends Grok's reach into one of the most widely used AI coding assistants. xAI has positioned Grok 4.5 as its smartest coding model to date, with further detail on its coding performance covered in the company's separate Grok 4.5 announcement.


DevSecOps for AI: Why 90% Stays the Same—and the 10% That Changes Everything
Is your DevSecOps pipeline ready for AI—or just ready for the AI you tested last week? AI systems behave probabilistically. The same prompt injection attack can succeed 50 times in a row, then fail completely the next minute. Traditional shift-left testing was built for determinism. AI isn’t. That gap is where risk lives. Three members of Google’s security advocacy team break down what actually changes—and what doesn’t—when AI enters your DevSecOps pipeline. You’ll learn: • Why 90% of AI security is still traditional security—and exactly where the novel 10% creates new exposure • Why DevSecOps transformations fail within a year—and the top-down cultural shift that prevents it • How the latest DORA research shows AI agents amplify existing practices, good or bad, at scale • What AI runtime security (e.g., Model Armor) does that a WAF cannot • Why AI logs capturing PII and system instructions in plain text demand a new approach to observability Key topics: Non-determinism in AI testing • Continuous evaluation vs. pre-deployment scans • Model Armor & runtime security layers • Sensitive data redaction in logs • Prompt injection defense-in-depth • Agentic workload security • WAF limitations with AI agents • DevSecOps governance & top-down culture For CISOs, DevSecOps leads, and security architects navigating AI adoption: the pipeline you spent three years building is mostly still valid. This session tells you exactly what to add. All viewers will receive a c’heat sheet’ compiling links galore courtesy of Aron Eidelman.

Share this post
The link has been copied!