Security researchers published findings this week that deserve more attention than they are getting outside of infosec circles. They demonstrated that the encrypted reasoning traces generated by major AI APIs, including those from OpenAI, Anthropic, and Google, can be extracted and transferred between models. In plain terms: the hidden thinking that a model does before it answers can be pulled out and handed to a different model, which can then use it.
This is not a minor footnote. It changes several things we thought were settled about how these systems work, who controls what, and what it means to build a product or a workflow on top of a commercial AI API.



