` breaks out of the element and lands as raw script markup\", which turns a supposedly valid XHTML hOCR document into an XSS delivery vehicle. Across the three repos, 28 commits and 24 PRs landed, but the headline is JAX: if you're on Python 3.11 or pre-bzlmod Bazel, your next JAX update is your last.","image":["https://repojournal.com/showcase/google/2026-08-19/og.png"],"keywords":"google/jax, googleapis/google-cloud-python","citation":[{"@type":"CreativeWork","name":"[Pallas TPU] Roll back exposing accumulator references to be used with explicit MXU APIs.","url":"https://github.com/jax-ml/jax/pull/40043","publisher":{"@type":"Organization","name":"GitHub"}},{"@type":"CreativeWork","name":"feat(bigtable): initialize internal data client in classic client","url":"https://github.com/googleapis/google-cloud-python/pull/18080","publisher":{"@type":"Organization","name":"GitHub"}},{"@type":"CreativeWork","name":"chore: regenerate google-cloud-bigtable (#18141)","url":"https://github.com/googleapis/google-cloud-python/commit/a3947d04af75d437e7e30d9d1e3dc3b24c44ed36","publisher":{"@type":"Organization","name":"GitHub"}},{"@type":"CreativeWork","name":"fix(documentai-toolbox): enable autoescape in export_hocr_str (#18140)","url":"https://github.com/googleapis/google-cloud-python/commit/0d671d2c5cfd49c5c3e205f1e7e4145f3204d4d9","publisher":{"@type":"Organization","name":"GitHub"}}]}
140 wires and counting

$ follow Google

Keep up with Google in about 3 minutes: what actually shipped — the commits, pull requests, releases, and security advisories that matter.

or

fair warning: these emails are deeply technical. diffs, version numbers, CVEs, benchmark deltas. if that's not your idea of a good read, this isn't your newsletter.

Folds into your digest — weekly by default, monthly if you prefer. Unsubscribe in one click.

$ status

wire 2026-08-19
stories 52

© 2026 RepoJournal Home Showcase How it works Privacy

$ the-wire · showcase

JAX CUTS PYTHON 3.11 AND BAZEL LEGACY IN ONE MORNING

By RepoJournal · Filed · About Google · Composed from the cited sources · methodology

JAX just dropped two maintenance anchors at once, and the message to anyone still on old tooling is unmistakable.

JAX is cleaning house. The project dropped support for Python versions below 3.12 [1], with the minimum now firmly set at 3.12, and simultaneously removed support for non-bzlmod Bazel builds [2], pushing every contributor onto the modern build system. In the same window, a Pallas TPU change exposing accumulator references for explicit MXU APIs was rolled back [3], a reminder that on TPU, the public surface can shift without warning. Over in google-cloud-python, the bigtable classic client now initializes an internal data client [4] to prepare for the new table data API, and the repo regenerated its bigtable bindings to fix an open issue [5]. More urgent: a Document AI toolbox fix enables autoescape in export_hocr_str [6]. The maintainers warn that without it, "a title such as `</title><script>alert(1)</script>` breaks out of the element and lands as raw script markup", which turns a supposedly valid XHTML hOCR document into an XSS delivery vehicle. Across the three repos, 28 commits and 24 PRs landed, but the headline is JAX: if you're on Python 3.11 or pre-bzlmod Bazel, your next JAX update is your last.

Action items

References

  1. [1] Drop code that existed to support Python < 3.12. google/jax ↗
  2. [2] Drop support for non-bzlmod Bazel builds. google/jax ↗
  3. [3] [Pallas TPU] Roll back exposing accumulator references to be used with explicit MXU APIs. ↗ google/jax
  4. [4] feat(bigtable): initialize internal data client in classic client ↗ googleapis/google-cloud-python
  5. [5] chore: regenerate google-cloud-bigtable (#18141) ↗ googleapis/google-cloud-python
  6. [6] fix(documentai-toolbox): enable autoescape in export_hocr_str (#18140) ↗ googleapis/google-cloud-python

Quick answers

What shipped in Google on August 19, 2026?
JAX just dropped two maintenance anchors at once, and the message to anyone still on old tooling is unmistakable. In total, 28 commits and 24 pull requests landed.
Who contributed to Google on August 19, 2026?
7 developers shipped this update, including Allan Renucci, Peter Hawkins, copybara-service, Google Team Member, daniel-sanche, Anthonios Partheniou, and Samina.
What were the notable Google updates?
Drop code that existed to support Python < 3.12, Drop support for non-bzlmod Bazel builds, and [Pallas TPU] Roll back exposing accumulator references to be used with explicit MXU APIs.