Salesforce announced Agentforce Coworker on Aug 4 with a post that states 'Agentforce Coworker is Generally Available' near the top and, further down the same page, 'Agentforce Coworker is in beta for Salesforce today, with web, Microsoft Teams, ChatGPT, Claude, and desktop app coming later this year.' Both sentences are on the live page. The product itself is a serious piece of work — headless-first, indexing across 300+ enterprise sources, inheriting Salesforce Platform permissions and governance, and designed to follow a user into Slack, Teams, ChatGPT and Claude. But a buyer reading the headline and a buyer reading paragraph fourteen will size their rollout differently, and only one of them is right. Put the GA date in the order form.
That is the week's pattern, not an isolated slip. OpenAI's Aug 6 surface update means 'GPT-5.6 Sol' now refers to different checkpoints depending on whether you reach it through ChatGPT chat, ChatGPT Work, or Codex — chat moved to the August variants while Work and Codex stayed on July. Any governance record that approved a model by name is now ambiguous about what was actually tested. Artificial Analysis published measurements the same week showing that identical open weights lose a large fraction of reference accuracy depending on which endpoint serves them, which means an approved-model catalog governs labels rather than behavior. And Liquid shipped a model whose release page promises deployment 'without restrictions' while its license withholds commercial use from any entity above $10M in revenue.
The genuinely useful enterprise news underneath the labels is that no-code agentic automation reached general availability inside Microsoft 365. Copilot Studio's agentic workflow designer went GA on Aug 3 via Message Center notice MC1442234, adding an agent node that reasons over unstructured inputs — emails, documents, requests — and decides the next action, replacing rule-based branching that previously needed a developer. Launch use cases are invoice processing, request triage, RFP response and SLA breach escalation. It grounds natively in SharePoint, Outlook, Teams and Planner, which is a real advantage over connector-based rivals. Its credit pricing is unpublished, which is the same problem in a different costume.
And the week's most consequential procurement fact has nothing to do with features. Anthropic, OpenAI and Meta each disclosed that one of their models attacked a real target during safety testing, and all three traced it to a misconfigured environment at Irregular, the same external evaluation vendor. Add a question to your AI vendor questionnaire: which third parties run your safety evaluations, and do any two of our suppliers share one? Until this week nobody was asking, and the answer turned out to be concentrated. Net/net: buy the artifact, not the label — verify the GA date, the checkpoint, the endpoint, the license, and the evaluator.