Cal.com shifts to closed-source model citing AI threats

Cal.com, a popular open-source scheduling platform, has announced it is switching to a closed-source model after five years. The company cited the growing risk of AI-powered vulnerability scanning as the primary reason. The original codebase will continue as Cal.diy under the MIT license for personal use.

Cal.com, known as a self-hostable alternative to Calendly, made the announcement on April 17. Co-founder Bailey Pumfleet explained that AI has transformed vulnerability exploitation, allowing models to systematically scan public repositories with minimal manual effort. He referenced an instance where AI tools identified a 27-year-old vulnerability in the BSD kernel and produced working exploits within hours. By the time of the announcement, the production codebase had already diverged significantly from the public version, with rewrites to core systems like authentication and data handling. Cal.diy, the community-maintained fork, is available now under the MIT license and supports installation via platforms including Docker, Vercel, Railway, and Render. It includes essentials such as event types, calendar integrations, video conferencing, webhooks, and API access. However, the documentation emphasizes it for personal, non-production use only, with a 'use at your own risk' disclaimer and no official support from Cal.com. Missing from Cal.diy are enterprise features like Teams, Organizations, SAML SSO, SCIM directory sync, Workflows, Routing Forms, and the Insights Dashboard. The project directs commercial users to the paid Cal.com product for enterprise-ready scheduling infrastructure.

Related Articles

Dramatic illustration of Anthropic imposing a paywall on Claude AI, blocking third-party agents from overloaded servers.
Image generated by AI

Anthropic ends unlimited Claude access via third-party agents, requires extra payments for heavy use

Reported by AI Image generated by AI

Anthropic has restricted unlimited access to its Claude AI models through third-party agents like OpenClaw, requiring heavy users to pay extra via API keys or usage bundles starting April 4, 2026. The policy shift, announced over the weekend, addresses severe system strain from high-volume agent tools previously covered under $20 monthly subscriptions.

A surge in AI written code submissions is overwhelming volunteers who maintain open source software, leading some to quit the field entirely.

Reported by AI

Daniel Stenberg, creator of the widely used curl program, draws parallels between his project and a cyberattack that nearly succeeded two years ago. In an interview in Huddinge, he stresses the importance of trust in open-source software underpinning the internet. An expert warns he could theoretically shut down half the internet.

Following earlier reports of direct attacks on OpenClaw AI agents, TechRadar warns that infostealers are now disguising themselves as Claude Code, OpenClaw, and other AI developer tools. Users should exercise caution with search engine results. Published March 18, 2026.

Reported by AI

Google has begun rolling out a new 'Skills' feature in its Chrome browser on desktop, enabling users to save and quickly reuse custom Gemini AI prompts. The update makes it easier to repeat tasks like calculating protein in recipes or comparing products across tabs. Skills sync across devices when signed into a Google account and include a library of premade prompts.

This website uses cookies

We use cookies for analytics to improve our site. Read our privacy policy for more information.
Decline