Skip to content

docs: clarify layered Codex Security agent guidance - #337

Merged
mldangelo-oai merged 2 commits into
mainfrom
mdangelo/codex/security-agents-guidance-20260810
Aug 10, 2026
Merged

docs: clarify layered Codex Security agent guidance#337
mldangelo-oai merged 2 commits into
mainfrom
mdangelo/codex/security-agents-guidance-20260810

Conversation

@mldangelo-oai

@mldangelo-oai mldangelo-oai commented Aug 10, 2026

Copy link
Copy Markdown
Collaborator

Summary

  • Keep repository-wide agent guidance short and distinguish trusted local processes from untrusted repository content.
  • Add SDK-specific guidance for credential and path protections, user-requested limits, cross-platform behavior, and focused tests.
  • Require visibility checks before mentioning another repository publicly.

Verification

  • prettier --check AGENTS.md sdk/typescript/AGENTS.md
  • git diff --check

@github-actions github-actions Bot added the documentation Improvements or additions to documentation label Aug 10, 2026

Copy link
Copy Markdown
Collaborator Author

@codex review

@chatgpt-codex-connector

Copy link
Copy Markdown

Security review completed. No security issues were found in this pull request.

Reviewed commit: 205562a640

View security finding report

Only the user who started this review can view the report in Codex.

ℹ️ About Codex security reviews in GitHub

This is an experimental Codex feature. Security reviews are triggered when:

  • You comment "@codex security review"
  • A regular code review gets triggered (for example, "@codex review" or when a PR is opened), and you’re opted in so security review runs alongside code review

Once complete, Codex will leave suggestions, or a comment if no findings are found.

@chatgpt-codex-connector

Copy link
Copy Markdown

Codex Review: Didn't find any major issues. Swish!

Reviewed commit: 205562a640

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

@mldangelo-oai
mldangelo-oai requested a review from ianw-oai August 10, 2026 19:40
@mldangelo-oai
mldangelo-oai marked this pull request as ready for review August 10, 2026 19:40
@mldangelo-oai

Copy link
Copy Markdown
Collaborator Author

@codex review the exact current head ab95dd1, focusing on security boundaries, cross-platform behavior, and unnecessary complexity.

@chatgpt-codex-connector

Copy link
Copy Markdown

Codex Review: Didn't find any major issues. Chef's kiss.

Reviewed commit: ab95dd173c

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

@chatgpt-codex-connector

Copy link
Copy Markdown

Security review completed. No security issues were found in this pull request.

Reviewed commit: ab95dd173c

View security finding report

Only the user who started this review can view the report in Codex.

ℹ️ About Codex security reviews in GitHub

This is an experimental Codex feature. Security reviews are triggered when:

  • You comment "@codex security review"
  • A regular code review gets triggered (for example, "@codex review" or when a PR is opened), and you’re opted in so security review runs alongside code review

Once complete, Codex will leave suggestions, or a comment if no findings are found.

@mldangelo-oai
mldangelo-oai merged commit 2c835cd into main Aug 10, 2026
17 checks passed
@mldangelo-oai
mldangelo-oai deleted the mdangelo/codex/security-agents-guidance-20260810 branch August 10, 2026 23:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

documentation Improvements or additions to documentation

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants