Repository navigation
Codex fork 0.162.0
This main-based fork release follows fork 0.160.0. It is not a byte-for-byte rebuild of OpenAI's official 0.162.0 release. It includes the preserved fork runtime, matching Go SDK, and five verified platform packages.
Comparison and source
- Previous fork runtime and SDK source:
54fc12f7aa, published as 0.160.0. - Previous pinned base:
2cf9b0875a. New pinned local merge base:5a2a6eacc62e897edcf7aa2d4d544100aefffc3f, combining observedorigin/main@2af3fe862dwith OpenAImain@515c291d87. The local merge retains this fork's release-workflow customization; it does not change OpenAImain. - Official OpenAI 0.162.0 was published 2026-10-08 at 18:55:59 UTC. Its tag object is
1f3f93473394b620b35580859b7e6864f7a9f948, peeling toc1382380de. This fork follows the pinned main-based history, not that official release branch. - Reviewed semantic source:
cc065ef0a4. Independent product and engineering review found no blocking or non-blocking findings. Version-stamped 0.162.0 source:045ae853a9, pushed with an exact lease. The single pinned five-target build was dispatched on 2026-10-08 at 22:49:29 UTC and all five jobs succeeded by 2026-10-09 at 01:14:27 UTC. Matching annotatedrust-v0.162.0andsdk/go/v0.162.0tags both point to this exact release source.
The upstream section below covers all 220 non-merge commits between the pinned bases in git log order, not every change on OpenAI's official 0.162.0 release branch. Exact commit links follow at the end.
Upstream changes since fork 0.160.0
Agents, context, and history
- Agent state and capabilities survive more idle-unload, navigation, and fork scenarios; shutdown failures have bounded diagnostics. Upstream removes partial-history subagent forks.
fork_turnsnow advertisesallornone; numeric strings are legacy aliases for full history, not a last-N-turns mode. - Turn lineage is exposed and persisted across app-server turns, queued mail, recovery, compaction, and host-owned Apps calls. Subagent activity records resolved model and reasoning effort; partial assistant answers gain a message phase and consistent handling in agent workflows, realtime routing, and thread search.
- Compaction replacement history installs full captured context. Context parts gain source attribution, Guardian sender context can be recovered from persistence, and tool-call metadata preserves completeness even when large recorded arguments are truncated. Fork-specific raw replay, originating truncation, compaction headroom, and cache behavior were reconciled with this full-context format.
Code Mode, MCP, app-server, and security
- JavaScript Code Mode gains ranked discovery, description-first ordering, promise settlement streaming helpers, default interruption, and gRPC session recovery. Incremental tool updates distinguish namespace removals and preserve base-instruction history.
- Guardian gains opt-in trust for orchestrator connector identities, concurrent conversation classification with ordered actions, checkpoint recovery, retained sender context, stricter assessment parsing, and issuing-step context for MCP elicitation reviews. MCP and environment handling adds required-skill checks, selected-environment context, verified sandbox-launcher exposure, and clearer verification failures.
- App-server protocol additions include
thread/list.excludedThreadIds, turnparentTurnId/rootTurnIdlineage, subagent model/effort, independent Fast/Ultra Fast requirements, browser-extension request headers, environment WebSocket request IDs and required skills, and an opaque misalignment review target. Experimental prediction forks can inherit parent context; that is opt-in protocol behavior, not a default fork mode. - Application network policy is enforced for daemon updates and standalone MCP commands; proxy DNS checks authorize hostnames first. Sandbox integrity checks, MXC policy/SDK updates, and Windows sandbox fixes also landed. These upstream security controls must not be weakened during fork reconciliation.
Terminal UI, daemon, platform, and build
- TUI updates include clickable wrapped links, side-conversation persistence, task pinning and model/effort details, safer config reloads, Daybreak API-key gating, and iTerm2 lifecycle/foreground status. Windows Terminal Shift+Enter, installer, sandbox, and daemon publication paths received fixes.
- Upstream removes the patched zsh execution backend and stops bundling patched zsh. This fork does not restore or package that removed backend. Bazel release-building support and source-package stripping were added upstream; this fork's planned downloadable layout remains the five bin-only system archives below.
Fork reconciliation and Go SDK
All 150 fork commits were replayed: 93 patch-identical, 57 adapted, 0 dropped or unmatched. The frozen semantic candidate passed independent review. Preserved fork behavior includes independent direct-MCP/Code-Mode line and originating output limits; raw rollout replay; custom providers/context overrides; plaintext provider messages; inherited dynamic tools for fresh V1/V2 children; cumulative spawn budgets, follow-ups, quiet waits and parent completion; Guardian isolation; bounded compaction history and capacity retry floors. The loaded-agent budget repair prevents repeated resume/load paths from resetting the current turn's cumulative spawn budget; cold-load seeding and new-turn budgets remain. Existing shared ThreadManager inheritance covers both fresh and forked children without an additional production-side tool-copy path. Bash snapshot replay now explicitly suppresses repeated .bashrc loading without changing capture, login fallback, or sandbox policy. Partial-history fork_turns is intentionally excluded because upstream removed it.
Rust stable/experimental schemas, precomputed exports, serde manifest, and generated Go protocol were regenerated and checked. Six runtime initialize digest constants were refreshed after the protocol regression test detected the stale snapshot. Both the fresh semantic-candidate and final downloaded-release strict handshakes passed. Go SDK changes are:
- Generated raw fields for thread exclusions, turn parent/root IDs, subagent model/effort, config speed/browser requirements, environment skills/WebSocket request ID, and misalignment review target. The existing high-level
TurnOptionsmapsParentTurnIDandRootTurnID; the experimental fork prediction field remains raw-only. - Go source compatibility change:
protocol.SkillMetadata.Pathandprotocol.SkillSummary.Pathchange fromAbsolutePathBuftoLegacyAppPathString(the latter remains optional inSkillSummary). Both still use a JSON string on the wire; Go callers assigning the old named type may need an explicit conversion. - Existing typed
ThreadItemsListCursor, opt-inBackendReasoningStatus, unknownCodexErrorInfopassthrough, MCP OAuthloginIdcorrelation with legacy fallback, explicit goal provenance, strict initialize digest/mode validation, and module pathgithub.com/openai/codex/sdk/goare retained. The protocol and Go checks below passed.
RequestHeader.Value can contain sensitive data. Do not print real values in logs, tests, or issue reports.
Use the runtime and Go SDK from this same 0.162.0 source. Strict protocol digest validation is not implicitly bypassed. Replace the entire binary package, including codex-code-mode-host; do not mix a new CLI with an old app-server or daemon.
Downloadable packages
The release has exactly five bin-only system archives. All five pinned builds, exact runner checkouts, package-layout assertions, codex-cli 0.162.0 runner smokes, and downloaded archive checks passed:
codex-package-aarch64-apple-darwin.tar.gzandcodex-package-x86_64-apple-darwin.tar.gz:bin/codex,codex-app-server,codex-code-mode-host,codex-responses-api-proxy.codex-package-aarch64-unknown-linux-gnu.tar.gzandcodex-package-x86_64-unknown-linux-gnu.tar.gz: the same four binaries plusbin/bwrap; GNU/glibc, not musl.codex-package-x86_64-pc-windows-msvc.zip:.exeversions of the four binaries pluscodex-command-runner.exeandcodex-windows-sandbox-setup.exe.
Optional voice/audio resources, patched zsh, musl builds, individual archives, and provisioned Windows sandbox-service packaging are not part of this bin-only layout. Verified release archive sizes and SHA256 digests (these are the downloadable packages, not the outer Actions artifact ZIPs):
codex-package-aarch64-apple-darwin.tar.gz: 200774406 bytes; SHA2563dff7c3079d48a087e69972079589031805ec60ced622d2ec4df5e3e7b71dd5a.codex-package-aarch64-unknown-linux-gnu.tar.gz: 207930934 bytes; SHA25679c524a1a391f3cd31d8e63692ed81459c2af1ece84a475cf2d3bc8b0c1b6096.codex-package-x86_64-apple-darwin.tar.gz: 214091102 bytes; SHA256353df0f7733a5bfbec4e061a5ddbdf24ca7786ece77ef45f0f7f9f65a1b2896a.codex-package-x86_64-pc-windows-msvc.zip: 232609682 bytes; SHA256634df8cf14962c7b07d8943a5bca9523aeaca39017d9c3b99fb23800737862cb.codex-package-x86_64-unknown-linux-gnu.tar.gz: 221186599 bytes; SHA256af26b4f37fc3c0860e9b783f70967219490006493ce572a520be518f7808161c.
Upgrade note: replacing binaries on disk does not update or restart an already-running app-server/daemon. An older process can still cause configuration or strict protocol-handshake errors. Restart the daemon yourself if appropriate, or use --no-daemon; this release does not modify a running process or installed CLI on its own.
Validation and limitations
- Rebase accounting and preservation checks passed: all 150 fork commits retained, 93 patch-identical and 57 adapted; 297 protected user files unchanged. All 1,307 external Cargo package records match the pinned base. The version stamp changes only the workspace version and 160 local lockfile package versions to 0.162.0; all other parsed Cargo fields remain unchanged. The independent reviewer did not author or repair the candidate.
- Nine adjacent Rust crates passed 1,493 tests, with 9 skipped. Three remote RMCP cases subsequently passed with a fresh helper in the second selected batch. GitHub scripts passed 80 tests. Bazel lock synchronization passed without lockfile drift; config-schema generation had no semantic change.
- Rust app-server-protocol passed 357 tests, with 1 skipped, after the stale initialize digest snapshot was corrected. Stable/experimental schema and precomputed generation, manifest drift check, Go generator checks in stable/experimental/combined modes, and full Go
-racepassed. Conditional real-runtime Go tests were not enabled in that broad SDK run; the strict real-runtime check is separate below. - The targeted core/Code Mode run selected 347 cases: 336 initially passed; all 11 failures were closed by targeted reruns after budget, mock-host, and nine reviewed snapshot updates. Five fresh/fork inheritance cases also passed. Full Code Mode crates were included; the full core suite was not run. Scoped lint fixes/checks passed for five changed crates, followed by repository formatting, diff checks, and protected-file checksums.
- The second selected batch ran 1,056 tests: 1,044 passed initially, including targeted app-server consumers and remote RMCP. Seven daemon failures were stale initialize-response fixtures and passed after the shared mock was updated. One Bash snapshot replay failure was fixed by suppressing repeated RC startup only on replay; the original case and a deterministic SSH startup regression passed with existing sandbox and output assertions retained. The adjacent snapshot run reported 20 passes; successful-test output was not retained, so execution beyond the skip guards of two protected-transport cases was not independently confirmed.
- Four upstream exec-server cases remain host-limited, not passing: three remote fallback cases return the correct output/status but fail empty-stderr assertions because this host's
im-configlogin hook invokessystemd-catunder restricted networking; an isolated clean-profile rerun could not exercise them because nested user namespaces were unavailable. A fourth test's deny of symlinked/dev/fdfails closed during bubblewrap mount setup. Sandbox policy, test assertions, and host startup files were not weakened or changed to hide these limitations. - Fresh semantic-candidate CLI/helper build and isolated
codex-cli 0.160.0smoke passed before the release-only version stamp. After the Bash repair, the refreshed build passed in 30.25s and required-real-runtimeTestRealAppServerInitializeStrictDigest -count=1passed in 0.277s. The downloaded Linux x86_64 release reportscodex-cli 0.162.0and passed that same required strict test in 0.216s, using isolated/mock homes and no compatibility override. - All five builds and exact source checkouts passed. Downloaded outer artifact ZIP sizes/SHA256/CRC, inner gzip/ZIP integrity, exact bin-only layout, ELF64/Mach-O 64/PE32+ architecture for all 24 binaries, and Unix 0755 permissions passed. Archive checks do not claim full cross-platform functional test coverage.
- Full Rust core, workspace, app-server, platform-wide, Docker/Wine, and official-release suites were not run. Results from 0.160.0 are not evidence for this candidate. No real OAuth login or paid provider call was made.
Source and full upstream changelog
- Previous fork release 0.160.0.
- Pinned base comparison.
- OpenAI official 0.162.0 release (a different release-branch history).
All 220 upstream non-merge commits since the previous pinned base
515c291d87Preserve large arguments in executed tool call metadata (openai#52268)3b6ab3471aNormalize formatting in docs, web assets, and sample scripts (openai#52256)75e0b4088eAdd opt-in Guardian trust for orchestrator connector identities (openai#52250)c9e0fffbbcEnable parallel execution for read-only tools (openai#52245)845345b1ddPreserve subagent capabilities independently of forked history (openai#52241)137f25f643Recover gRPC code-mode sessions after missing-session errors (openai#52235)54685110a7Support request IDs in exec-server WebSocket handshakes (openai#52234)5505a80f38Honor API-key feature gates in TUI Daybreak selection (openai#52228)96d238d0b9Include foreground activity in iTerm2 session status (openai#52226)bfe0fb9bb9Fix config rebuild call in the Windows MXC preference test (openai#52225)d570b3632bEnforce application network policy for daemon updates (openai#52223)89d68bc8d2Add configurable default plugin activation policy (openai#52220)79773e8826Enforce application network policy in standalone MCP commands (openai#52215)a645742bb5Stop bundling patched zsh in Codex packages (openai#52213)ade12342e2Expose Codex lifecycle status in iTerm2 sessions (openai#52203)c079352d83Allow plugin toggles while searching and preserve filters on refresh (openai#52200)ad54b75574Track source attribution for individual context parts (openai#52195)f90a578f76Enforce managed MXC requirements on Windows (openai#52193)5fe2152b60Preserve side conversations across thread navigation (openai#52184)d650bd7c05Add optional descriptions to agent message board channels (openai#52183)78a19f5ab5Expose a verified sandbox launcher to local MCP servers (openai#52182)e9e6cf6349Strip symbols from source-built release package binaries (openai#52178)bc1f22455dSet a User-Agent for package archive downloads (openai#52177)6f6e80bcddShow AWS GovCloud guidance at startup and remember acknowledgment (openai#52176)8c818cbed4Make environment context date and timezone configurable (openai#52164)cd85a26caeRemove the patched zsh shell execution backend (openai#52160)9b738582b1Expose originating tool call metadata in command environments (openai#52119)2fdf047c96Fix idle cleanup for disconnected multi-agent v2 children (openai#52081)be2e129ecdRequire assessment text in the Guardian parser (openai#52065)48bd7667caAdd scenario coverage for worker context across idle eviction (openai#52062)624b45c4dcRun Guardian conversation classifiers concurrently and preserve action order (openai#52061)19b7bffd7bCover instant interruption in steered-input persistence tests (openai#52048)b12ac84be9Add regression coverage for cancelled agent reloads (openai#52040)d2a6dac20bPreserve agent state when unloading idle multi-agent v2 children (openai#52034)ea27864f99Log Windows sandbox availability and backend selection (openai#51974)14c8b7771aAttribute compaction analytics to the correct voice session (openai#51963)e974aad3b1Support model-specific function description prefixes (openai#51930)82e70121f8Honor the user input setting for asynchronous questions (openai#51908)529cd6b860Use a dedicated matcher for network domain policies (openai#51897)dd178bb7caPreserve native errors in Windows sandbox ACL diagnostics (openai#51896)fac5d0ba91Report specific reasons for WebSocket continuation failures (openai#51895)70efa82b09Record metrics for incremental tool updates (openai#51893)35a9b70444Preserve tool call completeness when recorded arguments are truncated (openai#51892)c333d755d4Add the missingmxc-sdkUTF-8 resource patch for Bazel (openai#51890)ec8251c545Add experimental prediction forks that inherit parent context (openai#51884)f73a478c87Keep global app-server config independent of the launch directory (openai#51872)fbe97c7929Record tool registration metrics for each sampling request (openai#51868)eef4719927Preserve line breaks and links in multiline async questions (openai#51866)746103b592Use readable plugin mentions without suppressing same-name skills (openai#51865)b7a76bce20Add an app-server prompt prefix compatibility test (openai#51857)47b195de5cBuild Bazel release artifacts alongside Cargo artifacts (openai#51856)41d5adfbe6Add Bazel support to the Codex package build action (openai#51855)02d78ab053Add Bazel release staging archives (openai#51850)391bf191c2Fix package smoke tests for Cargo and Bazel debug symbols (openai#51849)745d865521Align Bazel release builds with Cargo and fix platform compatibility (openai#51848)6ea82c59c6Preserve Cargo package names in Bazel Rust builds (openai#51847)cba716c0f1Run sandbox integrity checks before commands and filesystem operations (openai#51843)c2eb1f42a0Add a sandbox integrity runner with outcome and timing metrics (openai#51842)b5c37c35fdAdd a macOS Seatbelt backend for sandbox integrity (openai#51841)d9960e12bbAdd a bubblewrap backend for sandbox integrity checks (openai#51840)72c959528eEnable code mode interruption by default (openai#51835)3342ee8c07Add MXC sandbox integrity dependency and policy preparation (openai#51831)11da6b9edcAdd policy-based file contents integrity checks (openai#51828)cef2a64531Share MCP binding tool metadata with prepared calls (openai#51823)dd12f892f1Avoid sharing violations when repairing Windows runtime ACLs (openai#51822)1c7c43cd85Migrate the MXC sandbox to the 1.0.0 SDK (openai#51819)406b0c4446Enable instant interrupts by default (openai#51812)b38942ce7cPreserve diagnostic reasons for MCP user verification failures (openai#51808)8f21b7fffbRemove duplicate field initializers in extension registry tests (openai#51800)87be737b66Advertise Ultrafast for GPT-6.1 Sol on Amazon Bedrock (openai#51794)622e9e3696Preserve sandbox overrides across execution requests (openai#51786)9dd798805fPrevent recursive Tokio tracing in telemetry and SQLite logs (openai#51775)bd5564fec4Expand OpenAI Docs migration guidance to the GPT-6 model family (openai#51768)3e544e8437Reduce tool metadata cloning in the code-mode runtime (openai#51761)4d53e6ba0eReuse MCP handler metadata for cache comparisons (openai#51755)2dae757b87Load persisted sender context for Guardian reviews (openai#51734)0e1520605fFix a discovery race in the external auth refresh test (openai#51710)0a2a64e942Honor tool-description-first ordering in Code Mode (openai#51704)95ec468619Add a feature flag for Code Mode tool description ordering (openai#51690)1199b39762Wait for helper completion in HTTP header cancellation tests (openai#51689)3421c660d0Roll back stale Guardian reviews before reusing reviewer history (openai#51683)d83bb540ecMove Windows sandbox tests into a dedicated integration binary (openai#51678)b17c74cfd5Record telemetry for AGENTS.md changes made by apply_patch (openai#51652)30bdfec59dPersist Guardian review failures for reports across restarts (openai#51651)37eaae6eebRequire hostname authorization before proxy DNS lookups (openai#51650)a513012869Fix retained context handling for typed section content (openai#51642)5b0b253035Stabilize Guardian snapshot prefixes by separating assistant context (openai#51627)a6baf8867cSignal abandonment of unanswered MCP elicitations (openai#51611)406eb53c07Distinguish thread listing failures from exhausted history (openai#51602)1fbe15c962Add thread ID exclusions tothread/list(openai#51595)5a3140176eExpose package assembly helpers and support gzip DotSlash artifacts (openai#51575)18e28fe1b9Complete dynamic tool lifecycles on cancellation (openai#51556)e95abcdf49Add a Windows MXC sandbox opt-out (openai#51547)4aaee872e3Add completion-aware realtime attachment and session-scoped detach (openai#51539)ac9b5b8380Ignore ripgrep configuration when expanding sandbox deny globs (openai#51527)ed59a6c1cdPreserve the CLI MXC preference in executor config reads (openai#51525)19c4793964Pass thread persistence intent to attachment uploads (openai#51517)24edd7b890Expose detailed agent tree shutdown failure reports (openai#51515)7efc49b258Align Windows sandbox temp permissions with the child environment (openai#51512)9545947c6dFix Windows 10 drive-letter opens for no-follow filesystem operations (openai#51511)eb2d3c6416Preserve live TUI settings when configuration reloads fail (openai#51510)044da98b4aExpose selected environments to MCP contributors (openai#51503)ddabe594e6Bound relay connection attempts and handle pongs during blocked writes (openai#51502)7298a6e020Add shared task pinning to the agent command center (openai#51500)a9bc7bebfaLoad rollout history on a single blocking worker (openai#51499)9479e1fdb7Bind capability roots to environment selections (openai#51493)28cd3e2501Remove obsolete fields from persisted turn context (openai#51492)b3b83ace17Classify executor capability root ownership independently of parsing (openai#51491)0b47040dc9Add correlated, credential-free rendezvous connection diagnostics (openai#51483)c9870d0157Use PathUri for skill identity and path matching (openai#51482)e79c498b5ePreserve tool declaration mode across resumed context windows (openai#51480)0b863c69f5Preserve URL destinations in wrapped hook details (openai#51473)b0a5191bd6Preserve clickable URLs in TUI selection rows (openai#51472)4854cfa643Preserve clickable URLs in pending input previews (openai#51471)8519cde1baRaise the managed app-server file descriptor limit on Unix (openai#51470)5679e675f4Keep submission logs useful without exposing payloads (openai#51467)b2592701e1Keep Guardian transcript records structured through budget recovery (openai#51466)61969074a7Add an optional JSON transcript format for Guardian (openai#51465)b0a6b8d86fRecord resolved model and reasoning effort in sub-agent activity (openai#51463)44984d2081Retry realtime sideband attachment while an existing call activates (openai#51460)414d165b47Preserve wrapped help links in Windows sandbox prompts (openai#51459)858aea3449Make URLs clickable in user verification prompts (openai#51458)e44b9bb3daPreserve status usage hyperlinks when the URL wraps (openai#51457)4b5c111349Make banner URLs clickable across wrapped lines (openai#51452)5da229e54dMake URLs in the TUI warnings viewer clickable (openai#51451)eb2a33aa18Make URLs clickable in MCP elicitation prompts (openai#51450)44fe0289c6Make URLs clickable in TUI user input questions (openai#51449)a9abdeaff1Fix core integration tests for updated turn APIs (openai#51441)f6cf05af1dHonor Retry-After in WebSocket error events (openai#51440)bc3ebcb77dPreserve clickable URLs in TUI approval headers (openai#51439)8e23d1836fShow hook status messages as titles in the hooks browser (openai#51433)0ef50c9f66Prevent invalidated wakeups from starting a turn (openai#51427)6c2c8d5cfeRemove the Bazel JVM override for Windows ARM64 voice builds (openai#51426)f71935b7f0Skip stable installer alias publishing for prereleases (openai#51425)404cd42aa5Accept environment requests at thread and turn settings boundaries (openai#51422)2c3565ebd8Include root turn IDs in host-owned Apps tool calls (openai#51421)946bb6c583Finish idle thread unloads after slow shutdown (openai#51420)f1dd04959cPreserve turn attribution when queued mail wakes durable sleep (openai#51419)cfc946f4e1Expose and persist turn lineage across the app server (openai#51415)ff9ab4aed9Suppress repeated image paste presses in legacy terminals (openai#51411)ccde2fc8b7Protect ripgrep lookup during Linux sandbox construction (openai#51407)551bd409ebPreserve turn attribution across recovery and compaction (openai#51402)a4ebc509f4Prevent later Guardian scores from releasing earlier pending reviews (openai#51400)57d57df608Let late low-risk scores complete pending Guardian reviews (openai#51396)594283af5cMake URLs in asynchronous question titles clickable (openai#51391)73178e7ca6Keep Guardian v2 WebSocket pools warm with concurrent replenishment (openai#51378)c0c230e673Add bounded diagnostics for agent spawn failures (openai#51355)e32365a2c6Allow larger shell snapshots when replaying from a file (openai#51350)588f616e8bMeasure shell snapshot use and wait time per command (openai#51347)dab2cd6056Update collaboration snapshots for full-history fork instructions (openai#51335)79cae5f7fbCount Guardian denial-limit interruptions in telemetry (openai#51334)5ddd19e8a9Record the multi-agent version in turn analytics (openai#51333)c2ae67d769Record multi-agent wait duration by outcome (openai#51332)41acdad246Track sub-agent result delivery outcomes (openai#51331)f5fa209bb0Measure total Guardian approval decision duration (openai#51330)6221a217e2Remove partial-history subagent forks (openai#51329)822e58cc3dHandle partial answers in realtime routing and thread search (openai#51260)162fcb3976Fix installer checksum verification under Windows PowerShell (openai#51257)580b18cb74Start the Windows sandbox service during registered Core setup (openai#51256)7ac954ea24Enforce Fast and Ultra Fast policies independently (openai#51253)989c01a41aHandle partial answers consistently across agent workflows (openai#51249)8b6bb1c77dAdd a partial answer message phase (openai#51241)2f412e60d7Remove default model labels from TUI model pickers (openai#51235)80e0b51c9eMake session lookup pagination stable and report listing failures (openai#51230)d63a9b8344Remove legacy personality template metadata (openai#51223)2dbcab90e2Separate environment requests from runtime selections (openai#51221)28b91c7c31Honor the OTLP metrics temporality preference (openai#51220)4171362e44Preserve review targets and scope misalignment continuation metadata (openai#51217)a811c72969Measure raw MCP tool catalog sizes in telemetry (openai#51215)7aa8f51049Reject sandbox-writable bubblewrap executables from PATH (openai#51211)4d15794336Add ranked tool discovery to JavaScript code mode (openai#51209)5ad6891696Gate CLI Daybreak controls and selection behind an opt-in feature (openai#51207)c19525e55eRecord initialization analytics for resumed subagents (openai#51206)685270a56aMake apply_patch preserve line endings unconditionally (openai#51203)93f8e79fd2Distinguish namespace removals in incremental tool updates (openai#51202)ade17c62b0Upgrade Bazel to 9.2.0 and refresh the module lockfile (openai#51200)54dd21741dAllow concurrent release builds while serializing publication (openai#51198)a6c5f3a9faAdd browser extension request headers to config requirements (openai#51194)b4e3726d73Test thread archiving before the first turn (openai#51193)0d3868a30cWait for SIGCONT when resuming the TUI (openai#51192)36df9544a3Clean up Unix app-server control-socket startup lock files (openai#51191)062439b2f8Record base instructions in incremental tool history (openai#51188)5cbcf810e5Prevent stable release pointers from moving backward (openai#51186)aa6635ece5Retry transient gRPC code-mode session admission failures (openai#51185)7f21b5ee9cRemove obsolete Guardian thread-context enables from tests (openai#51184)7c2ce90716Sign the PowerShell installer in Windows releases (openai#51158)42312d4ff4Enforce required environment skills before model inference (openai#51157)c9253c4977Send base instructions as Responses input messages (openai#51156)3f1ccb7cebIsolate Guardian checkpoint recovery flags per review attempt (openai#51140)16cb72218cForce fresh Guardian sessions for parent-checkpoint recovery (openai#51139)5f8b37cc65Recover Guardian reviews from parent checkpoints (openai#51137)4c9f42f4f8Allow Guardian Decisions to fall back toOPENAI_API_KEY(openai#51133)28a264fbc7Add promise settlement streaming helpers to code mode (openai#51126)402f5b6fdfClarify incremental tool namespace updates in Responses Lite (openai#51119)8571b9eaa4Install full context in compaction replacement history (openai#51117)823ea830c0Preserve trusted-tool context in Guardian Decisions requests (openai#51070)39e013c8b7Use issuing-step context for Guardian MCP elicitation reviews (openai#51067)315f0efb34Scope Guardian V2 response timing to snapshot sampling (openai#51065)c8949e55c2Ignore stale refresh responses in agents overview tests (openai#51064)cacdc46619Honor prior cancellation before starting Codex delegates (openai#51063)435d1b3f19Gate Guardian continuation tests on classifier request capture (openai#51061)7f892275e3Isolate tracing in the strict third-party tool deferral test (openai#50977)4ad985e2caTrack inference tool changes in turn analytics (openai#50964)335c7f8ecaGate stable environment tool exposure behind a feature flag (openai#50962)de3721a7beRecover malformed Windows deny-read ACL state safely (openai#50940)c2f7fe89d8Use server model defaults for connected TUI fresh starts (openai#50913)afb436df8bHonor server reasoning summary defaults in new TUI threads (openai#50811)e57fc9ea5aPrune TUI snapshots and consolidate behavior tests (openai#50808)ab45264919Preserve review lifecycle ordering on failure (openai#50804)8f82b8a31cUse the managed daemon for eligible remote-control launches (openai#50803)b989f795b1Fall back to mklink when Windows daemon junction updates are denied (openai#50802)b8dceb0d4fOpen slash commands from empty drafts in Vim Normal mode (openai#50788)acf9818faeRemember Command Center grouping across launches (openai#50786)d0759639f2Retry Windows daemon release publication on transient file locks (openai#50782)f365d5754bRestrict TUI MCP startup notifications to owned threads (openai#50781)dde5f8c5aeAllow/archivewhile a turn is running (openai#50764)cd7d9e128cShow unavailable slash commands when searched in side conversations (openai#50756)550eb50545Keep environment-backed tools exposed across readiness changes (openai#50741)3e238776e8Show model and reasoning effort near the top of task details (openai#50727)447eac3b81Decode Windows Terminal's mapped Shift+Enter sequence (openai#50720)