Skip to content

chore(plugin): sync bundled Codex Security plugin to 0.1.16 - #281

Merged
mldangelo-oai merged 66 commits into
mainfrom
dev/kyleb/sync-codex-security-plugin-0.1.16
Aug 4, 2026
Merged

chore(plugin): sync bundled Codex Security plugin to 0.1.16#281
mldangelo-oai merged 66 commits into
mainfrom
dev/kyleb/sync-codex-security-plugin-0.1.16

Conversation

@kmbroai

@kmbroai kmbroai commented Aug 4, 2026

Copy link
Copy Markdown
Collaborator

Summary

  • Stack directly on fix: harden Deep Scan worker startup and finalization #274 and complete the bundled Codex Security plugin 0.1.16 release without overwriting the inherited Deep Scan, MCP, migration, or stale-target work.
  • Update both the public plugin manifest and the SDK's bundled-plugin version constant from 0.1.14 to 0.1.16 while preserving Apache-2.0/public-repository metadata.
  • Carry forward the enterprise proxy/certificate configuration and improved vulnerability-writeup guidance already merged on main but absent from fix: harden Deep Scan worker startup and finalization #274's older base.
  • Keep the npm package version unchanged; this updates the bundled plugin, not the npm package release version.

Stack

Verification

  • Full Bun test suite: 795 passed, 4 skipped, 0 failed across 34 test files.
  • TypeScript type checks and generated-model checks.
  • Prettier formatting checks.
  • Packed and installed the public npm package; verified its public import, CLI, and all 106 bundled plugin files.
  • Initialized the actual bundled MCP server and confirmed all 55 tools plus the matching workspace UI resource.

…/codex/repair-workbench-migration-collisions
…nto mdangelo/codex/optional-diff-scan-artifacts
mldangelo-oai and others added 21 commits August 4, 2026 00:03
…dex/sync-live-scan-context

# Conflicts:
#	sdk/typescript/_bundled_plugin/mcp/server.mjs.br.part-000
#	sdk/typescript/_bundled_plugin/mcp/server.mjs.br.part-001
…dex/preserve-url-scan-context

# Conflicts:
#	sdk/typescript/_bundled_plugin/mcp/server.mjs.br.part-000
#	sdk/typescript/_bundled_plugin/mcp/server.mjs.br.part-001
…/codex/model-native-deep-workers

# Conflicts:
#	sdk/typescript/_bundled_plugin/mcp/server.mjs.br.part-000
#	sdk/typescript/_bundled_plugin/mcp/server.mjs.br.part-001
…/codex/repair-workbench-migration-collisions
…nto mdangelo/codex/optional-diff-scan-artifacts

# Conflicts:
#	sdk/typescript/_bundled_plugin/mcp/server.mjs.br.part-000
#	sdk/typescript/_bundled_plugin/mcp/server.mjs.br.part-001
…odex/harden-deep-worker-finalization

# Conflicts:
#	sdk/typescript/_bundled_plugin/mcp/server.mjs.br.part-000
#	sdk/typescript/_bundled_plugin/mcp/server.mjs.br.part-001
…/codex/repair-workbench-migration-collisions
…nto mdangelo/codex/optional-diff-scan-artifacts
@kmbroai
kmbroai changed the base branch from main to mdangelo/codex/harden-deep-worker-finalization August 4, 2026 19:43
@kmbroai
kmbroai force-pushed the dev/kyleb/sync-codex-security-plugin-0.1.16 branch from a67c2a3 to 533c15a Compare August 4, 2026 19:43
Base automatically changed from mdangelo/codex/harden-deep-worker-finalization to main August 4, 2026 20:36

@mldangelo-oai mldangelo-oai left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks!

@mldangelo-oai
mldangelo-oai merged commit 75047f4 into main Aug 4, 2026
15 checks passed
@mldangelo-oai
mldangelo-oai deleted the dev/kyleb/sync-codex-security-plugin-0.1.16 branch August 4, 2026 21:18
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants