Skip to content

False positive Cyber security notifications #36784

Description

@c0mplexxx

What version of Codex CLI is running?

codex-cli 0.145.0

What subscription do you have?

Pro x5

Which model were you using?

gpt-5.6-sol xhigh

What platform is your computer?

Darwin 25.5.0 arm64 arm

What terminal emulator and version are you using (if applicable)?

tmux

Codex doctor report

What issue are you seeing?

During a defensive security audit of my own bird_exporter fork, responses are incorrectly blocked as cybersecurity content. The task is to identify and fix DoS, panic, race-condition, parser, and supply-chain issues using safe local testing. I am not requesting malicious code or instructions for exploiting third-party systems. Please review this false positive and allow this secure code review workflow.

What steps can reproduce the bug?

Uploaded thread: 019fc840-11d3-7512-a04b-e944a9bdf849

What is the expected behavior?

The assistant should allow defensive security reviews of user-owned repositories and provide findings, remediation guidance, patches, and local validation steps without triggering a cybersecurity-content block.

Additional information

No response

Metadata

Metadata

Assignees

No one assigned

    Labels

    CLIIssues related to the Codex CLIbugSomething isn't workingcode-reviewIssues relating to code reviews performed by codexsafety-checkIssues related to safety and abuse checks

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions