Fetching from the wire…
Public story · 2026-08-07 · high
Codex's August 5 changelog also adds clearer terminal explanations of permission changes.
Why now: Codex shipped this change on August 5, the date its changelog assigns to the new cyber-capable review defaults.
Codex 0.146.1 tightened its automatic-review defaults for cyber-capable models on August 5, per the release changelog.
That matters for anyone routing a cyber-rated model through Codex with write access. The harness now picks the review posture, not one blanket rule for every model.
Before this release, Codex applied one permission policy no matter which model was driving the session. Now it checks the model's capability class first, and a cyber-capable rating triggers the tighter review defaults automatically.
The same fix cleaned up how Codex explains permission changes in the terminal. Now the person running it can see what changed, not just that something did.
This only works because a cyber capability rating exists to check. Once every lab attaches one to a model release, permission defaults stop being a fixed harness setting. They become something a developer looks up per model, before granting write access.
Left unclear: how many capability tiers Codex recognizes, and whether models outside the cyber-capable tier get a different default. Who assigns the rating, or how often it changes, isn't in the changelog either.
Each link below shares sources, entities, or timing with this story.
Three things happened this month that only make sense together. Agent Plugins 1.0 shipped co-signed by six competitors: AWS, Anysphere, Microsoft, OpenAI, Vercel and Google (GitHub Changelog). It makes skills-plus-MCP bundles portable across clients. OpenAI's August 11 Codex c...
Shipped August 13 to Pro, Business and Enterprise: ChatGPT and Codex can draw on activity memories from apps and websites on macOS, with per-app opt-in and review or delete controls. OpenAI This is Cursor's Google Workspace connector move, but reaching down to OS-level activit...
Six clients. One manifest. Zero vendor lock. Vercel published Agent Plugins 1.0.0 on August 6, an openly licensed spec that bundles Agent Skills and MCP servers behind a single portable manifest. The shape is deliberately boring: a plugin.json requiring only schemaVersion and...
QM went up under MIT license. Created July 29. As of the GitHub API check: 8,420 stars, 887 forks. Five days. YC uses it internally across accounting, legal, events, and engineering, including to build QM itself. Every employee and every Slack room gets its own scoped memory,...
Chetan Conikee released it August 29 under Apache-2.0, a Homebrew-installed CLI that keeps you in Codex or Claude Code while delegating well-specified jobs to Luna, Qwen3 or open-weight models through Ollama, with the frontier model reviewing the cheaper result. Its four rules...
Spotify's Portal team published Xirp on August 10: a vendor-neutral agentic development environment that manages concurrent sessions across Claude Code, Gemini CLI, and Codex, each session isolated in its own git worktree so dozens of agents can work the same codebase without...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.