New Features
-
Added experimental
/voiceconversations with live transcripts and microphone controls on supported builds, enabled through/experimental. (#43581, #43651, #44331) -
The TUI now shows live reasoning summaries in the status row and completion timestamps after successful turns. (#43558, #43921)
-
Added task hiding, archiving, and deletion in the agents overview, plus worktree ownership details and confirmed deletion of clean managed worktrees. (#43942, #44424, #44433)
-
Added Touch ID verification for MCP requests in local TUI sessions on supported Macs. (#43624, #43712, #43715)
-
Added configurable daemon update schedules and
codex app-server daemon update; saved threads and active goals can recover after daemon restarts. (#43542, #43562, #44314) -
Amazon Bedrock can now obtain AWS credentials from configured commands, with caching, expiration-based refresh, and authentication recovery. (#44028)
Bug Fixes
-
Accepted prompts are now saved even when compaction fails before a turn starts. (#44487)
-
Fixed missed tmux resizes, transcript viewport restoration, and stale history appearing after switching threads. (#43603, #43889, #43994)
-
MCP servers now report expired OAuth credentials accurately and provide reconnect guidance when token refresh fails. (#43947, #44359)
-
Automatic approval reviews now preserve complete actions and authorization evidence more reliably, retry transient failures, and distinguish review failures from unsafe-action findings. (#44482, #44569, #44570)
-
Switching accounts now invalidates remote-control sessions, cached WebSocket state, and model catalogs belonging to the previous identity. (#43906, #44341, #44489)
-
Blocked Windows-process escapes from restricted WSL sandboxes and hardened brokered shell snapshots against credential exposure. (#44286, #43909, #44040)
Chores
- Aligned Python SDK and runtime publishing with stable CLI releases, using matching versions and verifying runtime assets before SDK publication. (#44067)
Changelog
Full Changelog: https://github.com/openai/codex/compare/rust-v0.154.0...rust-v0.155.0
-
#43521 Preserve standalone release pins during daemon updates @copyberry
-
#43524 Restrict MCP user verification and add workspace-scoped identity @copyberry
-
#43527 Discount an approval's own code-mode wrapper from Guardian score lag @copyberry
-
#43529 Ensure the standalone updater runs on managed daemon starts @copyberry
-
#43533 Fix jemalloc tools and compiler flags for Bazel musl builds @copyberry
-
#43534 Preserve Guardian context sections and share planned-action rendering @copyberry
-
#43538 Move Guardian permission context into the shared section registry @copyberry
-
#43540 Preserve the multi-agent version when forking at a turn cutoff @copyberry
-
#43542 Make app-server daemon automatic updates configurable @copyberry
-
#43545 Preserve fork runtime versions without loading full model context @copyberry
-
#43547 Add user-verification provider abstractions and RPC adapters @copyberry
-
#43552 Record the launched app-server executable identity in PID files @copyberry
-
#43558 Show completion timestamps after successful TUI turns @copyberry
-
#43562 Add an explicit app-server daemon update command @copyberry
-
#43568 Wire app-server user verification RPCs to the native provider @copyberry
-
#43570 Manage synchronous Guardian reviewers through the thread manager @copyberry
-
#43572 Make the managed app-server shutdown grace period configurable @copyberry
-
#43576 Group adjacent computer actions in the TUI @copyberry
-
#43581 Add live WebRTC voice conversations to the TUI @copyberry
-
#43584 Remove a stale transcript field assignment from the TUI @copyberry
-
#43595 Centralize bounded Guardian review evidence in guardian-context @copyberry
-
#43597 Move trusted tool metadata into shared Guardian context @copyberry
-
#43599 Move trusted skill evidence into the Guardian context registry @copyberry
-
#43601 Move Guardian image selection into shared context sections @copyberry
-
#43602 Move Guardian REPL evidence rendering into the shared context registry @copyberry
-
#43603 Recover missed tmux resize notifications in the TUI @copyberry
-
#43604 Exclude base instructions from the bundled model catalog @copyberry
-
#43619 Add a stable TUI/app-server version comparison helper @copyberry
-
#43621 Add worktree classification to thread telemetry @copyberry
-
#43622 Warn when the connected Codex service is older than the CLI @copyberry
-
#43624 Add macOS user verification with Secure Enclave signing @copyberry
-
#43645 Expand TUI regression coverage for realtime voice conversations @copyberry
-
#43651 Add voice mute shortcut and recording activity indicators @copyberry
-
#43656 Animate live voice transcripts with split-flap tiles @copyberry
-
#43676 Style spoken prompts and link workspace files in voice transcripts @copyberry
-
#43683 Move voice controls into a dedicated composer strip @copyberry
-
#43690 Make the voice mute shortcut configurable in the TUI @copyberry
-
#43695 Stabilize realtime voice meter sampling across redraws @copyberry
-
#43698 Make older app-server notices configurable in the TUI @copyberry
-
#43699 Preserve split-flap animation state when voice transcripts scroll @copyberry
-
#43702 Add a TUI user verification prompt component @copyberry
-
#43704 Disable clock synchronization in the voice audio sink @copyberry
-
#43708 Add TUI request bookkeeping for user verification @copyberry
-
#43712 Enable MCP user verification in the TUI @copyberry
-
#43715 Enable user verification for the bundled TUI on supported devices @copyberry
-
#43790 Limit app-server storage metrics to session directories @copyberry
-
#43795 Pin request reasoning effort while configuration overrides are active @copyberry
-
#43796 Preserve reasoning effort through compaction and reset it on success @copyberry
-
#43797 Add configurable memory versions with isolated storage @copyberry