Config files OpenAI Codex CLI has changed
Config you own — hooks, permission rules, MCP servers, settings — that releases below state a change to. Counted from the release notes we track, newest change first. How a harness is layered.
Release signals
alpha.2
Release 0.153.0-alpha.2Primary source ↗alpha.1
Release 0.153.0-alpha.1Primary source ↗Vim mode supports `/` and `?` searches within drafts, highlighted matches, and repeat navigation with `n` and `N`. (#41586)
- Rate-limit banners offer actions for checking usage, managing credits, resetting limits, and managing plans. (#41742)
- The terminal UI and `codex exec` show credential-refresh progress, including Amazon Bedrock reauthentication. (#41239)
- MCP server names can contain `:`, `@`, `/`, and `.`, supporting package-style names throughout CLI commands and authentication. (#41700)
- +101 more changes
Read the full release noteHide the full release note
New Features
-
Vim mode supports
/and?searches within drafts, highlighted matches, and repeat navigation withnandN. (#41586) -
Rate-limit banners offer actions for checking usage, managing credits, resetting limits, and managing plans. (#41742)
-
The terminal UI and
codex execshow credential-refresh progress, including Amazon Bedrock reauthentication. (#41239) -
MCP server names can contain
:,@,/, and., supporting package-style names throughout CLI commands and authentication. (#41700) -
Individual MCP tools support an
output_token_limitsetting, with consistent truncation across session resumes. (#41421) -
App-server clients can configure
thread/shellCommandtimeouts, including deadlines longer than one hour. (#41384)
Bug Fixes
-
Vim-enabled composers now start fresh drafts in Insert mode, including after submitting messages or dispatching slash commands. (#41921)
-
Automatic approval reviews can retain longer messages and a larger conversation transcript. (#41931)
-
Automatic approval reviews preserve user instructions, answers, and valid authorizations across history compaction. (#41660, #41846, #41852)
Excerpt ends here — this release continues at the source ↗.
alpha.7.2
Release 0.152.0-alpha.7.2Primary source ↗alpha.7
Release 0.152.0-alpha.7Primary source ↗alpha.6
Release 0.152.0-alpha.6Primary source ↗alpha.5
Release 0.152.0-alpha.5Primary source ↗alpha.4
Release 0.152.0-alpha.4Primary source ↗alpha.7.2
Release 0.151.0-alpha.7.2Primary source ↗alpha.1
Release 0.152.0-alpha.1Primary source ↗Added a configurable grace period for discovering tools from optional MCP servers. (#41199)
- Extensions can now inspect or replace MCP tool results before they reach the model. (#41202)
- Plugin catalogs now combine per-repository configuration and report invalid project marketplaces without hiding valid plugins. (#41208)
- Preserved restored permission profiles across TUI turns and prevented `/cd` from weakening sandbox restrictions. (#41192)
- Kept tool availability and reasoning effort correct when switching models or falling back to another model. (#41195, #41206)
- +22 more changes
Read the full release noteHide the full release note
New Features
-
Added a configurable grace period for discovering tools from optional MCP servers. (#41199)
-
Extensions can now inspect or replace MCP tool results before they reach the model. (#41202)
-
Plugin catalogs now combine per-repository configuration and report invalid project marketplaces without hiding valid plugins. (#41208)
Bug Fixes
-
Preserved restored permission profiles across TUI turns and prevented
/cdfrom weakening sandbox restrictions. (#41192) -
Kept tool availability and reasoning effort correct when switching models or falling back to another model. (#41195, #41206)
-
Improved remote sandbox enforcement using the executor’s actual home directory, operating system, and path conventions. (#41196, #41204, #41207, #41209)
-
Preserved structured MCP tool and resource errors in app-server responses. (#41196)
-
Counted nested subagent token usage toward root goal budgets. (#41183)
-
Prevented stale Guardian classifications from authorizing actions after permission state changes. (#41196)
Chores
- Added telemetry for escalated stdin reviews and remote executor MCP discovery. (#41189, #41205)
Excerpt ends here — this release continues at the source ↗.
alpha.12
Release 0.151.0-alpha.12Primary source ↗alpha.11
Release 0.151.0-alpha.11Primary source ↗alpha.7.1
Release 0.151.0-alpha.7.1Primary source ↗Polled sources
[github-releases] GitHub Releases
github_releases · every 60m
https://github.com/openai/codex/releases