• Home
  • Technology
  • Gaming
  • Entertainment
  • World & Business
  • Science
  • Sports
  • AI
HomeTechnologyGamingEntertainmentWorld & BusinessScienceSportsAI
AI

OpenAI Open-Sources Codex Security CLI and SDK

CLI and SDK scan repositories for vulnerabilities, validate fixes, and add checks to CI pipelines.

OpenAIOP
Greg BrockmanGB
TiboTI
9 Sources, 73d ago, first seen 73d ago

TLDR

OpenAI open-sourced the Codex Security CLI and accompanying TypeScript SDK. The tools scan entire repositories or selected changes for security issues, validate suspected flaws, generate patches, and preserve findings across runs. They support terminal use and integration into CI/CD workflows to enforce security checks. Released quietly on GitHub and npm under an Apache-2.0 license, the package is described as an early release. OpenAI stated it is collecting feedback to guide further development.

Combined views

1.8M

9 Sources, first seen 73d ago

21.3K likes893 comments11.4K saves1.8K reposts

Sources

  1. TI
    Tibo@thsottiaux2 months ago

    More opensource goodness. We have just released a CLI and TypeScript SDK for finding, validating, and fixing security vulnerabilities in your code. Scan repositories, review changes, track findings over time, and run security checks in CI.…

    • likes: 7.3K
    • replies: 379
    • bookmarks: 4.8K
    • reposts: 575
  2. OP
    OpenAI@OpenAI2 months ago

    We quietly released the open-source Codex Security CLI, but Hacker News found it before we had a chance to share it here... You can now use it to scan repositories, track findings across runs, verify fixes, and add security checks to CI/CD. This is an early release, and we're…

    • likes: 11.3K
    • replies: 388
    • bookmarks: 5.4K
    • reposts: 1K
  3. RP
    Rohan Paul@rohanpaul_ai2 months ago

    OpenAI released the open-source Codex Security CLI. Apache-2.0 package, brings repository vulnerability scans into terminals and CI. Scans whole repo or selected changes, validate suspected flaws, generate patches, and preserve findings between runs.…

    • likes: 11
    • replies: 3
    • bookmarks: 5
    • reposts: 4
  4. BH
    ben hylak@benhylak2 months ago

    very very worth your time to look at this code. https://twitter.com/thsottiaux/status/2082241164850364555

    • likes: 148
    • replies: 0
    • bookmarks: 135
    • reposts: 2
  5. DJ
    Daniel Jeffries@Dan_Jeffries12 months ago

    More of this please. Not more controls and safeguards. God helps software engineers that help themselves, but only if our software doesn't refuse to help. Good, strong work. https://twitter.com/OpenAI/status/2082263717916586117

    • likes: 11
    • replies: 1
    • bookmarks: 0
    • reposts: 1
  6. AD
    Andrea Debernardi@debba_922 months ago

    @OpenAI @OpenAI I tried it and ran for 10 minutes without providing any feedback, and I ended up with a $65 charge on my API key. This is a terrible tool.

Combined views

1.8M

9 Sources, first seen 73d ago

21.3K likes893 comments11.4K saves1.8K reposts

Sentiment

Positive——Negative

Summary

Not enough discussion yet.

No sentiment analysis available yet.

OpenAIGreg Brockman

Sentiment

Positive——Negative

Summary

Not enough discussion yet.

No sentiment analysis available yet.

Featured Source
GBGreg Brockman@gdb3:41 PM · Jul 28, 2026
34TECH

we've just open-sourced the Codex Security CLI: https://news.ycombinator.com/item?id=49089755

    • Home
    • Technology
    • Gaming
    • Entertainment
    • World & Business
    • Science
    • Sports
    • AI
    Today's Rank

    —

    Not ranked yet

    Today's Rank

    —

    Not ranked yet