Skip to content

release: bump Codex Security to 0.1.15 - #479

Open
mldangelo-oai wants to merge 2 commits into
mainfrom
mdangelo/codex/release-0.1.15
Open

release: bump Codex Security to 0.1.15#479
mldangelo-oai wants to merge 2 commits into
mainfrom
mdangelo/codex/release-0.1.15

Conversation

@mldangelo-oai

@mldangelo-oai mldangelo-oai commented Aug 16, 2026

Copy link
Copy Markdown
Collaborator

Summary

Prepare the @openai/codex-security patch release 0.1.15.

Changes

  • Update sdk/typescript/package.json from 0.1.14 to 0.1.15.
  • Merge current main; the release-specific diff remains limited to the package manifest.

Testing

  • Focused release-version and release-workflow tests: 34 passed, 0 failed, 51 assertions.
  • The existing release-automation.mjs version, release-tag, and version-increase checks returned 0.1.15.
  • pnpm run types, pnpm run format, build, and pack passed.
  • Static package-contract checks and bounded installed-package checks passed, including public SDK import, CLI version/help, npm version 0.1.15, and the unchanged bundled-plugin version 0.1.20.
  • The full Bun suite and full installed-package smoke were not run locally.

Risk and rollout

  • The release-specific change is only the package version; it adds no runtime or dependency changes.
  • After a separately approved merge, successful node-ci on main allows release automation to create npm-v0.1.15 and start the protected npm publishing workflow.
  • Publication still requires approval for the protected npm environment. No tag or release was created as part of this update.

Public disclosure review

Newly authored material was reviewed for public disclosure. An existing automated review comment contains an access-restricted report reference; maintainer cleanup remains outstanding.

  • No customer, partner, prospect, or user identities, data, or identifying details are included.
  • No credentials, personal data, private source, scan findings, or nonpublic links or tickets are included.
  • I reviewed the branch name, title, description, commits, changes, comments, logs, screenshots, attachments, and links for public disclosure.

@github-actions github-actions Bot added the skip-release-notes Omit internal changes from generated release notes label Aug 16, 2026
@mldangelo-oai

Copy link
Copy Markdown
Collaborator Author

@codex review

@chatgpt-codex-connector

Copy link
Copy Markdown

Codex Review: Didn't find any major issues. 👍

Reviewed commit: 40bcfb8067

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

@chatgpt-codex-connector

Copy link
Copy Markdown

Security review completed. No security issues were found in this pull request.

Reviewed commit: 40bcfb8067

View security finding report

Only the user who started this review can view the report in Codex.

ℹ️ About Codex security reviews in GitHub

This is an experimental Codex feature. Security reviews are triggered when:

  • You comment "@codex security review"
  • A regular code review gets triggered (for example, "@codex review" or when a PR is opened), and you’re opted in so security review runs alongside code review

Once complete, Codex will leave suggestions, or a comment if no findings are found.

@zcrab-oai zcrab-oai left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Reviewed the one-field package-version bump and existing release, lockfile, and plugin-version behavior.

@mldangelo-oai

Copy link
Copy Markdown
Collaborator Author

@codex review

Please review commit 4ec38bb5341117040e12053a5c474105cd63b56c.

@chatgpt-codex-connector

Copy link
Copy Markdown

Security review completed. No security issues were found in this pull request.

Reviewed commit: 4ec38bb534

View security finding report

Only the user who started this review can view the report in Codex.

ℹ️ About Codex security reviews in GitHub

This is an experimental Codex feature. Security reviews are triggered when:

  • You comment "@codex security review"
  • A regular code review gets triggered (for example, "@codex review" or when a PR is opened), and you’re opted in so security review runs alongside code review

Once complete, Codex will leave suggestions, or a comment if no findings are found.

@chatgpt-codex-connector

Copy link
Copy Markdown

Codex Review: Didn't find any major issues. Keep them coming!

Reviewed commit: 4ec38bb534

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

skip-release-notes Omit internal changes from generated release notes

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants