Repository navigation
Conversation
|
+1 — this is exactly the missing piece, and for us it is the difference between a working and a blind agent. Driving whereas Codex's own sandbox with the same combination works: So applying the explicit |
7 tasks done
This branch has not been deployed
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Problem
CODEX_CONFIGacceptssandbox_workspace_write.network_access, butsendPromptsends the mode's hardcodednetworkAccess: falsein eachturn/start. That overrides the session setting, so enabling networking requires selecting full access and widening filesystem permissions too.Change
Apply an explicit boolean
sandbox_workspace_write.network_accessfrom the supplied Codex config to workspace-write turn policies. Preserve writable roots, approval policy/reviewer, defaults, and other sandbox types. Document the existing configuration setting.Validation
npm run typecheckpassed.npm run buildpassed.npm test: 1,022 passed, 33 skipped.npm run bundle:allpassed for all six targets using Bun 1.3.11, matching CI.git diff --checkis clean.No generated API types or default permissions are changed.