False positive: account flagged for cyber activity and routed to gpt-5.2 fallback

Resolved 💬 3 comments Opened Feb 18, 2026 by seek3621 Closed Feb 20, 2026

Summary

My account appears to have been falsely flagged for "high-risk cyber activity". As a result, Codex routes my requests to gpt-5.2 fallback and blocks access to gpt-5.3-codex.

What I was doing (benign / authorized)

I was performing legitimate self-administration on my own Ubuntu machine:

  • installing/enabling OpenSSH Server so I can connect from my phone
  • intended for local network / Tailscale only (no public exposure intended)

No scanning, exploitation, payloads, brute force, persistence, or unauthorized access.

Expected behavior

Normal access to gpt-5.3-codex should be available for benign sysadmin tasks.

Actual behavior

After the SSH setup request, the account was flagged and Codex routed requests to gpt-5.2 fallback.

Thread ID

019c6fe5-8c88-7153-b12f-3a084b53f12d

Request

Please review this as a false positive and remove the cyber high-risk flag / restore access to gpt-5.3-codex.

View original on GitHub ↗

This issue has 3 comments on GitHub. Read the full discussion on GitHub ↗