Allow list for commands instead of danger-full-access + deny list

Resolved 💬 5 comments Opened Feb 24, 2026 by mycatnamedweb Closed Apr 3, 2026

What variant of Codex are you using?

CLI

What feature would you like to see?

Currently I have to use Codex with full access and provide a deny list of commands instead the default rules inside the .codex folder. It would be much better from a corporate adoption perspective if instead I could provide a whitelist instead, so that every other command is blocked by default. Much needed in highly regulated environments.

Additional information

_No response_

View original on GitHub ↗

This issue has 5 comments on GitHub. Read the full discussion on GitHub ↗