Codex false flags normal things as cyber security risk

Resolved 💬 3 comments Opened May 2, 2026 by PhantomInTheWire Closed May 2, 2026

What issue are you seeing?

I was using codex model through chatgpt sub in opencode; a simple harmless request was flagged multiple times as a cybersecurity risk.

https://opncd.ai/share/pP2hFdPt

What steps can reproduce the bug?

https://opncd.ai/share/pP2hFdPt

just try following the exact prompt i gave here

What is the expected behavior?

ideally innocent requests don't get blocked, I understand the potential risks of gpt 5.5 in hands of bad actors but this was too tame to be flagged like this imo.

Additional information

_No response_

View original on GitHub ↗

This issue has 3 comments on GitHub. Read the full discussion on GitHub ↗