Allow this session button allows only one-time edits, and keeps asking me permission
Resolved 💬 8 comments Opened Nov 1, 2025 by morenocuratelo Closed Nov 15, 2025
💡 Likely answer: A maintainer (etraut-openai, contributor)
responded on this thread — see the highlighted reply below.
What version of Codex is running?
0.4.35
What subscription do you have?
ChatGPT Plus
Which model were you using?
gpt-5-codex (high)
What platform is your computer?
Microsoft Windows NT 10.0.26200.0 x64
What issue are you seeing?
I am using agent mode of codex in VSCode (v. 1.105.1). Codex keeps asking me, every time, to allow it to perform edits in my files, even if I push the "Allow this session" button. Here's the video of what happens: "https://streamable.com/i53evo".
What steps can reproduce the bug?
Ask codex to perfom a series of actions
What is the expected behavior?
_No response_
Additional information
_No response_
8 Comments
Closing in favor of #2860, which has more upvotes
Don't understand what we're supposed to do for this.
The buttons do the exact same thing:
<img width="331" height="238" alt="Image" src="https://github.com/user-attachments/assets/37f19d3e-fb09-4b66-a33b-e26d19407f4e" />
Thousands of users have reported this. It's a huge UX problem in a premium paid subscription service.
You closed this ticket in favor of 2860, but that ticket was closed because "if someone sees the issue, they should open a new ticket with repro steps" but the repro steps are literally just asking gpt to make any edit at all. Are we supposed to make a new ticket or not? Because you explicitly tell us to make a new ticket, but then close any new ticket as a dupliate of that one.
@justingoldentrulioo, do you have the Windows experimental sandbox enabled?
Thank you for the reply. I don't believe so. Is it enabled by default? I just have the default setup from installing the extension and logging in with my openai pro account.
It's still considered "experimental", so we don't enable it by default. Follow the instructions in the link to enable it. It should improve your Codex experience. Let us know if you run into problems.
So are you saying that if I enable it then this bug is solved and the "Allow this session" button actually does what it says? Wouldn't it make sense to just not show the button in production to your thousands of users if it doesn't work?
For example, if I had two buttons labeled "Delete note" and "Delete all notes" and the "Delete all notes" button deleted this note only, I wouldn't ship it to production like that, I would simply not ship the "Delete all notes" button at all and hide it from the UI entirely rather than ship something broken and wrong. I don't mean to sound rude, but I'm genuinely curious why the button says something and doesn't do what it says and that this isn't considered a problem by anybody in openai?
Today I had to approve this permission prompt 25 times for the same answer:
<img width="638" height="385" alt="Image" src="https://github.com/user-attachments/assets/49c6cec2-d899-4dc7-a80e-26f18068f61f" />
Is this some kind of bad taste joke? Where is the support for paying customers?
The _don't ask again option_ simply does not work.
I am facing the same issue and I am using Ubunut, the don't ask again doesn't seem to work at all