codex-security

by openai · Codex Skill · ★ 10.1k

About codex-security

Codex Security is a CLI and TypeScript SDK for finding, validating, and fixing security vulnerabilities in your code. See the Codex Security documentation for more details. Note: for best results, we recommend that your account is verified for Trusted Access. Quick start Requires Node.js 22.13.0 or later in the 22.x release line, Node.js 24.x, or Node.js 26.x; Python 3.10 or later; and access to Codex Security. For CI, set or instead of signing in. Environment API keys are passed directly to the current scan and are never stored in Codex's credential home or system keyring.

ai-securityapplication-securityclicode-scanningcodexcodex-securitycybersecuritydevsecopsnodejsnpm

Quick Facts

Stars10,086
Forks719
LanguageTypeScript
CategoryCodex Skill
LicenseApache-2.0
Quality Score66.8550750017929/100
Open Issues178
Last Updated2026-08-23
Created2026-07-13
Platformscli, codex, node
Est. Tokens~14k

Compatible Skills

These tools work well together with codex-security for enhanced workflows:

  • codexia — semantic(0.26)+complementary+shared_fw(openai)+same_lang+similar_pop+shared_platform (67%)
  • arcjet-js — semantic(0.31)+complementary+rare_topics+same_lang+similar_pop+shared_platform (65%)
  • mcp-for-security — semantic(0.41)+complementary+same_lang+similar_pop+shared_platform (64%)
  • openai-assistant-swarm — semantic(0.16)+complementary+shared_fw(openai)+same_lang+similar_pop+shared_platform (63%)
  • shellward — semantic(0.33)+complementary+shared_fw(openai)+same_lang+shared_platform (59%)

More Codex Skill Tools

Explore other popular codex skill tools:

View all Codex Skill tools →

Popular TypeScript Agent Tools

  • openclaw ⭐ 387.2k · Codex Skill
  • n8n ⭐ 202.1k · MCP Server
  • dify ⭐ 153.3k · MCP Server
  • gstack ⭐ 129.2k · Agent Tool
  • gemini-cli ⭐ 106.6k · MCP Server

Frequently Asked Questions

What is codex-security?

codex-security is OpenAI's Codex Security CLI and TypeScript SDK for finding, validating, and fixing security vulnerabilities. npm: https://www.npmjs.com/package/@openai/codex-security. It is categorized as a Codex Skill with 10.1k GitHub stars.

What programming language is codex-security written in?

codex-security is primarily written in TypeScript. It covers topics such as ai-security, application-security, cli.

How do I install or use codex-security?

You can find installation instructions and usage details in the codex-security GitHub repository at github.com/openai/codex-security. The project has 10.1k stars and 719 forks, indicating an active community.

What license does codex-security use?

codex-security is released under the Apache-2.0 license, making it free to use and modify according to the license terms.

View on GitHub → Browse Codex Skill tools