| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: openai-codex-fish-completion | Distribution: openSUSE Tumbleweed |
| Version: 0.160.1 | Vendor: openSUSE |
| Release: 1.1 | Build date: Tue Oct 6 09:15:19 2026 |
| Group: Unspecified | Build host: reproducible |
| Size: 186094 | Source RPM: openai-codex-0.160.1-1.1.src.rpm |
| Packager: https://bugs.opensuse.org | |
| Url: https://github.com/openai/codex | |
| Summary: Fish completion for codex | |
Fish command line completion support for codex.
Apache-2.0 AND MIT AND Unicode-3.0 AND MPL-2.0 AND ISC AND BSD-3-Clause AND Zlib AND BSD-2-Clause AND CC0-1.0 AND CDLA-Permissive-2.0
* Tue Oct 06 2026 Martin Pluskal <mpluskal@suse.com>
- Update to version 0.160.1:
* Preserve SYSTEMROOT, TEMP and TMP when launching remote
stdio MCP servers with explicit remote variables, so a Unix
host keeps the Windows executor startup environment
(backport of upstream #51121)
* No Cargo.lock change, so the vendored tree carries over
unchanged and the License tag is untouched
* Fri Oct 02 2026 Martin Pluskal <mpluskal@suse.com>
- Update to version 0.160.0:
* The agent command center can page back through older tasks with
a keyboard-accessible "Show more" action
* Fullscreen mode pastes the primary selection with middle-click
on supported local Linux X11 terminals
* Sessions can start outside a project with workspace defaults
where policy allows, and resuming restores saved permissions
* Guardian review is opt-in and can retrieve earlier user
instructions plus context from agent handoffs
* Unsent queued messages resume after a reconnect once the
uncertain submissions resolve, instead of being lost or sent
twice
* The TUI keeps the server's provider, reasoning-summary and
verbosity settings, and lists the right sessions in resume and
fork history
* Subagents keep environments that are still starting, and are
told about a configuration or preparation failure
* SQLite no longer stalls during connection setup and log writes,
and initialisation errors surface instead of looking like
timeouts
* An explicit provider model catalog no longer lists unsupported
bundled models or keeps stale entries after a refresh failure
* Plugin manifests are parsed once and remote plugin requests
reuse the HTTP connection pool; unused log database space is
reclaimed in the background
* Many more fixes and improvements; see upstream's release notes
for the full list
* h2 0.4.16 -> 0.4.19 is the only third-party crate the re-vendor
moved: the extracted trees otherwise diff clean and the
resolved codex-cli graph is unchanged, so the licence set and
the four bare-lockfile RUSTSEC advisories carry over from
0.159.3
* Rebase codex-no-startup-update-check.patch on the new sources;
what it removes is unchanged. codex-drop-v8-code-mode.patch,
codex-system-libzstd.patch and
codex-recursion-limit-chatgpt.patch still apply unchanged at
fuzz 0
* The Legal-Review-Notice counts reproduce exactly on the
re-derived tree (894 crates: 754 third-party, 140 first-party;
758 slots across 753 crates), so the License: tag is unchanged
* Thu Oct 01 2026 Martin Pluskal <mpluskal@suse.com>
- Update to version 0.159.3:
* Local ChatGPT sessions can show optional reminders to complete
account security setup; the server owns eligibility and
rollout, and an unavailable notice shows no banner at all
* The account security banner is cleared when the backend banner
it shares the inline slot with is replaced or dismissed
* Vendored dependency set unchanged - Cargo.lock is identical to
0.159.2's and the extracted vendor tree diffs clean - so the
licence set and the four bare-lockfile RUSTSEC advisories carry
over from 0.159.2
* All four patches apply unchanged at fuzz 0, and what each one
removes is unchanged:
codex-drop-v8-code-mode.patch,
codex-no-startup-update-check.patch,
codex-system-libzstd.patch,
codex-recursion-limit-chatgpt.patch
* Correct the Apache-2.0 and MIT tallies in the
Legal-Review-Notice; its 894 crate counts (754 third-party,
140 first-party) and the License: tag are unchanged
* Wed Sep 30 2026 Martin Pluskal <mpluskal@suse.com>
- Update to version 0.159.2:
* New opt-in instant_interrupt lets fresh input steer codex
during model responses and long-running code-mode calls
* New sessions get a compact welcome screen and a consistent
header, with occasional tips during and after turns
* The warnings viewer dismisses reviewed warnings when closed;
press k to keep one for later
* The transcript can be scrolled while a modal is open, so a
plan can be read before implementing it
* Native Mermaid rendering covers more flowchart edges,
labels and node groups
* App-server clients can paginate thread history from a given
item
* Copying a transcript selection keeps Markdown tables,
formatting and significant whitespace, and more terminals
copy automatically on selection
* Blank sessions keep their draft when switching tasks, and
threads can be archived and listed before their first turn
* Local ChatGPT sign-in opens the browser reliably, and
onboarding can copy the login link
* Approved commands keep explicit filesystem denials, and
.aws directories are protected under writable roots
* macOS TLS trust evaluation works in network-enabled
sandboxes and behind a proxy
* GPT-6.1 Sol is the default model in the bundled and Amazon
Bedrock catalogs
* Removed the automatic follow-up prompt suggestions and the
tui.prompt_suggestions setting
* Removed the bundled plugin-creator skill
* Windows no longer flashes console windows when launching MCP
servers, code-mode hosts, piped or sandboxed commands
* Many more fixes and improvements; see upstream's release
notes for the full list
* Vendored dependency set is unchanged - no crate moved - so
the licence set and the four bare-lockfile RUSTSEC
advisories carry over from 0.158.0
* Rebase codex-drop-v8-code-mode.patch,
codex-no-startup-update-check.patch and
codex-system-libzstd.patch on the new sources; what each
removes is unchanged
* Correct the crate counts in the Legal-Review-Notice; no
licence changed
* Mon Sep 28 2026 Martin Pluskal <mpluskal@suse.com>
- Update to version 0.158.0:
* Copy-on-select and configurable right-click paste in the
fullscreen TUI; copied transcript selections keep their
Markdown formatting
* MCP servers needing pre-registered OAuth client secrets are
supported, including via codex mcp add --oauth-client-secret
* Direct exec-server WebSocket connections can be secured with
bearer tokens, including when configured through app-server
* Image generation and editing can request transparent
backgrounds, and edits accept file-backed conversation images
* Terminal input approval is enabled by default for commands
running with elevated permissions
* Linux sandbox starts correctly with nested writable roots, and
Git metadata protections are preserved across writable roots
* Approval reviews retry when new user input arrives instead of
aborting a pending action
* Mermaid flowcharts render quoted labels and ampersands
* Command completion events carry early output and report
process-launch failures
* Many more fixes and improvements; see upstream's release notes
for the full list
* Vendored dependency set is unchanged - no third-party crate
moved - so the bare-lockfile audit still reports the same four
RUSTSEC advisories
* CVE-2026-93657 (boo#1282184): not affected, the vendored and
linked hickory-resolver is 0.25.2 and resolves with no dnssec
feature, which this CVE and RUSTSEC-2026-0118 both require
* CVE-2026-91986 (boo#1281744): not affected, the vendored and
linked gix-transport is 0.55.1 and is pulled in with default
features only, so the git-daemon connect request this CVE
injects into is never compiled
* codex-drop-v8-code-mode.patch: refresh the context around the
new websocket-auth workspace member upstream added
- Fix the build OOM that declined 0.157.0: ask _constraints for a
32 GB worker instead of 16, size %limit_build so a 16 GB worker
builds -j1 rather than the -j2 that is still fatal, and cap the
test phase, which %limit_build does not reach
* Fri Sep 25 2026 Martin Pluskal <mpluskal@suse.com>
- Update to version 0.157.0:
* GPT-6 Sol/Luna model support incl. Bedrock, fullscreen
transcripts, background-server autostart, fork shortcut,
remote/local import, terminal rendering improvements
* Refresh the vendored dependencies (no new advisories in
the bare-lockfile audit)
* Wed Sep 23 2026 Martin Pluskal <mpluskal@suse.com>
- Update to version 0.156.1:
* Hotfix adding GPT-6 Sol and Luna to the model catalog
* Refresh the vendored dependencies (quinn-proto 0.11.15,
rustls 0.23.45: earlier RUSTSEC advisories fixed upstream;
drop the now-redundant rustls pull-forward)
* Raise the recursion limit for codex-chatgpt: current
rustc overflows its query-depth limit on the
list_connectors async state machine otherwise
* codex-recursion-limit-chatgpt.patch
* Tue Sep 22 2026 Martin Pluskal <mpluskal@suse.com>
- Update to version 0.155.1:
* New local TUI sessions leave reasoning summaries disabled by
default, so providers that do not support them stop
rejecting the request; explicit settings are still respected
- Changes from version 0.155.0:
* The TUI shows live reasoning summaries in the status row and
completion timestamps after successful turns
* Task hiding, archiving and deletion in the agents overview,
plus worktree ownership details and confirmed deletion of
clean managed worktrees
* Amazon Bedrock can take AWS credentials from a configured
command, with caching and expiry-based refresh
* Automatic approval reviews keep complete actions and
authorization evidence, retry transient failures and tell
review failures apart from unsafe-action findings
* Fixed missed tmux resizes, transcript viewport restoration
and stale history showing up after a thread switch
* Accepted prompts are saved even when compaction fails before
a turn starts
* MCP servers report expired OAuth credentials accurately and
say how to reconnect when a token refresh fails
* Switching accounts invalidates remote-control sessions,
cached WebSocket state and the model catalogue of the old
identity
* Brokered shell snapshots are hardened against credential
exposure
- Upstream's two headline 0.155.0 features are not reachable
here: /voice needs a separate codex-voice-host helper and a
bundled GStreamer runtime, neither of which is built, and
"codex app-server daemon update" only drives the standalone
install upstream's own installer lays down
- Pull rustls 0.23.45 into the vendored tree: 0.23.36 accepts
TLS 1.3 handshake messages across encryption level boundaries
(RUSTSEC-2026-0285, GHSA-2mjx-qc3c-rqvc). It is linked through
aws-smithy-http-client, aws-config and codex-aws-auth, and
unlike the four linked advisories recorded in _service its fix
is semver-compatible, so it can be pulled forward
- That pull moves three more crates, because rustls 0.23.45
floors aws-lc-rs at 1.18: aws-lc-rs 1.16.2 to 1.18.1,
aws-lc-sys 0.39.0 to 0.45.0 and rustls-webpki 0.103.13 to
0.103.15. The statically linked aws-lc goes 1.71.0 to 5.7.0,
so bundled(aws-lc) follows
- cargo-audit on a bare copy of the lockfile reports six
advisories at 0.155.1; five remain in the shipped tree,
unchanged in status from 0.154.0 and all documented in _service
- CVE-2026-63127 (boo#1281061): not affected, the vendored and
linked rmcp is 3.2.0 and the fix landed in 2.0.0
- CVE-2026-63128 (boo#1281061): not affected, the vendored and
linked rmcp is 3.2.0 and the fix landed in 2.0.0
- CVE-2026-64684 (boo#1281061): not affected, the vendored and
linked rmcp is 3.2.0 and the fix landed in 2.1.0
- Legal-Review-Notice: linked-crate count 880/882 to 884/886 on
aarch64/x86_64, of which 751 are third-party on aarch64 (was
750, the addition is rand_regex) and 133 are codex workspace
members (was 130). The licence set is unchanged - the tally
moves only by Apache-2.0 651 to 654 and MIT 176 to 177 - and
the only bundled() version that moves is aws-lc, above
- Rebase codex-drop-v8-code-mode.patch: upstream added a
user-verification workspace member next to the entries it
drops
* Thu Sep 10 2026 Martin Pluskal <mpluskal@suse.com>
- Update to version 0.154.0:
* Experimental worktree support for isolated checkouts of new
or forked sessions, with browse and resume
* Answer questions inline while Codex keeps working, keeping
the main draft
* Vim R replace mode with undo and dot-repeat; /copy keeps
formatting and covers status and session fields
* Plugin tools refresh after external upgrades, MCP OAuth
refresh is coordinated, helpers no longer run before trust
is established; resume and fork keep saved permissions
* Drop the deprecated codex mcp-server entry point, now codex mcp
- Rebase codex-drop-v8-code-mode.patch over the new
windows-sandbox-service member; same removals as before
- Regenerate vendor.tar.zst: rmcp 3.1.3 -> 3.2.0 plus routine
bumps; webrtc/gstreamer/cpal stay out of the codex-cli link
graph, so the License tag is unchanged
- Legal-Review-Notice: linked-crate count 876/878 -> 880/882 on
aarch64/x86_64; the vendored dependency licence set is unchanged
- cargo-audit reports the same five advisories as 0.151.0, none
new and none fixable by re-vendoring
* Tue Sep 08 2026 Martin Pluskal <mpluskal@suse.com>
- Update to version 0.153.4:
* GPT-6-Astra is listed in the bundled model picker and is the
bundled default when no model is configured
* Astra's async-question guidance now applies only when
request_user_input_async is available in the session
- Update to version 0.153.3:
* GPT-6-Astra is available in the Amazon Bedrock model picker
for Mantle and Runtime global/US routes
* Astra's async-question guidance now names
request_user_input_async and notes that it accepts text only
- Keep vendor.tar.zst: 0.153.4 has the same Cargo.lock as 0.153.2,
so the linked crate set, the License tag and the
Legal-Review-Notice counts are unchanged
* Fri Sep 04 2026 Martin Pluskal <mpluskal@suse.com>
- Update to version 0.153.2:
* Correct the GPT-6-Astra Fast tier description to "2x speed"
instead of "1.5x"; display text only, request handling is
unchanged
- Update to version 0.153.1:
* GPT-6-Astra can be configured through the API without changing
the default model or listing it in the model picker
- Build against the system bzip2, libzstd, oniguruma and sqlite
instead of the copies bzip2-sys, zstd-sys, onig_sys and
libsqlite3-sys otherwise compile in; drop their bundled()
Provides and add pkgconfig(bzip2), pkgconfig(libzstd),
pkgconfig(oniguruma) >= 6.9.3 and pkgconfig(sqlite3) >= 3.34.1
* Add codex-system-libzstd.patch, which turns on zstd's
"pkg-config" feature in the workspace manifest
* oniguruma and sqlite have no usable manifest switch, so %build
and %check export RUSTONIG_SYSTEM_LIBONIG and
LIBSQLITE3_SYS_USE_PKG_CONFIG instead, and %install now fails
the build unless all four are DT_NEEDED of codex
* aws-lc stays bundled: aws-lc-sys has no system-library mode
- Keep vendor.tar.zst: 0.153.2 has the same Cargo.lock as 0.153.0,
so the linked crate set, the License tag and the
Legal-Review-Notice counts are unchanged
* Thu Sep 03 2026 Martin Pluskal <mpluskal@suse.com>
- Update to version 0.153.0:
* Vim mode gains undo (u) and redo (Ctrl+R), preserving whole
drafts including pasted content and attachments
* The plugin CLI lists, installs and removes plugins from remote
marketplaces
* tui.auto_recap = false turns off automatic recaps while keeping
/recap available
* TUI history shows complete patches, input sent to background
terminals and individual completed commands
* TUI sessions reconnect after an app-server connection drops,
keeping drafts and holding queued submissions for review
* Guardian review history survives compaction, restarts and
forks; Full Access skips Guardian review for confirmation-only
actions
* Remembered MCP tool approvals are scoped to the selected
app account
* tui.disable_paste_burst replaces the top-level setting, which
stays supported as a fallback
* New disabled-by-default
features.context_management.experimental_mode
- Refresh codex-drop-v8-code-mode.patch and
codex-no-startup-update-check.patch for the moved context
- Regenerate vendor.tar.zst: the 14 crates 0.153.0 adds to the
lockfile are all Windows-only, so the linked third-party set,
the License tag and the bundled() versions are unchanged; the
Legal-Review-Notice counts move only by one added first-party
workspace member
* Wed Sep 02 2026 Martin Pluskal <mpluskal@suse.com>
- Update to version 0.152.1:
* Guardian approval review honours Node REPL policies supplied
through model metadata; the bundled policy is now only the
fallback
* Switching models mid-session is refused when the destination
changes the Guardian parent-fallback node REPL policy
* Tue Sep 01 2026 Martin Pluskal <mpluskal@suse.com>
- Update to version 0.152.0:
* Vim mode gains "/" and "?" search within drafts, with match
highlighting and n/N repeat navigation
* Rate-limit banners offer actions for checking usage, managing
credits, resetting limits and managing plans
* TUI and "codex exec" show credential-refresh progress,
including Amazon Bedrock reauthentication
* MCP server names may contain ":", "@", "/" and "."
* Individual MCP tools honour an output_token_limit setting
* App-server clients can configure thread/shellCommand timeouts
longer than one hour
* Cloud task requests reject untrusted backend URLs and refuse
redirects, protecting saved credentials
* The planning tool is now disabled by default; re-enable with
tools.update_plan.enabled = true
* Vim-enabled composers start fresh drafts in Insert mode again
- cargo-audit reports five advisories on the vendored lockfile, all
pre-existing and unchanged since 0.151.0; audit a bare Cargo.lock
because upstream's codex-rs/.cargo/audit.toml hides four of them:
* CVE-2026-25800 (RUSTSEC-2026-0185, quinn-proto 0.11.14): not
affected, reqwest gates dep:quinn behind its "http3" feature,
which the workspace leaves off, so it is never linked
* RUSTSEC-2026-0194 and -0195 (quick-xml 0.39.4) and
RUSTSEC-2026-0118 and -0119 (hickory-proto 0.25.2), DoS with no
CVE assigned: linked, but each fix is a semver-incompatible
bump of an intermediate crate, or not released at all
- Legal-Review-Notice: linked-crate count 874/876 -> 875/877 on
aarch64/x86_64, from one new first-party workspace crate
(codex-guardian-context). The vendored dependency set, the
bundled() versions and the License tag are unchanged from 0.151.0
* Sat Aug 29 2026 Martin Pluskal <mpluskal@suse.com>
- Update to version 0.151.0:
* Configurable grace period for discovering tools from optional
MCP servers
* Extensions can inspect or replace MCP tool results before they
reach the model
* Plugin catalogs combine per-repository configuration and report
invalid project marketplaces without hiding valid plugins
* Preserve restored permission profiles across TUI turns; /cd can
no longer weaken sandbox restrictions
* Stale Guardian classifications no longer authorize actions after
a permission-state change
* Remote sandbox enforcement uses the executor's actual home
directory, OS and path conventions
* Keep tool availability and reasoning effort correct when
switching models or falling back to another one
* Nested subagent token usage counts toward root goal budgets
- Rebase codex-drop-v8-code-mode.patch: 0.151.0 adds a "worktree"
workspace member next to "websocket-client", which shifted the
context of the hunk dropping "v8-poc". Same six removals as before.
- Vendored dependency set is unchanged from 0.150.1 (1193 crates,
none added or removed), so the License tally and the bundled()
versions still hold.
* Thu Aug 27 2026 Martin Pluskal <mpluskal@suse.com>
- Update to 0.150.1:
* Retained-image compaction budgeting is backported to the 0.150
line, restoring the behaviour 0.149.1 already had
- Update to 0.150.0:
* Reference other Codex tasks with `@` mentions, and ask agents
to read, create or message tasks from the terminal
* `/copy` offers a picker for the full response, individual code
blocks and blockquotes
* Unnamed terminal tasks get descriptive titles automatically and
`/rename` suggests an editable one
* New keybindings cycle the permission modes, `.` in Vim mode
repeats the last edit, and `Interrupt` hooks run commands or
MCP handlers when an active top-level turn is interrupted
* Untrusted projects no longer supply project-level AGENTS.md
instructions, and managed deny-read rules stay enforced across
permission changes
* Wider credential redaction in app-server diagnostics, plus fixes
for remote MCP bearer tokens, Unix shutdown hangs and Amazon
Bedrock compaction; see upstream's release notes for the rest
- Rebase codex-drop-v8-code-mode.patch and
codex-no-startup-update-check.patch
- Regenerate vendor.tar.zst: rmcp and rmcp-macros move from 3.1.2
to 3.1.3 and are the only third-party crate change; the licence
set of the linked crates is unchanged
* Mon Aug 24 2026 Martin Pluskal <mpluskal@suse.com>
- Update to 0.149.1:
* `codex exec` callers can classify new threads
* Retained images are now budgeted during remote compaction
* Detached memory requests are identified as memory consolidation
- vendor.tar.zst is carried over unchanged: codex-rs/Cargo.lock is
byte-identical between 0.149.0 and 0.149.1, so re-vendoring with
update=false resolves the same crate set
* Fri Aug 21 2026 Martin Pluskal <mpluskal@suse.com>
- Update to 0.149.0:
* Interactive `codex agents` dashboard for searching, starting,
opening, renaming and stopping tasks
* `/cd`, `/pwd` and `/cwd` TUI commands for the working directory
* `codex queue` sends a message to an existing local or remote
session
* Expanded Vim change motions (`cw`, `c$`, `cc`) and character
replacement
* `codex doctor` now diagnoses endpoint protection, network/proxy
failures and update connectivity
* Resumed and forked threads restore their permission profile
* Linux sandbox drops extra capabilities and isolates IPC in
bubblewrap
* `apply_patch` no longer widens write permissions; git commands
are no longer treated as inherently safe
- Rebase codex-drop-v8-code-mode.patch and
codex-no-startup-update-check.patch
* Thu Aug 20 2026 Martin Pluskal <mpluskal@suse.com>
- Update to 0.148.0:
* TUI /export writes a conversation to Markdown (clipboard
or file)
* Fork sessions with `codex exec fork`; archive and restore
sessions from the resume picker
* Show estimated thread credits or cost in /status
* Amazon Bedrock Runtime as a built-in model provider
* Hooks can run commands asynchronously and invoke MCP tools
* Sandbox path denials now fail closed
* Resumed sessions restore the persisted working directory
and approval policy
- Rebase codex-drop-v8-code-mode.patch and
codex-no-startup-update-check.patch
* Sun Aug 16 2026 Martin Pluskal <mpluskal@suse.com>
- Initial package (0.147.0)
- Build only the codex-cli crate: the v8-poc, code-mode-runtime and
code-mode-host workspace members pull in the v8 crate, whose build
script downloads a prebuilt library from the network
(codex-drop-v8-code-mode.patch)
- Drop the bundled bubblewrap 0.11.2 C sources and use the system
bubblewrap instead
- Ship only the multicall codex binary; the helper programs are
dispatched from argv[0] or reachable as subcommands
- Do not query github.com for updates on startup
(codex-no-startup-update-check.patch)
- Ship bash, fish and zsh completions as subpackages
- Run the test suite for the self-contained crates only
(protocol, apply-patch, execpolicy, file-search, config); the
remaining crates' test harnesses roughly double a build that
already takes over an hour
- Build with LTO off and codegen-units 16: upstream's thin LTO plus
the distribution's -C debuginfo=2 needs 43 GB RSS in a single
rustc, more than any build worker provides
/usr/share/fish /usr/share/fish/vendor_completions.d /usr/share/fish/vendor_completions.d/codex.fish
Generated by rpm2html 1.8.1
Fabrice Bellet, Fri Oct 9 23:56:32 2026