30 Days Gen AI Risk Trial -Start Now
Skip to main content
Code Assistantsgithub.com/openai/codex-cli

Codex CLI

Codex CLI works with local code; model processing, file access and data handling depend on the configured provider, account, permissions and tools.

Risk score

3/10Low

Assessment across data handling, compliance, security and transparency.

Overview

Codex CLI works from a local repository, but local command execution does not mean that model processing or all data stays on the device. Review the configured model provider, account and data terms. File reads, shell commands, plugins and MCP tools have their own permission boundaries and can expose selected content to other services. A separately configured local model provider is different from a remotely processed session or a task delegated to Codex cloud.

Risk factors

3
  • Local CLI execution does not establish that model processing or all data stays on the device.
  • Selected source files and tool results can become context sent to the configured model provider.
  • Filesystem, shell, web and connected-tool access have distinct permission boundaries.

Recommendations

3
  • Verify the account, model-provider endpoint and applicable data terms before using company code.
  • Review effective file, command and connected-tool permissions; test restrictions in an isolated synthetic repository.
  • Review generated changes and retained local or provider copies separately from the input-permission decision.

Data handling

Storage
Local workspace/session data and the configured model-provider processing path; inspect additional tool recipients.
Retention
Review local session/history settings and the chosen provider's policy separately. One retention setting does not describe every copy.
Training on inputs
Depends on the model provider, account and data controls. Local execution alone does not establish that inputs are excluded from training.

See the AI tools in use across your organisation.

Connect your tool research to the employee AI activity and data security questions that matter to your team.