HomeFounders News › Tools & AI
Tools & AI Global Jul 29, 2026

OpenAI open-sources Codex Security CLI for pre-merge vulnerability scanning

In late July 2026 OpenAI released its Codex Security CLI and SDK as open source under Apache 2.0 (npm install @openai/codex-security). It scans repositories, reviews staged and unstaged changes before a commit, and runs in CI with a severity threshold that fails the build on findings at or above a set level. The catch: the underlying scanner stays proprietary and gated to approved beta customers.

Why this matters for founders

Lean teams can wire automated vulnerability scanning into their commit and CI flow to catch security issues before merge, though production use still requires OpenAI beta access to the backend scanner.

Source: DevOps.com

Get briefs like this tuned to your business.

In the app, Founder Briefs are personalized to your country, industry and stage, and you can save the ones that matter.

Start for free →
Related updates

More that helps you.