<p align="center"><strong>Codex CLI</strong> is a coding agent from OpenAI that runs locally on your computer. <p align="center"> <img src="https://github.com/openai/codex/blob/main/.github/codex-cli-splash.png" alt="Codex CLI splash" width="80%" /> </p
LPM treats this as warn-only first-party agent extension lifecycle risk. On global npm installation, the lifecycle script replaces the existing codex launcher in the configured prefix. This is an unconsented same-command CLI launcher mutation, not a broad agent-config write.
Tarball package.json differs from the npm registry version manifest for scripts or dependency sets.
package.jsonView on unpkgPackage defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgSource creates an unconsented AI-agent control surface through install-time mutation or a default unauthenticated remote skill channel.
scripts/postinstall.mjsView on unpkg · L2Source file is highly similar to a previously finalized malicious package; route for source-aware review.
bin/codex.jsView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
bin/codex.jsView on unpkgTarball package.json differs from the npm registry version manifest for scripts or dependency sets.
package.jsonView on unpkg · L23Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L24Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L24Source creates an unconsented AI-agent control surface through install-time mutation or a default unauthenticated remote skill channel.
scripts/postinstall.mjsView on unpkg · L2Source file is highly similar to a previously finalized malicious package; route for source-aware review.
bin/codex.jsView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
bin/codex.jsView on unpkg