Codex Security Cloud Update: What's New?
Codex Security Cloud gained continuous scanning and automatic remediation features with the update announced at DevDay 2026.

Codex Security Cloud is OpenAI's cloud service that automatically finds and fixes security vulnerabilities in code repositories. The major update announced at OpenAI DevDay 2026 brings continuous scanning, automatic patching, and a new interface. For businesses, it significantly cuts down the time spent on manual security audits.
In short:
- Codex Security Cloud now scans GitHub repositories on demand or on a schedule.
- It follows a three-stage process: identification, verification, and remediation.
- Daybreak Blue models are now integrated into the service by default.
- It's available on desktop and web for Pro, Business, Enterprise, and Edu plans.
What is Codex Security Cloud?
Codex Security Cloud is a vulnerability scanning service that runs in OpenAI's cloud environment. It analyzes connected GitHub repositories to detect vulnerabilities. The system examines the code and commit history to build a threat model. This approach works differently from classic scanners that rely on static signatures (therundown.ai).
The service isn't a one-off scanning tool. It's designed as a continuously running system that tracks new commits. This means teams no longer have to manually kick off a scan every time the code changes.
What was announced at DevDay 2026?
On September 29, 2026, OpenAI unveiled the major update to Codex Security Cloud at its DevDay event. The highlight of the announcement was reusable cloud development environments accessible from any device (newsbytesapp.com).
The update also brought important improvements on the security side. It introduces automatic duplicate detection, scheduled scans, and a redesigned interface (superpowerdaily.com). The system can also scan all GitHub repositories either on demand or according to a set schedule (the-decoder.com).
This development is part of OpenAI's broader investment in the Codex family. Similarly, in recent months, models like GPT-6 Sol and Luna also stood out with enterprise-focused features.
How does Codex Security Cloud work?
The system operates through a three-stage process: identification, verification, and remediation. During identification, the repository is analyzed and realistic attack paths are investigated. During verification, each detected issue is actually tested to see if it can be exploited (help.openai.com).
In the final stage, remediation, a patch is prepared for teams to review. This means developers don't apply the suggested change directly; they check it first. This is a critical step that keeps the automation safe.
The analysis process takes place in a short-lived, isolated container. Codex Security temporarily clones the target repository to produce structured, code-level findings (developers.openai.com). This isolation prevents any risk from spreading to the actual production environment.
Which plans offer access, and how?
Codex Security Cloud is available on the Pro, Business, Enterprise, and Edu plans. The service can be accessed both from desktop and the web (the-decoder.com). Codex Security Cloud works as an add-on within the Codex desktop and web app (superpowerdaily.com).
The service also comes with Daybreak Blue, cybersecurity-capable models, integrated by default (superpowerdaily.com). This is an important technical detail that directly affects scan quality.
The Codex Security CLI, released in July 2026, is also part of this ecosystem. This open-source tool allows repositories to be checked from the command line and CI/CD pipelines (the-decoder.com). For developers, the @openai/codex-security package is also available as a CLI and TypeScript SDK (github.com).
Why does Codex Security Cloud matter for businesses?
The biggest benefit for businesses is that security audits become continuous and automated. Manual penetration tests are expensive and time-consuming processes. Codex Security Cloud significantly reduces this burden.
Teams no longer need to trigger a manual scan after every commit. The system automatically tracks new changes and filters out duplicate findings. This makes it easier for security teams to focus on real risks.
These kinds of automation tools are increasingly becoming standard in enterprise software projects. At EngerekTech, we also offer our clients similar security practices as a natural part of the software development process.
Frequently asked questions
Is Codex Security Cloud free?
No, the service is included in the Pro, Business, Enterprise, and Edu plans. No separate access information has been shared for free users. The Codex Security CLI, however, is open source and can be used for free as a separate tool.
Which repositories can Codex Security Cloud scan?
The system scans connected GitHub repositories. Scans can be triggered on demand or run automatically on a set schedule. As new commits come in, the system continues to check them as well.
Does Codex Security Cloud automatically change the code?
No, the system doesn't apply fixes automatically. During the remediation stage, a patch is prepared and presented to the team for review. The final decision is left to the developer.
How does Codex Security Cloud differ from other security tools?
Classic scanners generally rely on static signatures. Codex Security Cloud, on the other hand, builds a threat model by analyzing the code and commit history. This contextual approach aims to better capture realistic attack scenarios.
Codex Security Cloud is an important step toward bringing automation to software security. OpenAI's rapid progress in this area could reshape security processes in enterprise projects. At EngerekTech, we're closely following these kinds of innovations and evaluating how they can add value to our clients' projects.


