Daily Edition Sources +6

Codex Makes Plugin Trust Runtime Policy

A new Codex plugin patch turns marketplace source restrictions into runtime filtering, loading, and cache-refresh behavior.

Diagram Punk poster showing Codex marketplace source policy feeding a runtime plugin loader, with blocked plugins marked inactive and a caveat that it is not a full sandbox.
Diagram Punkplugin trust moved into runtime policy.
repo openai/codex evidence
6 source signals 1 repo commit 9dbdb4e
Evidence: commit 9dbdb4e / June 28, 2026 / Daily Edition
Open Edition Evidence below

openai/codex merged commit 9dbdb4e on June 27, adding runtime enforcement so blocked installed plugins become inactive when enterprise marketplace source policy changes.

For agent builders, the morning decision is to treat plugin trust as a live runtime contract. The caveat is narrow: this proves Codex's policy path, not a general plugin-security standard.

Facts

  • The patch projects effective marketplace and plugin config through source policy before configured plugins are loaded.
  • Marketplace listing, plugin reads, discovery, and CLI marketplace snapshots now use the same allowed-source filter.
  • The cache refresh path records configured plugin keys, continues after per-plugin failures, and includes projected plugin state in refresh decisions.

Evidence

The strongest receipt is Codex PR #29691, with changes in marketplace_policy.rs, manager.rs, loader.rs, and new policy tests.

Context

This is a Tool, Protocol, And Integration Surface story. Plugins are useful only when operators can say which marketplace source was admitted, which plugin remains active, and why stale cache state was invalidated.

Limits

The evidence does not show a public release, third-party adoption, or complete plugin sandboxing. Watch whether runtime source policy becomes visible in user-facing plugin diagnostics and enterprise configuration docs.

Evidence Trail

Receipts below the story

The article above is the public narrative. This section keeps the source trail and limits on the same page.

Edition
DateJune 28, 2026
LaneDaily Edition
Confidence87%
Sources6
Reposopenai/codex

Primary Evidence

Evidence Limits

  • The evidence supports a source-level Codex change, not a public release claim.
  • It does not prove broad marketplace adoption, full plugin sandboxing, or an industry standard.
  • The article interprets the change as a runtime trust-boundary signal because the patch affects effective plugin state and cache behavior.
Letters & Corrections

Send a note to the desk

Corrections, missing context, or a follow-up lead.