Codex CLI v0.162.0: worktree tools, /copy, clickable links#

Published by

Part of the Codex CLI Version Tracker series. | Codex on GitHub | Official Changelog

Codex CLI v0.162.0 follows v0.161.0 with managed Git worktree tools for trusted local projects, a /copy command plus Ctrl+Insert for copying transcript text, and clickable URLs across approval prompts, questions, and MCP dialogs. It also strips a new Guardian key from the environments handed to model-reachable child processes and adds a dedicated client for resuming cloud threads.[1]

What Shipped#

ChangeWhat It Does
Managed worktree toolsNew tools create and list managed Git worktrees from trusted local projects, behind the worktrees feature flag.[1][2]
Copy from the transcript/copy navigates and copies transcript blocks, Ctrl+Insert copies the current selection, and tui.mouse_scroll_speed tunes mouse-wheel scrolling.[1]
Clickable URLsLinks render as clickable in approval headers, questions, MCP prompts, warnings, banners, and verification prompts, including when a link wraps across lines.[1]
Pin tasks in the Command Centerp pins a task in the agent Command Center and keeps it in a shared Pinned group when the server supports it.[1]
Custom provider web and compactionCustom Responses-compatible model providers can be configured for live web access and remote compaction.[1]
Code Mode tool searchOpt-in ranked tool search in Code Mode, alongside JavaScript helpers that stream promise results as they settle.[1][2]

Code Mode and custom providers#

Code Mode, the path where the model writes JavaScript to drive tools, gains two opt-ins this release. Ranked tool search is opt-in, and new JavaScript helpers stream promise results as each one settles rather than waiting for the whole batch.[1][2] On the provider side, custom Responses-compatible endpoints can now be configured for live web access and remote compaction, so a self-hosted or third-party model wired through the Responses API reaches the same web and context-management capabilities the bundled provider uses.[1]

Sandbox, secrets, and Windows#

The guardian decisions API key, CODEX_GUARDIAN_DECISIONS_API_KEY, is added to the variables stripped from the environment of model-reachable child processes, so it is protected from environment forwarding.[2]

Sandbox fixes land on both platforms. Linux startup no longer fails when multiple files are denied, writable sandbox-construction executables are rejected, and ripgrep configuration can no longer weaken deny-glob masks.[1] On Windows, ordinary drive-letter file access is restored on Windows 10 and sandbox temp permissions match the child process environment.[1] Windows releases also ship a signed PowerShell installer, and archive checksum verification is fixed when PowerShell 7 module paths are present.[1] apply_patch now preserves existing CRLF line endings without an opt-in, and retryable Responses and WebSocket failures honor the server's Retry-After advice.[1]

Cloud threads, Guardian, and Windows#

A new crate, codex-cloud-client, is a native gRPC client for resuming and attaching to cloud threads.[2] A thread started in the cloud and resumed locally now travels that path.

Guardian V2 gained Decisions comparison classification with agreement and latency metrics, and its API key is now protected from environment forwarding.[1][2]

On Windows, the release adds a signed PowerShell installer, restores drive-letter file access on Windows 10, and matches sandbox temp permissions to the child process environment.[1] Alongside Code Mode's ranked tool search and clickable links across every approval and MCP prompt, v0.162.0 moves the terminal UI, the sandbox, and the cloud path in the same release.

All trademarks and software referenced belong to their respective owners.

Sources#

  1. Codex CLI release notes, rust-v0.162.0
  2. Codex CLI CHANGELOG

Previous Codex CLI analysis: v0.161.0 (October 7, 2026)

All 13 Codex CLI analyses: Codex CLI Version Tracker · Official Codex CLI changelog