SwiftAgent

CODEX · APP-SERVER V2

Codex,
with approvals you can inspect.

Use Codex's native app-server stream, questions, plans, usage, and approval policy inside the same local review workflow as your other coding agents.

NATIVE CODEX CONTROL

Policy stays explicit.

Thread start/resume, model discovery, approvals, questions, plans, usage, and Codex sandbox settings use the native protocol. A dangerous no-approval/full-access combination requires separate confirmation.

SWIFTAGENT REVIEW

One receipt format.

Each run keeps Codex identity and native event types while adding a normalized ledger, Git baseline and impact, verification evidence, and separate native versus SwiftAgent safety layers.

CODEX WORKFLOW

01

Probe readiness

Version and login status are checked locally without sending a prompt or copying credentials.

02

Approve with context

Native tool and patch requests appear in the shared timeline with their actual outcomes.

03

Review before “done”

The receipt separates Codex's completion from a user- or system-recorded passing test.

HONEST BOUNDARY

Native sandbox is not host isolation.

Codex safety settings and SwiftAgent's external process isolation are different layers. Image transport exists in the adapter but composer routing remains partial. Strict host isolation still requires usable Linux Bubblewrap; macOS fallback is not OS isolation.

Submit a redacted compatibility report