Local MCP server that delegates coding tasks to the OpenAI Codex CLI, with explicit model and reasoning-effort selection.
Inferred from the transports this listing declares (stdio). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
Read out of the source npm actually ships, at scan time. The package was never executed. Tools registered dynamically at runtime, or hidden inside bundled or minified code, can be missed — so this is a floor on the tool surface, not a complete census of it.
codex_doctorCheck whether the local Codex CLI is installed, recent enough, signed in and able to load its configuration, and report the exactCheck whether the local Codex CLI is installed, recent enough, signed in and able to load its configuration, and report the exact
No input schema was published for this tool.
list_codex_modelsList the Codex models available on this machine, with the reasoning-effort levels each one supports.List the Codex models available on this machine, with the reasoning-effort levels each one supports.
No input schema was published for this tool.
codex_recommendGiven a task description, recommend which Codex model and reasoning effort to delegate it with.Given a task description, recommend which Codex model and reasoning effort to delegate it with.
No input schema was published for this tool.
codex_delegateDelegate a task to the local Codex CLI (OpenAI's coding agent), choosing model and reasoning effort.Delegate a task to the local Codex CLI (OpenAI's coding agent), choosing model and reasoning effort.
No input schema was published for this tool.
codex_follow_upSend a follow-up message to a previous delegation using its thread_id. Codex retains the earlier context,Send a follow-up message to a previous delegation using its thread_id. Codex retains the earlier context,
No input schema was published for this tool.
codex_job_statusReport the state and recent activity of a background delegation started with mode=background.Report the state and recent activity of a background delegation started with mode=background.
No input schema was published for this tool.
codex_job_resultReturn the full output of a finished background delegation. Errors if the job is still running.Return the full output of a finished background delegation. Errors if the job is still running.
No input schema was published for this tool.
codex_job_cancelTerminate a running background delegation.Terminate a running background delegation.
No input schema was published for this tool.
8 of 8 tools published a description.
Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.
Local MCP server that delegates coding tasks to the OpenAI Codex CLI, with explicit model and reasoning-effort selection.
Linked names open Forge’s index of every entry observed exposing that tool. Browse all indexed tools.
The crawl stopped at the depth-4 limit. Anything below that level was never resolved.
The crawl stopped at the 60-package limit. The rest of the tree was never resolved.
36 more resolved packages are not drawn here (display cap: 24). Every dependency carrying an advisory is drawn regardless of the cap. Full inventory (CycloneDX SBOM)
53 declared dependencies never landed in the tree. They are missing from Forge's resolution, not from the package.
+41 more not listed. The counts by reason above cover all of them.
Not followed: peerDependencies. This tree covers runtime dependencies only, so anything those pull in was never resolved.