Discussion about this post

User's avatar
JP's avatar

The worktree + tmux swarm pattern is clever. That --dangerously-bypass-approvals-and-sandbox flag in the Codex example makes me nervous though. Even in isolated branches your SSH keys and cloud creds are still in scope. sandbox_mode = "workspace-write" with approval_policy = "never" gets you the same autonomy without the exposure. Covered the full sandbox and approval matrix here: https://reading.sh/the-definitive-guide-to-codex-cli-from-first-install-to-production-workflows-a9f1e7c887ab

No posts

Ready for more?