OpenAI Codex 0.152.0 Disables the Planning Tool by Default, Validates Cloud Task Backends
OpenAI Codex 0.152.0 shipped on September 1. The planning tool is now off by default and needs a setting to turn on, and cloud task requests reject untrusted backend URLs to protect saved credentials.
OpenAI released the stable Codex 0.152.0 (rust-v0.152.0) on September 1, 2026 1.
- The planning tool is disabled by default. Turning it on requires setting
tools.update_plan.enabled = true1 - Cloud task requests now reject untrusted backend URLs and disable redirects, described as protecting saved credentials 1
- MCP server names can contain
:,@,/, and., supporting package-style names across CLI commands and authentication. Individual MCP tools support anoutput_token_limitsetting, with consistent truncation across session resumes 1
Also in this release: / and ? search within drafts in Vim mode (with repeat navigation via n and N), rate-limit banners that offer actions for checking usage and managing credits, and credential-refresh progress in the terminal UI and codex exec, including Amazon Bedrock reauthentication 1. A changed default is the kind of thing that shifts behavior for people who never touched the setting. This is the stable release following 0.151.0 in late August 1.
Sources
- Codex rust-v0.152.0 release notes - GitHub official release notes (September 1, 2026)
Was this article helpful?
Thank you!
Received. Thank you!