Coding Horizon

OpenAI Codex Wants The Most Dangerous Permission

Every figure, date, quotation and product claim the finished picture puts on screen, chased to a primary source. Anything that could not be chased to one is listed at the bottom and is deliberately kept off screen.

The reported Persistent mode

On screen: the enum entry and its comment in beat 003, the date in beat 014, the testing and no launch state in beat 015, the quoted instruction in beat 025.

What Codex already has

On screen: the four capability sockets in beats 018 and 019, the counted figure in beat 020, the surfaces in beat 050.

Cursor

On screen: the event bus and its three sources in beats 044 and 048, the self subscribing pull request in beat 045.

GitHub Copilot coding agent

On screen: the eight GitHub objects in beat 054, the five added controls in beat 057.

Google Jules

On screen: the pipeline in beat 065, the task list in beat 066, the two dials in beats 069 and 070.

Claude Code and permissions

On screen: both figures in beat 079, the sandbox boundary in beat 078, the approval behaviour in beat 080.

The Hugging Face incident

On screen: the report header in beat 085, the containment breach in beat 086, the two compromised systems in beat 087, the quoted phrase in beat 088.

Illustrative, and drawn as such

The small SaaS morning in beats 096 to 107 is a worked example rather than a reported event. The 18 percent payment failure figure, the three support tickets and the failing integration test are the example’s own numbers, and the shot draws them as one hypothetical report rather than as a measured incident.

Not checked