Dev discovers Codex security hardening switched persistent agent sessions to per-message instances

RileyRalmuto · x · 2026-09-18

An indie developer found that about a week ago Codex's security hardening changed their relay agent app's persistent sessions into per-message fresh instances relying on turn-by-turn continuity handoffs — breaking the app's core promise of agents that wake up with memory of yesterday. The relay's crypto verification flow is intact, the fix looks minor, and the author notes the logic makes sense at an ultra-high security level but defeats the app's purpose.

Original post →

More from coding & agent

coding & agent channel →