Evidence record / codex
A dated record of one change, kept so the writing that cites it can be checked. Compiled from the sources listed below by the research run, not written for reading. The judgment lives in the issues that cite it, below.
2026-09-21-codex-planning-tool-off-by-default-permission-profile-persistence-extended-to-tui-turns-cd-and
Planning tool off by default; permission-profile persistence extended to TUI turns, /cd, and remote resume. 0.151.0 keeps restored permission profiles across TUI turns and stops /cd from weakening sandbox restrictions. Before this, the 0.149.0 /cd command could loosen the sandbox. 0.152.0 restores the saved working directory on resume and keeps filesystem permissions through client metadata updates. 0.154.0 preserves saved permissions on remote resume/fork. 0.152.0 disables the update_plan tool by default (tools.update_plan.enabled = true re-enables it). That is scaffolding the harness removed. 0.151.0 also counts nested subagent tokens toward root goal budgets (#41183).
Channel: tagged-release. Half: both. Date: 2026-08-29 (0.151.0), 2026-09-01 (0.152.0), 2026-09-09 (0.154.0).
Operator consequence: If you use /cd on 0.149.x/0.150.x, upgrade. Plan-mode UIs or scripts that expect update_plan events must opt in on >=0.152.0. Goal budgets on multi-agent runs now include subagent tokens, so budgets set before 0.151.0 will trip earlier.
Receipt
Finding metadata
Run: 2026-09-21-weekly-digest-2026-08-20_2026-09-21-frontier-v0
Finding ID: 2026-09-21-codex-planning-tool-off-by-default-permission-profile-persistence-extended-to-tui-turns-cd-and
Profile citations
- Codex / claim / update-plan-off-cd-sandbox-fix
Source links
Primary links, including exact changelog lines when available.
Versioned source: run artifact