先移走秘密
使用环境变量或秘密管理服务,并给测试环境使用单独凭据。仓库中的示例文件只保留变量名。
再限制代理
用只读或工作区写入边界,限制网络和命令审批;任务中明确禁止访问的路径仍只是补充。
参考来源
优先使用 OpenAI 官方文档与官方仓库。外部来源会单独标识。
- OpenAI Codex:Permissions
官方来源 · https://learn.chatgpt.com/docs/permissions
- OpenAI Codex:Sandbox
官方来源 · https://learn.chatgpt.com/docs/sandboxing
- OpenAI Codex:Agent approvals & security
官方来源 · https://learn.chatgpt.com/docs/agent-approvals-security
- openai/codex Issue #2847:A way to exclude sensitive files
外部公开来源 · https://github.com/openai/codex/issues/2847
codex.study 是独立运营的中文 Codex 学习与资料平台,与 OpenAI 不存在隶属、授权或官方认证关系。