Skip to content

fix: Codex CLI keeps its sign-in when one of its processes renews with a copy another already used - #342

Merged
cyberpapiii merged 1 commit into
mainfrom
ship/codex-cli-keeps-its-sign-in-when-one-of-its-proc
Oct 7, 2026
Merged

cyberpapiii merged 1 commit into
mainfrom
ship/codex-cli-keeps-its-sign-in-when-one-of-its-proc

Conversation

@cyberpapiii

@cyberpapiii cyberpapiii commented Oct 7, 2026 •

Copy link
Copy Markdown
Owner

Codex CLI runs as several processes that share one saved sign-in. Each keeps the refresh token it read at start, so one renews and another presents the spent copy later, often about an hour on. Plug took that for a replay after 60 seconds and revoked the whole sign-in, which signed every Codex process out.

A spent refresh token presented by the same client is now accepted for a week while the sign-in is still live. Past that, or from another client, it still revokes the family.

Also drops the client audit line from docs/STATUS.md: the owner confirms GrokBot is told apart correctly.

Tested: ./scripts/dev.sh, and installed with dev-install.sh.

🤖 Generated with Claude Code

…h a copy another already used

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
@cyberpapiii
cyberpapiii enabled auto-merge (squash) October 7, 2026 02:26
@cyberpapiii
cyberpapiii merged commit 19ce075 into main Oct 7, 2026
8 checks passed
@cyberpapiii
cyberpapiii deleted the ship/codex-cli-keeps-its-sign-in-when-one-of-its-proc branch October 7, 2026 02:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant