Skip to main content
OpenAI

Frontier intelligence for cybersecurity

Help security teams find and validate vulnerabilities, investigate threats, and move faster from findings to fixes.

Designed for security work at scale

  • 30M+

    commits scanned

  • 30K+

    codebases scanned

  • 500K+

    findings fixed

Expand the capacity of every security team

Codex Security, wherever your teams work

Use Codex Security across the tools your teams already use. Scan code in the cloud, review pull requests automatically, or run local security checks from your terminal with the open-source Codex Security CLI.

Single-circle icon representing the Codex Security plugin.

Codex Security plugin

Best for trying the workflow, reviewing a branch or investing one codebase.

Two-circle icon representing Codex Security Cloud.

Codex Security Cloud

Best for managed, ongoing security scans across connected GitHub repositories.

Three-circle icon representing the Codex Security CLI.

Codex Security CLI

Best for running security scans from your terminal and integrating them into local development or CI/CD workflows. Copy the following code, go to Codex and bash in your CLI: curl -fsSL https://openai.com/codex/security/scan.sh | bash

Built for the full security workflow

Magnifying glass icon

Find vulnerabilities in code

Codex Security + Daybreak Blue: Scan repositories and code changes for likely vulnerabilities, using codebase context to surface high-signal findings before they reach production.

Shield check icon

Validate what matters

Codex Security + Daybreak Blue: Reproduce candidate findings, establish reachability and impact, and capture evidence so teams can focus on vulnerabilities that present real risk.

Wrench icon

Move from finding to fix

Codex Security + Daybreak Blue: Generate focused patches, run relevant tests, and produce reviewable changes with evidence for engineering approval.

Laptop connector icon

Anticipate how systems may be attacked

Daybreak Blue: Map assets, entry points, trust boundaries, sensitive data paths, and abuse cases to help teams prioritize security work before incidents occur.

Tasks icon

Test systems like an adversary

Daybreak Red: Conduct scoped penetration tests and realistic red-team exercises to validate defenses and demonstrate how vulnerabilities could be chained, under clear authorization and rules of engagement.

Sources icon

Investigate complex security targets

Daybreak Red: Analyze malware, binaries, firmware, and controlled proofs of concept to investigate bounded security hypotheses when source code is incomplete or unavailable.

Trusted by leading security organizations

“We’re excited about the potential of OpenAI’s cyber capabilities to bring stronger reasoning and more agentic execution into security workflows. It’s a big step forward for teams to be able to leverage frontier models not only to accelerate velocity, but also to improve their security posture.”
— Dane Knecht, CTO, Cloudflare

Frequently asked questions

Expand your cyber team's capacity with OpenAI

Help security teams find and validate vulnerabilities, investigate threats, and move faster from findings to fixes.