feat: Codex-only v1.4.0 for macOS and Windows x64 - #93
Merged
Merged
Conversation
ParkerHwang
marked this pull request as ready for review
September 16, 2026 03:10
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
OpenSocrates 1.4.0 is published, supporting Codex only on Apple-silicon macOS and Windows x64. Other host adapters, selectors, templates, installer choices and release assets are removed. The 48 authored methods and English/Korean procedures remain.
GitHub Release · npm 1.4.0
Reviewed PR head:
1a0b31fac671c7da26f11ac7b7f59868642db0a7.Merged and tagged release commit:
5a2ff3c312e92aa8a44d0905465674d9a4e4f645.Both have the identical tree
68c721b173eb2bdf67a25d649090627cda7a3fd2.Impact
--host allis its compatibility alias. Retired names and retired-host desired state fail before mutation. Remove old integrations using their previous installer first.Tracking
No issue: the maintainer directly authorized the Codex-only revision, protected-branch merge, tagging and GitHub/npm publication through the existing v1.4.0 PR.
Validation
Final PR CI 35050187794, attempt 1, and governance 35050815682 passed at
1a0b31f. After merge, all product/native/installer gates passed again in main CI 35050856536 at5a2ff3c.Local source/generated/content/adjudication/security/installer checks passed during implementation; 248/248 Node tests plus packed npx smoke passed at
155cdac. The final cleanup passed format/type/import/docs/governance/generated checks and 127/127 focused installer/acceptance tests. Exact merged-tagmake release-check, source provenance and release-identity checks passed on Apple-silicon macOS.Publication and independent checks at
5a2ff3c:e7e85c387e896ce411a0131008e5ea547cfa4a22e96b9cde149347f4b5389c5e.389614854reportsimmutable=true.tools/verify_published_release.pydownloaded all 10 public assets and confirmed exact bytes and tag against the validated local assets.74efeab5797de766dabf8394506e29bcb39df3d1b3aac93a5a9ec17a32909a33.d527af9405c8ae0e647ebc2250868418368308009931a3848da0dbe1bbdeb548.latest=1.4.0and SLSA provenance are present. The downloaded npm tarball passed SHA-512 integrity and all 9 file contents matched tagged source.npx --yes opensocrates@1.4.0 update --host codexsucceeded from outside the source checkout, downloaded GitHub assets and verified 296 inventory files. Every installed cache file then matched the published macOS ZIP. Codex-only desired state, disabled auto-update and existing hook preferences were preserved.The initial private update was the actual existing 1.0.0 → 1.4.0 transition. A 1.3.1 purge/reinstall cycle was not manufactured or claimed.
Evidence level
Remaining limitations
SessionEnd notification, first-time trust review, recorded manual acceptance, a separate clean machine, Windows Desktop GUI, Windows 10/ARM64, macOS Intel, Linux native packages, signing/SmartScreen, complete method reads and actual method application are not claimed validated. Windows automatic updates are outside scope. Six observed hooks do not prove answer-quality improvement.
The default Actions release token still cannot query the administrator-level immutable-release setting; future use of that automatic publication path needs suitable authentication. This release completed through the fully verified owner-authenticated path. The separate legacy promotional website was inaccessible through the currently connected Sites account; the repository homepage now points to the current README.
Handoff
Last verified commit:
5a2ff3c312e92aa8a44d0905465674d9a4e4f645, immutable tagv1.4.0, public GitHub/npm 1.4.0, all final/main required CI passed.Commands run: source and installer suites above; exact-tag
make release-check,tools/release_identity.py,tools/write_package_provenance.mjs,tools/merge_windows_release.py,gh release create,tools/verify_published_release.py,npm pack opensocrates@1.4.0, public npx update and the bounded authenticated Codex lifecycle probe.Commands not run: first-time trust reset/review, 1.3.1 purge/reinstall, recorded manual or separate clean-machine acceptance, Windows Desktop GUI and unsupported-platform tests.
Remaining work: the requested Codex-only implementation, validation, merge, tag, publication and public installation checks are complete. The seven-step release plan is complete; its source checkboxes were recorded before publication. Future automatic publisher authentication and the inaccessible legacy website are the limitations stated above.
Known limitations: retained explicitly above; installed default hook enablement remains the user's prior disabled setting, while the live proof uses invocation-only enablement of already-trusted hooks.