codex-keysmith
A CLI for reversible instruction deployment into Codex: preview the plan, confirm, and fully roll back
Medium risk
We rate an entry medium when the tool runs code, makes network calls or reads project files. Check what exactly it does before installing.
Why this level
- Writes to the local Codex configuration, affecting the behavior of all new conversations
Install
Manual install
python3 codex-instruct-vX.Y.Z.py --codex-dir ~/.codex --dry-run --lang zh-CNReplace vX.Y.Z with the current release tag from the Releases page; download the file first. Drop --lang zh-CN for English output.
This is third-party code. Review the repository files before installing.
What it does
The tool installs a system instruction on top of the local Codex configuration without touching the program itself and without reading account credentials or keys. Before any write it shows a plan of exactly which files it will touch, and the write happens only after explicit confirmation. The change applies to new Codex conversations started after installation; existing sessions are left alone. The installation can be rolled back at any time with uninstall, using the same preview-then-confirm cycle, and a reactivate flag restores a previously disabled instruction.
Who it is for. For Codex CLI users who want a reproducible, reversible way to set a system instruction instead of hand-editing config files.
Good fit when
- You want to set one instruction for all new Codex conversations on the machine
- You want a safe way to roll back the change if the instruction does not work out
- You want to preview the write plan before anything in the config actually changes
Not a fit when
- Codex CLI is not installed on the machine
- A manual edit of one config file is enough, without versioning or rollback
Example request
Show me what would change if I install my instruction into Codex here, but do not write anything yetLimitations
Primary support is macOS and Linux; a fresh deployment on Windows is marked as a beta channel by the author. Needs Python 3.10 or newer. Unsigned desktop builds exist for Apple Silicon and Windows x64, not signed by SignPath Foundation, which may trigger Gatekeeper or SmartScreen warnings.
How to disable. Run codex-instruct-vX.Y.Z.py --codex-dir ~/.codex --uninstall, the plan of changes is shown before anything is written, confirm with the --yes flag.
Security check
- Writes to the local Codex configuration, affecting the behavior of all new conversations
README in short
The bilingual README describes a four-step cycle: preview the plan first, write only after confirmation, start a new Codex conversation to apply the change, and roll back at any time through the same preview cycle. The main install path is a single script from the latest stable release with a SHA256SUMS checksum check; unsigned desktop builds also exist. It states the tool does not collect or upload user data.
FAQ
Does it modify Codex itself or read account data?
No, the author states plainly that the program is not modified and account credentials are not read, only config files are touched.
Are there versions for other agents?
Yes, the author maintains separate repositories: claude-keysmith for Claude Code, grok-keysmith for Grok Build, and zcode-keysmith for ZCode.
Related
A skills library that gives coding agents a development process: brainstorming, planning, TDD, subagents and code review
Skills for real engineers by Matt Pocock
Skills For Real Engineers
Small composable skills for engineering with agents: plan grilling, TDD, bug diagnosis, code review and architecture
GitHub toolkit for spec-driven development: the specify CLI adds agent commands and skills to a project, from principles to implementation
Reference MCP servers
Model Context Protocol servers
Official reference MCP servers: Filesystem, Fetch, Git, Memory, Sequential Thinking, Time and Everything