73
/ 100
1 month ago
glama

Codex Control Plane MCP

Reliable Codex Desktop automation for long tasks with durable async operations, Plan Mode workflows, and retry-safe task submission.

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
No credential exfiltration, no sensitive file access, no obfuscation
Static analysis found nothing flowing your secrets to unexpected places.
Open source with a license and README
Anyone can audit the code, the license is declared, and the publisher documents what it does.
🔐
You'll be asked for 1 credential: DEEPSEEK_API_KEY
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// required environment variables
This server reads these from process.env. You'll be asked to provide them before it can run.
configCODEX_HOMECodex home directory. Defaults to %USERPROFILE%\.codex.
configCODEX_PROJECTS_ROOTproject root scanned by catalog and read tools.
configDEEPSEEK_ENV_PATHoptional .env file for DeepSeek summary settings.
configCODEX_CONTROL_PLANE_MCP_CONFIGby . The old OPENCLAW_CODEX_MCP_CONFIG name is
configOPENCLAW_CODEX_MCP_CONFIGby CODEX_CONTROL_PLANE_MCP_CONFIG. The old name is
configCODEX_MCP_STATE_DBlocal MCP state DB.
configCODEX_ALLOWED_ROOTSsemicolon-separated path allowlist.
configCODEX_PROJECTS_REGISTRYoptional JSON project registry.
configCODEX_KB_HISTORY_PROJECTS_ROOToptional legacy normalized KB history root.
configCODEX_MCP_DEFAULT_APPROVAL_POLICYdefault write approval policy. Defaults to on-request.
configCODEX_MCP_DEFAULT_SANDBOXdefault write sandbox. Defaults to read-only.
configCODEX_MCP_DEFAULT_SANDBOX_POLICY
configCODEX_MCP_DEFAULT_MODELdefault Codex model passed to app-server.
configCODEX_MCP_DEFAULT_EFFORTdefault effort level.
configCODEX_MCP_APPROVAL_RESPONSE_TIMEOUT_SECONDSpending interaction timeout.
configDEEPSEEK_SUMMARY_ENABLEDenables or disables remote summary calls.
configDEEPSEEK_SUMMARY_REQUIRED
configDEEPSEEK_MAX_INPUT_CHARS_PER_CHUNK
configDEEPSEEK_RECENT_MESSAGES_LIMIT
configDEEPSEEK_SMALL_HISTORY_MESSAGE_LIMIT
configDEEPSEEK_SMALL_HISTORY_CHARS
configDEEPSEEK_MAX_SUMMARY_TOKENS
configDEEPSEEK_TEMPERATURE
configDEEPSEEK_SUMMARY_TIMEOUT_CAP_SECONDS
configDEEPSEEK_SUMMARY_MAX_RETRIES_CAP
configROLLING_SUMMARY_ENABLED
configCODEX_MCP_TAIL_MAX_MESSAGES
configCODEX_MCP_TAIL_MAX_CHARS
configCODEX_MCP_HOOK_HISTORY_ENABLEDenables SQLite hook history. Defaults to true.
configCODEX_MCP_HOOK_HISTORY_MAX_TEXT_CHARSper-message hook capture limit.
configCODEX_MCP_MAX_IMAGE_INPUT_ITEMSmax image attachments per codex_submit_task. Defaults to 10.
configCODEX_MCP_MAX_IMAGE_INPUT_BYTESmax bytes for one local image input. Defaults to 20000000.
configCODEX_BINARY_PATHoptional explicit Codex binary path.
🔐 secretDEEPSEEK_API_KEY
configDEEPSEEK_BASE_URL
configDEEPSEEK_SUMMARY_MODEL
configDEEPSEEK_TIMEOUT_SECONDS
configDEEPSEEK_MAX_RETRIES
configCODEX_CONTROL_PLANE_MCP_HOOK_CONFIG
configOPENCLAW_CODEX_MCP_HOOK_CONFIG
configCODEX_CONTROL_PLANE_MCP_LOGlog file path.
configOPENCLAW_CODEX_MCP_LOG
// full audit trail
The full breakdown of what we checked, the deductions that landed, the network hosts, the dependency advisories, and concrete fix guidance is available to verified publishers.
// improvement guidance — verified publishers only
We have 1 concrete improvement we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/aresyn-codex-control-plane-mcp-1n6m4q)](https://m8ven.ai/mcp/aresyn-codex-control-plane-mcp-1n6m4q)
commit: 96795fd8e82c4c33cd1e1ccf12feac5b12aff703
code hash: 66a4c7a86e0266020b4a9909980168e19f49c0848b4c533c3b62de23cea82e6f
verified: 6/18/2026, 10:30:57 AM
view raw JSON →