MCPLow riskUnclaimed

codex-mcp-bridge

Wraps Codex CLI as MCP tools: codex, review, query, search, structured, ping, listSessions.

hampsterxhampsterx/codex-mcp-bridge★ 3Updated Aug 2, 2026

server.json

{
  "$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
  "name": "io.github.hampsterx/codex-mcp-bridge",
  "description": "Wraps Codex CLI as MCP tools: codex, review, query, search, structured, ping, listSessions.",
  "repository": {
    "url": "https://github.com/hampsterx/codex-mcp-bridge",
    "source": "github"
  },
  "version": "0.9.1",
  "packages": [
    {
      "registryType": "npm",
      "identifier": "codex-mcp-bridge",
      "version": "0.9.1",
      "transport": {
        "type": "stdio"
      },
      "environmentVariables": [
        {
          "description": "Path to the codex CLI binary. Defaults to 'codex' on PATH.",
          "format": "string",
          "default": "codex",
          "name": "CODEX_CLI_PATH"
        },
        {
          "description": "Default Codex model for codex/query/search.",
          "format": "string",
          "name": "CODEX_DEFAULT_MODEL"
        },
        {
          "description": "Model to use when the primary model hits a quota error.",
          "format": "string",
          "name": "CODEX_FALLBACK_MODEL"
        },
        {
          "description": "Maximum concurrent Codex CLI subprocesses (default 3).",
          "format": "number",
          "default": "3",
          "name": "CODEX_MAX_CONCURRENT"
        },
        {
          "description": "Controls which MCP servers from ~/.codex/config.toml stay enabled inside the Codex subprocess. Empty/unset disables all non-required servers; 'inherit' passes config through; comma-separated names (e.g. 'serena,github') enables those; values starting with '{' or '[' are raw TOML.",
          "format": "string",
          "name": "CODEX_MCP_SERVERS"
        }
      ]
    }
  ]
}

Permissions

DeclaredDetected
Runs code—node
Installs—npm:codex-mcp-bridge@0.9.1
Runs install scripts—None
NetworkNoneNone
Needs credentialsNoneNone
Outside the workspace—None
Agent tools—None

Checks

Low risk · Nothing worth a warning was found.

Not reviewed by a person · Checked by rules; the model review is not switched on yet.

Versions

  1. #10.9.1latestOct 7, 2026