This package does not use a "private build binary." The linked repository 
contains the public build and packaging workflow. The linked repository 
contains the public build and packaging workflow. The package fetches 
checksummed artifacts produced by that public pipeline, with versions tracked 
from OpenAI’s Codex prod appcast feed.

I agree the metadata could have been clearer. I have since updated the package 
description to make provenance explicit.


Sent with Proton Mail secure email.

On Wednesday, March 25th, 2026 at 9:51 PM, [email protected] 
<[email protected]> wrote:

> RubenKelevra [1] filed a deletion request for codex-app-linux-bin [2]:
> 
> Uses a private build binary as source, not an official source by
> OpenAI.
> 
> Source is https://github.com/better-slop/codex-app-linux
> 
> Should therefore IMHO make this more clear in the name of the package.
> 
> Apart from that there's no reason that "repackaging" can't happen via
> the PKGBUILD script itself, so hiding in a private build binary smells
> like possibly malintent
> 
> [1] https://aur.archlinux.org/account/RubenKelevra/
> [2] https://aur.archlinux.org/pkgbase/codex-app-linux-bin/

Reply via email to