Privacy policy for Codex Assisted Bridge
Codex Assisted Bridge by DenDi
Privacy policy for Codex Assisted Bridge
Effective date: 2026-09-06
Codex Assisted Bridge gives a user-controlled Codex session limited access to Firefox tabs that the user explicitly approves. It is designed for use with a separately installed local Codex Assisted plugin.
Only after the user enables access for the current tab, the extension may handle and transmit:
- the approved tab's HTTPS origin, URL path, page title, and session status;
- sanitized visible page text, headings, links, and non-secret control metadata;
- a screenshot of the visible tab after form controls and editable regions are hidden;
- user-approved or supervised action descriptions, targets, status, and results.
These categories correspond to browsing activity, website content, and website activity in Firefox's installation disclosure.
The extension is designed not to read or transmit cookies, saved passwords, browser history, bookmarks, private-window content, file selections, or the values of password, payment, authentication, or other secret-looking fields. Form values and editable content are excluded from sanitized page reads, and form controls are hidden before screenshots.
The extension sends approved data only to a loopback service at http://127.0.0.1:32146 on the same computer. The local service makes that data available to the user's active Codex workflow. Data supplied to Codex may be processed by the Codex/OpenAI service under the user's applicable OpenAI account terms and privacy settings.
The extension developer does not operate a separate analytics or collection server and does not receive this data. The extension does not sell data, use it for advertising, or share it with data brokers.
Browser approval and action state is kept in memory by the extension and local bridge. Approved-tab state expires quickly if the extension heartbeat stops. Pending actions expire after 120 seconds. A supervised session expires automatically after 30 minutes and is limited to the approved tab and HTTPS origin.
The user can revoke all approved tabs at any time by selecting STOP ACCESS in the extension popup. Access is also revoked on cross-origin navigation and other fail-closed conditions. The local Codex application may retain tool responses in local task history or evidence files when the user explicitly requests that workflow; that retention is controlled by the Codex application and the user, not by the extension.
Material changes to this policy will be published with the corresponding extension update and AMO listing.
The AMO listing's support contact is the contact point for privacy questions about this extension.