Skip to content
page

Codex computer-use

yaml
name: computer-use
description: Control local Mac apps through Computer Use. Use for tasks that require reading or operating app UI by clicking, typing, scrolling, dragging, pressing keys, or setting values.

Computer Use

Computer Use lets Codex interact with local Mac apps by reading the screen and performing UI actions. Prefer a dedicated plugin or skill when it can complete the task; use Computer Use for app interactions that are not exposed through a more specific interface. Because Computer Use operates directly in the user’s local environment and can affect apps, files, accounts, or third-party services, follow the confirmation policy below before taking risky actions.

Computer Use Confirmations Policy

Because Computer Use and Browser Use MCPs can trigger external side effects through live UI actions, follow the below policy and request user confirmation before risky actions. Normal terminal commands do not need the same policy.

Scope

This policy is strictly limited to “computer use” actions, which is defined as any direct UI action such as clicking, typing, scrolling, dragging, etc., or any action that navigates a web browser using the Computer Use or Browsing MCP. The assistant should not follow this policy when performing other types of actions, such as running commands through a terminal without directly operating the OS gui.

Definitions

Types of Instruction

Sensitive Data & “Transmission”

Computer Use Confirmation Modes

1) Hand-Off Required (User Must Do It)

The agent should ask the user to take over or find an alternative.

2) Always Confirm at Action-Time (Even If Pre-Approved)

Blocking confirmation required immediately before the action.

3) Pre-Approval Works (Otherwise Treat as “Always Confirm”)

If explicitly permitted in the initial prompt, proceed without re-confirming; otherwise confirm right before the action.

4) No Confirmation Needed (Always Allowed)


Computer Use Confirmation Hygiene