Browser access blocked despite “Always allow” permission for chatgpt.com
Nobody has claimed this yet.
- Dominant language
- Rust
- Stars
- 125k
- Forks
- 19.4k
- PR merge metrics
- PR metrics pending
Description
What version of the Codex App are you using (From “About Codex” dialog)?
26.903.71938
What subscription do you have?
Plus
What platform is your computer?
Microsoft Windows NT 10.0.26200.0 x64
What issue are you seeing?
Codex cannot access https://chatgpt.com through the built-in browser, even though Settings > Browser > Site permissions shows:
- Default > Browsing: Always allow
- https://chatgpt.com > Browsing: Always allow
The browser tool repeatedly returns this error:
“Browser Use rejected this action due to browser security policy. Reason: A saved user permission setting blocks this action. Browser use cannot access https://chatgpt.com because the user has a saved preference that blocks it.”
The displayed permissions and the browser tool’s enforcement appear inconsistent. The underlying cause is unknown.
What steps can reproduce the bug?
Feedback ID: 01a091d0-e283-76f2-b603-cf331e76fd49
What is the expected behavior?
The browser should honor the explicit Always allow permission for https://chatgpt.com.
If another policy overrides this setting, Codex should identify that policy clearly instead of reporting a saved user block that is not visible in Settings.
Additional information
The issue persisted across multiple retries in the same conversation. Screenshots show both the default browsing permission and the explicit https://chatgpt.com permission set to Always allow.
Please correlate this report with Feedback ID:
01a091d0-e283-76f2-b603-cf331e76fd49
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
Start with Feedback ID 01a091d0-e283-76f2-b603-cf331e76fd49 and reproduce the rejection using the Browser settings shown in the report. Trace how the explicit chatgpt.com permission is evaluated against the browser security policy; done means the allow setting is honored or the overriding policy is identified clearly.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- rust
- Domain
- desktop, security
- Issue type
- Bug
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Active
- Clarity
- Needs clarification
- Newbie friendliness
- 42/100