Codex hooks: permission boundaries for asynchronous execution and MCP tools
AGENTS.md and skills provide instructions to the model; hooks enforce decisions at runtime. Before a tool call runs, a hook can determine whether it is allowed. This is an enforcement mechanism that can reject a call, rather than a reminder. Codex hooks now support asynchronous execution and direct MCP tool calls, making their permission boundaries important to understand.
AGENTS.md and skills provide instructions to the model; hooks enforce decisions at runtime. Before a tool call runs, a hook can determine whether it is allowed. This is an enforcement mechanism that can reject a call, rather than a reminder. Codex hooks now support asynchronous execution and direct MCP tool calls, making their permission boundaries important to understand.
This guide is part of the Agentovra developer knowledge base. It presents the practical context, configuration details, and troubleshooting steps for the topic above.
Use the examples and checks on this page as a starting point, then adapt them to your own project and tool configuration.