# Our response to the Axios developer tool compromise

DevFeed: [Our response to the Axios developer tool compromise](<https://devfeed.tech/articles/our-response-to-the-axios-developer-tool-compromise-6305.md>)

Original publisher: [Read original article](<https://openai.com/index/axios-developer-tool-compromise>)

Published: 2026-04-10T00:00:00Z

Content type: news

Language: en

Sources: [OpenAI News](<https://devfeed.tech/sources/openai-news.md>)

Topics: [OpenAI](<https://devfeed.tech/topics/openai.md>), [software supply-chain attack](<https://devfeed.tech/topics/software-supply-chain-attack.md>), [macOS](<https://devfeed.tech/topics/macos.md>), [Security](<https://devfeed.tech/topics/security.md>), [GitHub Actions](<https://devfeed.tech/topics/github-actions.md>), [ChatGPT](<https://devfeed.tech/topics/chatgpt.md>), [codex](<https://devfeed.tech/topics/codex.md>), [Command-line interface](<https://devfeed.tech/topics/cli.md>)

Tags: [apps](<https://devfeed.tech/tags/apps.md>), [chatgpt](<https://devfeed.tech/tags/chatgpt.md>), [cli](<https://devfeed.tech/tags/cli.md>), [codex](<https://devfeed.tech/tags/codex.md>), [github-actions](<https://devfeed.tech/tags/github-actions.md>), [macos](<https://devfeed.tech/tags/macos.md>), [openai](<https://devfeed.tech/tags/openai.md>), [security](<https://devfeed.tech/tags/security.md>), [software-supply-chain-attack](<https://devfeed.tech/tags/software-supply-chain-attack.md>)

## AI overview

OpenAI describes its response to the compromise of the Axios developer library in a broader software supply-chain attack. The company found no evidence of user-data access, system or intellectual-property compromise, or altered software, but is revoking and rotating the macOS application-signing certificate as a precaution. Users must update ChatGPT Desktop, Codex App, Codex CLI, and Atlas by May 8, 2026.

## Source excerpt

OpenAI responds to the Axios supply chain attack by rotating macOS code signing certificates, updating apps, and confirming no user data was compromised.