Workload identity federation
Two new guides expand Codex workload identity federation coverage:
- Manage Codex workload identity with the Admin API — Programmatically create, list, update, disable, and archive Codex workload identity providers and federation rules.
- Codex federation rule reference — Reference for subjects, audiences, exact claims, CEL conditions, scopes, token lifetimes, and lifecycle behavior.
The workload identity federation overview description now covers authenticating trusted workloads to the OpenAI API and Codex with short-lived identity-provider tokens.