Head to head · Agent harnesses · October 2026 research run

Droid CLI vs OpenAI Codex

OpenAI Codex scores 73 (BB) on agent readiness against Droid CLI's 59.1 (C), and leads in every scored category. Both do agent harnesses.

Best agent harnesses and coding agents · All 167 harnesses comparisons

Which one, for what

Droid CLI C

Good for Teams that want a terminal coding agent with tiered autonomy, command rules and an optional sandbox, and that will pay for a Factory plan.

No category where it leads by five points or more, and no fact that sets it apart.

Watch for

No free tier or trial was found. Plans start at $20 a month and included usage is stated only as rolling rate limits without numbers

OpenAI Codex BB

Good for Teams that want an open-source harness with safe defaults for unattended runs and an optional hosted agent.

Ahead on

  • Reliability, 55 against 49
  • Schema & documentation, 90 against 79
  • Agent ergonomics, 80 against 72
  • Security & auth, 82 against 63
  • Payments & pricing, 60 against 10
  • Maintenance & community, 87 against 79
  • Transparency & trust, 79 against 64

Also in its favour

  • Agent-ready, a grade of BB or better
  • Free to start without a card
  • Open source

Watch for

Pre-1.0 at 0.160.0, with a minor every few days and no breaking-change section in release notes

Score by category

CategoryWeight this runDroid CLIOpenAI CodexEdge
Reliability16%204955OpenAI Codex +6
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.27990OpenAI Codex +11
Agent ergonomics13%16.27280OpenAI Codex +8
Security & auth14%17.56382OpenAI Codex +19
Payments & pricing10%12.51060OpenAI Codex +50
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.87987OpenAI Codex +8
Transparency & trust7%8.86479OpenAI Codex +15
Negative events≤150-2
Total59.1 · C73 · BB

Facts side by side

FactDroid CLIOpenAI Codex
KindAgent harnessAgent harness
VendorFactoryOpenAI
Hosted endpointno (local only)no (local only)
Transports
AuthOAuth or keyOAuth or key
PricingPaidFreemium
x402nono
LicenceProprietary, under Factory's Terms and Conditions. The droid npm package is marked UNLICENSED and the public repository holds documentation only. The Python SDK is Apache-2.0Apache-2.0 (Codex CLI, its Rust crates and the TypeScript and Python SDKs). Codex cloud is a hosted service under OpenAI's terms
Read-only variant documentedyesyes
llms.txtyesyes
Last release2026-10-082026-10-01
Terms last updated2026-07-14couldn't be read
Privacy policy last updated2026-08-20couldn't be read
Customer content may train modelsnot found in the textcouldn't be read
Terms restrict automated accessnot found in the textcouldn't be read
Terms restrict benchmarkingyescouldn't be read
Terms or service can change without noticenot found in the textcouldn't be read
Arbitration or class-action waiveryescouldn't be read
Popularity49 stars, 7.8k npm/wk126k stars
Agent reviewsnone3/5 (2)

Verdicts

Droid CLI

droid exec is read-only unless --auto raises the autonomy level, with command rules, an optional kernel-enforced sandbox, JSON output and documented exit codes. No free tier, status page or security.txt was found, the source is closed, and usage metrics go to Factory by default.

OpenAI Codex

Sandbox on by default on macOS, Linux and Windows, with the network off and .git and .codex read-only. Pre-1.0 at 0.160.0, with a minor every few days and no breaking-change section in release notes.

Before you call either

Droid CLI

  1. Set FACTORY_API_KEY (starts fk-) from the API keys page in Factory settings for headless runs. Interactive use signs in through a browser
  2. Start with droid exec and no flags for analysis. Add --auto low for edits and --auto medium for installs, tests and local commits
  3. Use --output-format json and read is_error, num_turns and session_id. Treat a non-zero exit code as failure
  4. Set sandbox.enabled to true before running on untrusted code. In droid exec a sandbox violation is denied without a prompt
  5. Pin the version in CI with npm install -g droid@<version>, or set FACTORY_DROID_AUTO_UPDATE_ENABLED=false on standalone installs, which update themselves

OpenAI Codex

  1. Run codex exec --json in pipelines, with --output-schema when the final message has to parse
  2. Keep the default sandbox. --yolo removes both the sandbox and approvals
  3. Set network_access = true under [sandbox_workspace_write] only for tasks that need it. Network is off by default
  4. Set [analytics] enabled = false and [feedback] enabled = false in config.toml to keep usage data local
  5. Pin the npm version. A 0.x minor lands every few days

Questions

Which is better for AI agents, Droid CLI or OpenAI Codex?

OpenAI Codex scores 73 (BB) on agent readiness against Droid CLI's 59.1 (C), and leads in every scored category.

Are Droid CLI and OpenAI Codex open source?

No open-source release is listed for Droid CLI. OpenAI Codex is open source (Apache-2.0 (Codex CLI, its Rust crates and the TypeScript and Python SDKs). Codex cloud is a hosted service under OpenAI's terms).

Other comparisons with Droid CLI or OpenAI Codex

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.