Codex
Cordium does not simply provide an isolated sandbox for Codex. Every Workspace operates as an identity-aware execution environment backed by Octelium, allowing the agent to securely access authorized infrastructure resources, including APIs, databases, Kubernetes clusters, SSH targets, and internal services through policy-driven, secretless access mechanism provided by the underlying Octelium Cluster without exposing raw credentials such as API tokens, SSH private keys, passwords, or kubeconfigs inside the Workspace itself. All Workspace activity and infrastructure access are emitted via OpenTelemetry-native identity-based application-layer-aware visibility in real-time. Here is an example: