Codex account-scoped MCP grant cleanup and Sume's 1-hour token
Codex 0.161.0 adds account-scoped grant cleanup for enterprise MCP authentication. How that sits with Sume's one-hour OAuth token and its revoke endpoint.

Account-scoped grant cleanup in Codex cleans up on the client's side; Sume's access tokens end on their own after one hour. The Codex changelog entry for 0.161.0 on October 7, 2026 says enterprise MCP authentication now supports account-scoped grant cleanup. It does not say what is sent to a server. Sume's hosted MCP issues an OAuth access token valid for 3600 seconds and no refresh token.
So an enterprise that cleans up a user's grant in Codex has removed the client's copy. The token on Sume's side stops working at its expiry, and Sume's OAuth metadata also lists a revocation endpoint.
Who holds what
The first two rows come from the Codex changelog; the rest from Sume's OAuth documentation and the server's metadata.
| Item | Held by | Lifetime or action |
|---|---|---|
| Account-scoped grant (enterprise MCP auth) | Codex | Cleanup added in 0.161.0; details of what it calls are not in the changelog |
| Sume access token | Codex's store, issued by Sume | 3600 seconds, no refresh token |
| mcp:read scope | Sume consent | Read-only tools |
| mcp:write scope | Sume consent, opt-in | Write and paid tools appear |
| Revocation endpoint | Sume OAuth metadata | /oauth/revoke, no client authentication |
Steps for an admin
Decide what a departure should do. If an employee leaves, the grant cleanup removes their Codex access to MCP servers in the account. If you also want Sume to stop honoring a token that was already issued, that token will end within an hour on its own. For anything faster, use the revocation endpoint with the token, or remove the API key if the person used one.
API keys are different: they are not OAuth tokens, so a client-side grant cleanup does not touch them. Keep a list of which keys exist and who holds them.
- Prefer OAuth for people and API keys only for unattended jobs.
- Keep Write off at consent unless the person needs paid tools.
- Rotate any API key a departing teammate could have copied.
Why the hour matters
An hour is short enough that a forgotten session cannot stay valid for long, and long enough that a render started in that window completes on Sume's side. A job you submitted before the token ended keeps running after the token ends; the token gates new calls, not jobs already accepted. That is useful when someone leaves mid-render: the work finishes and sits in the account, and you can read it with a new credential. Plan who owns a finished job after a person's access goes away.
What Sume does not do
Sume does not learn about Codex's cleanup and cannot see an enterprise directory. The changelog does not tell us whether Codex calls the revoke endpoint during cleanup, so test it on a throwaway account before you rely on it.
Sources
Related posts
More in Integrations
- Codex 0.161: denied reads stay denied, so a Sume upload may fail
Codex 0.161.0 lets approved filesystem escalation widen writes while keeping denied reads. Why a local file upload to Sume can still fail, and how to fix it.
- Codex bearer_token_env_var for Sume MCP: keep the key out of config
Codex can read a bearer token from an environment variable, so your Sume API key never lands in config.toml. Setup, the OAuth alternative, and what to check.
- Codex tool_timeout_sec is 60: size Sume jobs_wait to fit under it
Codex stops a tool call after 60 seconds by default. Sume jobs_wait holds at most 55 seconds, so one slice fits. Here is the loop and the config.
- Xcode and JetBrains Copilot: connect Sume MCP with requestInit headers
Copilot in Xcode and JetBrains sends remote MCP auth through requestInit headers. Here is the Sume API key entry, what it unlocks, and how to test it.
Written by Sume