gpt-oss

PyPI

Is gpt-oss safe to use?

Based on the latest brin safety scan, no vulnerabilities or threats were detected for gpt-oss v0.0.9. Trust score: 55/100. No known CVE vulnerabilities, no detected threat patterns, and no suspicious capabilities identified. This is an automated, point-in-time assessment.

Install (safety-checked)

gpt-oss Passed Security Checks

No security concerns detected

clean
CVEs

0

Threats

0

Install Scripts

0

No Concerns Detected

No security concerns detected in the latest brin assessment. This is an automated, point-in-time evaluation — security posture may change.

This is an automated, point-in-time assessment and may contain errors. Findings are risk indicators, not confirmed threats. Security posture may change over time. Maintainers can dispute findings via the brin review process.

gpt-oss Capabilities & Permissions

What gpt-oss can access when installed. Review these capabilities before using with AI agents like Cursor, Claude Code, or Codex.

Network Access

This package makes network requests.

api.exa.aiapi.openai.comapi.ydc-index.ioarxiv.orgcookbook.openai.comhuggingface.coopenaipublic.blob.core.windows.nettridao.metriton-lang.org
Protocols: http, https

Filesystem Access

Reads and writes to the filesystem.

.env (r)pyproject.toml (r).env (r)/tmp/ (rw)/tmp/ (rw)/usr/ (rw)/usr/ (rw).env (rw)+7 more

Process Spawning

This package can spawn child processes.

Environment Variables

Accesses the following environment variables.

BROWSER_BACKENDEXA_API_KEYGPTOSS_BUILD_METALPYTHON_EXECUTION_BACKENDPYTHON_LOCAL_JUPYTER_CONNECTION_FILEPYTORCH_CUDA_ALLOC_CONFRANKTPWORLD_SIZEYDC_API_KEY+1 more

Native Modules

Contains native code that runs outside the JavaScript sandbox.

lxmlnumpypandas

AGENTS.md for gpt-oss

Good instructions lead to good results. brin adds gpt-oss documentation to your AGENTS.md so your agent knows how to use it properly—improving both safety and performance.

brin init

Vercel's research: 100% accuracy with AGENTS.md vs 53% without →

gpt-oss Documentation & Source Code

For the full gpt-oss README, API documentation, and source code, visit the official package registry.

Frequently asked questions about gpt-oss safety

Weekly Downloads

22.5K

Version

0.0.9

License

ISC

Last Scanned

Feb 11, 2026

Trust Score

55/100·Legitimacy signals, not safety

Capabilities

Network

Connects to: api.exa.ai, api.openai.com, api.ydc-index.io...

Filesystem

Reads & Writes files

Process

Spawns child processes

Environment

Accesses: BROWSER_BACKEND, EXA_API_KEY, GPTOSS_BUILD_METAL...

Native

Contains native modules