CloudZero Desktop Agent 0.3.0

Version0.3.0
Channelpreview
Released2026-07-31
PlatformMacos
RequiresmacOS 14.0+
Size37.1 MB
SHA-256f0ba34099e8feb5f68b90dc75e70127038cf53fed706e6f491bb4c768447a057

Download CloudZero-0.3.0.pkg

Release Notes

0.3.0 (2026-07-31)

Release 0.3.0 extends the collector beyond Claude: AI activity driven through OpenAI's Codex is now captured and includes business context. It also hardens the proxy certificate the collector depends on (a broken certificate now surfaces in the menu bar with one-click recovery instead of silently ending capture); and fixes the certificate and startup faults that could interrupt AI connections on managed Macs after an unattended install or upgrade.

New Features

  • Codex activity is now captured: AI usage driven through OpenAI's Codex is now captured, priced, and reported alongside Claude activity, including both the Codex CLI and chat in the Codex desktop app. This covers Codex signed in with a ChatGPT subscription and includes business context detection.
  • Certificate health monitoring and one-click recovery: The app now monitors the certificate that the proxy requires in order to direct traffic. If the certificate is missing, was never approved, or sits in a locked keychain, the user is sent a push notification, the menu bar shows an attention badge, and the popover explains the problem in plain language with a single button to fix it. This button will then prompt the user to approve the certificate, re-create it, or unlock the keychain as appropriate. Capture then restarts without needing to relaunch the app. Previously this state was not surfaced anywhere in the everyday interface, so capture could stop with no obvious indication, and with no available user-led resolution.

Bug Fixes

  • Certificate no longer re-created in error during installation: During installation the app could incorrectly conclude its certificate's private key was missing when the key was in fact present, and respond by creating a new certificate which invalidated the trust already in place and could break AI connections. Certificate operations now always target the proper keychain rather than falling to the default, so the false reading cannot occur for certificates stored there.
  • Connection failures with the collector enabled: The collector no longer begins intercepting traffic before the component that handles it is running and answering, which is what caused captured traffic to be dropped rather than delivered on some managed, unattended upgrades or installs.
  • Duplicate certificates in the keychain: Fixed a case where re-creating the proxy certificate could leave earlier copies behind in the keychain. Accumulated copies eventually prevented the collector from starting at all.

Known Limitations

  • Audio and video processing through Codex is not supported.