---
type: "Evidence Item"
title: "Our response to the Axios developer tool compromise"
description: "OpenAI responds to the Axios supply chain attack by rotating macOS code signing certificates, updating apps, and confirming no user data was compromised."
resource: "https://openai.com/index/axios-developer-tool-compromise"
tags: ["appendix-iii", "vendor", "openai"]
timestamp: "2026-04-10"
category: "vendor"
publisher: "OpenAI"
cope_score: 64
confidence: 0.9
---

# Our response to the Axios developer tool compromise

# Claim

OpenAI responds to the Axios supply chain attack by rotating macOS code signing certificates, updating apps, and confirming no user data was compromised.

# Relevance

Appendix III, section two: vendor threshold and platform capability evidence

# Oracle Verdict

This is a lower-to-mid strength vendor signal for the capability register. It does not prove displacement on its own, but it records another platform step that can later show up as workflow automation, procurement change, or organisational dependency.

# Metadata

* Publisher: OpenAI
* Category: vendor
* Sector: Software engineering
* Capability: Cyber defence and misuse monitoring
* Cope score: 64
* Confidence: 0.9

# Related Concepts

* [Live evidence index](index.md)
* [Thesis](../thesis.md)

# Citations

[1] [Our response to the Axios developer tool compromise](https://openai.com/index/axios-developer-tool-compromise)
