Visual design
Image decoding, color controls, preview, and .codexskin package creation happen locally in your browser.
No image-upload APITheme design stays in the browser. Installation stays a separate, reviewable local decision.
Open local studioImage decoding, color controls, preview, and .codexskin package creation happen locally in your browser.
No image-upload APIThe package contains an image, theme JSON, a manifest, and a plain-text guide—never executable scripts.
Data onlyThe optional helper invokes the reviewed open-source engine through loopback-only CDP and keeps restore available.
Explicit local trustA visual theme must not rewrite API keys, model providers, or Base URLs.
The upstream workflow does not replace the official app bundle, app.asar, or code signature.
The debugging interface stays on 127.0.0.1 and should be closed through restore when unused.
Artwork licenses, character rights, likenesses, and trademarks remain the publisher's responsibility.