dsh-codex-keychain
Unofficial ChatGPT OAuth provider for DeepSeek Harness that adds the openai-codex model route and stores credentials in native OS keychains.
Install
$ dsh plugin --profile web add dsh-codex-keychain@nextPlugin Overview & Capabilities
AI-assisted organization based on the public repository snapshot. The content must be grounded in source evidence and does not replace compatibility or security verification.
Key Capabilities
- Adds an openai-codex model route to DeepSeek Harness.
- Supports browser-based and device-code ChatGPT OAuth sign-in.
- Stores OAuth credential data in macOS Keychain, Windows Credential Manager, or Linux Secret Service.
- Provides CLI login, status, JSON status, and logout commands.
- Includes a Web settings page for OpenAI Codex authentication.
- Supports automatic locked token refresh and DSH-native streaming, reasoning, tool calls, replay, and existing image attachments/model vision.
Useful For
- Connecting an eligible ChatGPT account to Codex models in DeepSeek Harness.
- Signing in on headless hosts through the device-code CLI flow.
- Using a DSH model provider that keeps credentials in the operating system credential store.
- Managing Codex authentication through DSH Web settings or command-line commands.
Who It Fits
- DeepSeek Harness users with eligible ChatGPT access to the Codex backend.
- Users who need browser or headless device-code OAuth flows.
- Users whose hosts provide a supported native credential store.
Documented Limitations
- This is an unofficial, independent plugin and is not affiliated with or endorsed by OpenAI or DeepSeek.
- Version 0.1.0-alpha.1 is a developer preview targeting DeepSeek Harness 0.1.0-rc.6 and pi-ai 0.82.1.
- It requires a usable native credential store; it refuses sign-in when keychain storage is unavailable and does not fall back to plaintext files.
- Remote DSH browsers cannot call the authentication RPC; login CLI commands must run on the DSH host.
- The browser callback uses localhost port 1455.
- It does not include quota displays, web search, standalone image viewing, or image generation.
- A network-stalled token refresh cannot be cancelled by the current request due to a stated DSH 0.1.0-rc.6 limitation.
DSH Compatibility
Version-specific runtime evidence collected by DSH Plugin. A missing result means we have not tested that combination yet.
Security Signals
Objective signals discovered from package metadata and source inspection. These are not a guarantee that a plugin is safe.
package.json declares 1 runtime, 23 development, 14 peer, and 0 optional dependencies.
package.json declares DSH bundle metadata.
GitHub reports the repository license as MIT.
A root package.json was captured and can be inspected by the registry.
Public GitHub source metadata is available for this registry snapshot.
Source & Registry Notes
Public provenance, Registry classification, and the latest source check for this entry, kept separate from runtime verification.
- Source repository
- CpfPatrick/dsh-codex-keychain
- Registry source
- GitHub · dsh-plugin topic
- Registry classification
- Plugin
- Source checked
- 32bfa92 · 2026-09-15
This project is independently indexed from public source information. DSH Plugin is not affiliated with DeepSeek or the plugin author. Always check the author repository before installation.
Repository Activity
- GitHub stars
- 1GitHub stars
- Forks
- 0
- Open issues
- 0
- Last commit
- 2026-08-15
- Last release
- No release detected
Related DSH Plugins
Ranked by overlapping capabilities, use cases, plugin type, categories, and DSH profile.
Compatibility bridge and host ABI enabling unmodified Pi plugins to run natively on DeepSeek Harness.
View plugin →Preview, create, and edit spreadsheets, docs, slides, and canvases in DeepSeek Harness powered by Univer.
View plugin →Native SQLite-backed local project taskboard plugin and UI for DeepSeek Harness with Agent claim and review flows.
View plugin →Persistent multi-model Agent teams and bounded DAG workflows with GUI controls for DeepSeek Harness.
View plugin →