Connect a ChatGPT account to Codex models in DeepSeek Harness through browser PKCE or device-code OAuth, with automatic token refresh and Web or headless login.
Install
# from GitHub (first run asks for allowBuilds approval — follow the hint, retry)
dsh plugin --profile web add github:AdonisSheldon/dsh-openai-oauth
Any plugin you install runs third-party code with your own permissions — it can read your files, use your credentials, and reach the network, and tool approvals don’t sandbox it. GitHub-sourced plugins also run build scripts at install time — pnpm blocks those until you allow them, so an install can stop with ERR_PNPM_GIT_DEP_PREPARE_NOT_ALLOWED or ERR_PNPM_IGNORED_BUILDS; dsh prints the exact key to add under allowBuilds in your profile’s pnpm-workspace.yaml, and the install works on the next run. Allowing a build is a trust decision: only install sources you trust, and pin a commit (github:owner/repo#sha).
README
Sign in to ChatGPT from DeepSeek Harness and use available Codex models without an OpenAI API key or Codex CLI. The plugin keeps the standard DSH sessions, tools, permissions, and model selector.
Features
- Browser login with PKCE or Device Code login
- Web settings and a headless login command
- Automatic token refresh
- Codex models in the standard DSH model selector
- Credentials stored locally under the Harness home
Requirements
- DeepSeek Harness
0.1.0-rc.8 - Node.js
^22.19.0or>=24.0.0 pnpmonPATH- A ChatGPT account with Codex access
Version 0.1.0 supports macOS and Linux. Windows support is not included yet.
Install
Install with an Agent (recommended)
Give this address to an Agent and ask it to follow the runbook:
https://raw.githubusercontent.com/AdonisSheldon/dsh-openai-oauth/main/AGENTS.md
When it finishes, you only need to approve any DSH restart and complete the ChatGPT login yourself.
Install with DSH
After the package is published:
dsh plugin --profile web add dsh-openai-oauth@0.1.0
dsh --profile web --dump-config
Install from the current checkout
pnpm install --frozen-lockfile
pnpm run check
pnpm pack
dsh plugin --profile web add ./dsh-openai-oauth-0.1.0.tgz
dsh --profile web --dump-config
Restart a running DSH Web process after installation.
Login and use
- Open Settings → OpenAI OAuth.
- Choose Browser login or Device Code.
- Sign in with a ChatGPT account that has Codex access.
- Open Models and select an
openai-codexmodel.
Browser login waits for a callback on 127.0.0.1:1455. Use Device Code when that port is unavailable or the browser is on another machine.
For a headless profile:
dsh plugin --profile headless add ./dsh-openai-oauth-0.1.0.tgz
dsh plugin --profile headless exec dsh-openai-login
The command asks which login method to use. Non-interactive terminals must pass --browser or --device-code.
Update and uninstall
dsh plugin --profile web update dsh-openai-oauth
dsh plugin --profile web remove dsh-openai-oauth
Restart DSH after installing, updating, or removing the plugin. Login, logout, and token refresh do not require a restart.
Sign out in Settings → OpenAI OAuth before uninstalling if the stored credential should also be deleted. Uninstalling the package otherwise preserves it.
Notes
- This connects a ChatGPT account to the Codex model provider; it does not create an OpenAI API key.
- The Web integration supports only a local DSH Host bound to
127.0.0.1. - Credentials are stored unencrypted at
$DSH_HOME/plugins/dsh-openai-oauth/credentials.json. - Model availability and quota depend on the signed-in account.
- OpenAI may change the Codex OAuth protocol independently of this plugin.
- This is an unofficial community project and is not affiliated with or endorsed by OpenAI or DeepSeek AI.
See SECURITY.md for security reporting and deployment notes.
Links
More in this category
V1ki/dsh-plugin-subscriptions★ 421
Use ChatGPT (Codex), Claude, and Grok subscriptions as DeepSeek Harness LLM providers, with Settings login, model catalogs, usage, plus image_generate, video_generate, and x_search tools.
Mars-Sea/dsh-commandcode-provider★ 363
Unofficial Command Code LLM provider: registers a `commandcode` route with a live model catalog and reasoning-effort support.
corrinehu/dsh-workbuddy-connect★ 293
Brings the models in the WorkBuddy desktop app straight into DeepSeek Harness — zero configuration in the DSH chat.
cv-superding/dsh-deepseek-web-login★ 223
Adds a deepseek-web provider that uses chat.deepseek.com web models in DSH, with browser login capture, PoW request signing, SSE streaming, and prompting-based tool calls.
volcengine/ark-cli#ark-plan-api★ 139
Registers Ark Agent Plan, Coding Plan and postpaid model routes in the native DSH model picker.
franksong2702/dsh-codex-connect★ 135
Connect ChatGPT OAuth and OpenAI Codex models to DeepSeek Harness, with opt-in search and image tools.
Community comments
Comments are public GitHub Discussions. Loading them connects to GitHub and Giscus; a GitHub account is required to post.