Adds ChatGPT/Codex OAuth-backed Codex models and gpt-image-2 generation/editing to DSH without requiring an OpenAI Platform API key.
Install
# from npm (prebuilt)
dsh plugin --profile web add dsh-codex-connect-plus
# from GitHub (first run asks for allowBuilds approval — follow the hint, retry)
dsh plugin --profile web add github:stoneface10/dsh-codex-connect-plus
Any plugin you install runs third-party code with your own permissions — it can read your files, use your credentials, and reach the network, and tool approvals don’t sandbox it. GitHub-sourced plugins also run build scripts at install time. Only install sources you trust, and pin a commit (github:owner/repo#sha).
README
English | 中文
Use your ChatGPT/Codex subscription inside DeepSeek Harness for Codex models and
gpt-image-2generation/editing—without an OpenAI Platform API key.
Sign in once with ChatGPT OAuth. Codex model requests use the signed-in account's subscription capacity; image generation/editing uses the same OAuth session and remains subject to account availability, region, limits, and upstream policy.
What you get
- Codex models in the normal DSH model picker — no separate CLI workflow.
gpt-image-2generation and editing — create images from prompts or edit 1–8 local references, with inline previews and local output files.- No OpenAI Platform API key or pay-as-you-go API billing setup — authorization comes from your user-approved ChatGPT/Codex OAuth session.
- Quota-conscious defaults — automatic model retries default to
0, and image requests are never silently retried.
Community derivative. Not affiliated with or endorsed by OpenAI, DeepSeek, or the upstream Codex Connect maintainers.
Features
- ChatGPT/Codex OAuth login and provider-native automatic refresh.
- OpenAI Codex model catalog through Harness's normal LLM service.
- Optional standalone Codex search provider.
- Optional
view_imagetool for vision-capable models. codex_image_generatefor 1-4gpt-image-2outputs.codex_image_editfor 1-8 local PNG/JPEG/WebP references and an optional mask.- Durable DSH attachments, session-authorized replay, inline preview, and local files under
outputs/codex-image. - Fixed upstream origins, no redirects, bounded inputs/responses, cancellation, timeout, strict image signatures, and redacted provider errors.
Install
Install the public npm beta:
dsh plugin --profile web add dsh-codex-connect-plus@beta
Immutable GitHub fallback:
dsh plugin --profile web add 'github:stoneface10/dsh-codex-connect-plus#v0.1.0-beta.2'
A matching .tgz is also attached to the GitHub prerelease.
For local development:
dsh plugin --profile web add link:/absolute/path/to/dsh-codex-connect-plus
Do not install dsh-codex-connect, dsh-codex-image-connect, and this combined package in the same profile: they own the same provider and tool names.
Configure
Open Settings → Plugins → Plugin configuration → Codex Connect Plus.
- Sign in with ChatGPT.
- Keep or change optional capability toggles.
- Save profile settings.
Default capability and quota-safety settings:
modelMaxRetries: 0
enableSearch: false
enableImageTool: false
enableImageGeneration: true
The package does not take over the profile's default model or global search route. modelMaxRetries: 0 avoids silently repeating a full subscription-backed request after a transient failure; users may deliberately select one or two retries in Plugin configuration when reliability matters more than quota conservation. Image generation/editing remains non-retrying because the provider may already have processed a timed-out request.
Image tools
Example requests:
Use codex_image_generate to create a high-quality portrait travel poster.
Use codex_image_edit with refs ["photo.png"] to replace the background.
Generated files resolve from the current DSH session cwd and are stored under:
outputs/codex-image/
Reference images are limited to 4 MB each and 8 images per edit request. Generation can take several minutes. A timeout or transport failure is not retried automatically because the upstream may already have processed the request.
Security and API status
- OAuth credentials remain in DSH's dedicated credential file. On POSIX systems the plugin checks owner-only permissions; do not copy, commit, or disclose this file.
- Refresh is performed by the pi-ai Codex provider through the locked credential store; the image module neither stores nor refreshes refresh tokens itself.
- Image requests use fixed HTTPS ChatGPT/Codex application endpoints and reject HTTP redirects.
- Before provider-controlled errors are surfaced, their length is bounded and recognized Bearer tokens, JWTs, authorization/token fields,
b64_json, and image data URLs are redacted. - Generated attachment reads are authorized through the owning DSH session; the plugin exposes no public attachment-reading route.
Codex Images uses an unpublished, changeable ChatGPT/Codex application backend, not a public or supported OpenAI Platform API. The feature may stop working after upstream changes; availability depends on the user's account permissions, subscription, region, limits, and upstream policy. Users are responsible for complying with applicable service terms.
Development
pnpm install
pnpm run check
npm pack --dry-run
The repository intentionally commits both src/ and generated lib/, matching the upstream distribution model. The npm/Release .tgz includes runtime files and documentation, but excludes source, tests, scripts, credentials, logs, and local outputs.
See the Token/quota optimization report (中文) for retry, cache, compaction, and subagent guidance. See RELEASING.md for the Alpha checklist.
Legal / provenance
dsh-codex-connect-plus is a derivative of dsh-codex-connect, which in turn includes software derived from Yan-Zero/dsh-codex.
Image-generation and in-conversation image UI portions include adaptations from dsh-image2-draw and codex-gpt-image. Applicable transitive attribution for dsh-multimodal is also retained.
See NOTICE and THIRD_PARTY_NOTICES.md.
OpenAI, ChatGPT, Codex, DeepSeek, and DeepSeek Harness are names or trademarks of their respective owners. This independent project is not affiliated with, endorsed by, or sponsored by those owners.
This project uses an existing user-authorized ChatGPT/Codex OAuth session. It does not claim that the Codex Images backend is a public, official, or supported API.
License
Apache-2.0. See LICENSE. Adapted third-party portions remain subject to THIRD_PARTY_NOTICES.md.
Links
More in this category
Mars-Sea/dsh-commandcode-provider★ 53
Unofficial Command Code LLM provider: registers a `commandcode` route with a live model catalog and reasoning-effort support.
franksong2702/dsh-codex-connect★ 20
Connect ChatGPT OAuth and OpenAI Codex models to DeepSeek Harness, with opt-in search and image tools.
WNJXYK/dsh-codex-oauth★ 8
Use a ChatGPT/Codex subscription in DeepSeek Harness with GPT models, image generation, web search, subscription quota reporting, model and feature controls, and browser or device-code OAuth sign-in.
btspoony/dsh-llm-fallbacks★ 7
Role-based LLM retry & fallback strategies.
suntianc/dsh-codex-auth★ 7
Reuses the Codex CLI ChatGPT login as an `openai-codex` LLM route and adds GPT Auth controls to DSH Web settings.
WSL043/dsh-codex-subscription★ 7
Built-in ChatGPT OAuth provider for Codex models, selectable subscription web search, backend quota for standard Codex and Spark, and a DSH settings UI; no API key or Codex CLI required.