dsh-sub-providers
Manifest validClean-room DSH plugin: use Claude and ChatGPT (Codex) subscriptions as LLM provider routes with OAuth login, streaming, and subscription usage display.
dsh-sub-providers
Clean-room DSH plugin: use your Claude and ChatGPT (Codex) subscriptions as LLM provider routes — OAuth login from Settings → Subscriptions, streaming chat, model catalogs in the session model picker, and subscription usage display. No API keys.
This package is an independent implementation. No code is taken from dsh-plugin-subscriptions (see "Clean-room guarantee" below).
Status
| Phase | Scope | State |
|---|---|---|
| 0 | Scaffold, build, profile install | done |
| 1 | Claude: OAuth login, streaming adapter, catalog, usage, settings UI | done — copy/paste login, awaiting live verification |
| 2 | Codex: OAuth, Responses-wire adapter, effort, catalog, usage+plan | done — verified live |
| 3 | UX polish: usage pill, locale strings | done |
| 4 | Hardening: security scan, full test pass, review | scan + 28 tests done |
Install
# remove the original (its claude/codex routes would collide)
dsh plugin --profile web remove dsh-plugin-subscriptions
# install this one
dsh plugin --profile web add github:deskomor/dsh-sub-providers
Restart dsh web afterwards. Then: Settings → Subscriptions → Sign in
(Claude is a copy/paste flow — see the threat model below).
Development install (local link)
dsh plugin --profile web add <path-to>/dsh-sub-providers
# pnpm on Windows rewrites the local link target incorrectly — repair it
pwsh scripts/repair-profile-link.ps1
With a local link, source rebuilds (npm run build) take effect on the next
dsh web restart without reinstalling. If you run any other dsh plugin
command, re-run the repair script afterwards.
Build & test
npm install # dev dependencies (types, esbuild)
npm run typecheck # tsc --noEmit
npm run build # bundles lib/index.js (host) + lib/client.js (client)
npm test # node --test
npm run security-scan # clean-room security gates
The compiled lib/ bundles are committed, so installing from GitHub does not
need a toolchain; run npm run build after changing src/.
Architecture
src/host/— Cordis plugin (apply,inject,Config): registers theLlmAdapterunderclaude/codexroutes only while logged in, owns the OAuth flows (loopback + copy/paste), token store, and thesub-providers.*endpoints it registers as exact Fetch routes on the shared/apichannel.src/client/— browser module (ModuleLoader factory format) rendering the Settings → Subscriptions page; talks to the host only via the connection RPC.src/shared/protocol.ts— the RPC vocabulary shared by both halves.- Token store:
~/.dsh/plugins/sub-providers/auth.json, written atomically, mode 0600. Fields are validated structurally; unknown content is dropped.
Security notes / threat model
- Endpoint allowlist. Every outbound URL is a public vendor endpoint (claude.ai / api.anthropic.com / auth.openai.com / chatgpt.com); the security scan asserts no other host literals exist in the source.
- No dangerous APIs. No
child_process,eval, dynamic code loading, obfuscation, or hidden payload blobs (asserted by the scan). - No credential-store access. The plugin cannot read the Claude Code
credential store (macOS Keychain /
~/.claude/.credentials.json) or any file outside its own directory — a deliberate scope decision vs. the original plugin. - Product-token nuance (both vendors). The subscription endpoints expect
requests presenting as their official CLI.
User-Agenttherefore PREPENDS the CLI product token to the harness attribution value, and the Codex backend additionally requires the publicoriginator: codex_cli_rsheader — attribution is never suppressed, only joined. - Fixed Codex redirect. The public Codex OAuth client registers exactly
one redirect (
http://localhost:1455/auth/callback), so that login binds the fixed port instead of an OS-assigned one and reuses the registered URI verbatim; the port is held only while a sign-in is pending. - Claude login is copy/paste (no local server). The Claude Code OAuth
client registers exactly one redirect — the hosted
https://console.anthropic.com/oauth/code/callbackpage — and rejects loopback URIs. The flow therefore uses the documentedcode=truecopy/paste mode: the callback page shows the code and you paste it back into Settings → Subscriptions (acceptsCODEorCODE#STATE). - OAuth client ids (Claude and Codex) come from publicly documented community knowledge and are configurable; nothing else is vendor-undocumented.
- Third-party caution applies to this package too: review the source (it is small and unobfuscated) before installing.
Clean-room guarantee
Allowed inputs: public vendor API documentation, @deepseek-ai/* type
contracts shipped with the harness, and the original plugin's README
(behavior spec only). The original's source/bundles were not transcribed;
scripts/security-scan.mjs re-checks the structural gates on every build.
Comments
Loading…
From the same category
by zhu1090093659
DeepSeek Harness (DSH) Web Plugin Aggregation Ecosystem · Everything is a plugin, distributed via the Creative Workshop
★ 8.3k
↓ 172/wk
Apache-2.0
TypeScript
Oct 1, 2026
dsh plugin --profile web add dsh-webby ccch1mneyyy
DSH 官方公众号收录的 TUI 补位插件:Claude Code 风,鲸鱼顶栏/实时状态/流式思考/双击 Esc 回滚/上下文进度+TPS。npm 一键装。 DSH official WeChat featured TUI plugin — Claude Code style: whale bar, live status, streaming thoughts, double-Esc rol
★ 3.9k
↓ 13.6k/wk
MIT
TypeScript
Oct 1, 2026
dsh plugin --profile terminal add @deepseek-harness-tui/dsh-tuiby YuJunZhiXue
DeepSeek Harness 破甲:让所有模型都能破甲,不同模型可换不同提示词;默认提示词面向国模「小码酱」。Jailbreak for every model — swap prompts per model. 求 Star 收藏 ⭐
★ 2.9k
MIT
JavaScript
Oct 1, 2026
dsh plugin --profile web add dsh-purgeby bowenliang123
The best DeepSeek Harness plugin for context insight and management, with context dashboard / browser / sidebar and context command, for context statistics, composition, breakdown, evolution details,
★ 1.8k
↓ 33.2k/wk
Apache-2.0
TypeScript
Sep 30, 2026
dsh plugin --profile web add dsh-contextby agentrq
AgentRQ: Human-in-loop realtime conversational task manager for AI Agents. Self-hosted! Control your own agents from wherever you want Mobile, Web, Desktop. Designed to work well with your own Claude
★ 1.1k
↓ 56/wk
Apache-2.0
JavaScript
Oct 1, 2026
dsh plugin --profile web add @agentrq/dsh-plugin-agentrqby vshulcz
One memory shared by Claude Code, Codex, Cursor, Copilot CLI, OpenClaw and 20 more coding agents, built from the session history already on disk. A fix found in one agent comes back in any of them, in
★ 1.1k
↓ 1.3k/wk
MIT
Go
Oct 1, 2026
dsh plugin --profile web add dsh-deja