At a glance
What it does
Pools provider API keys for DeepSeek Harness and rotates them when quota or rate-limit failures occur.
Web Profile
Not declared in supplied evidence
Evidence-verified
Checked Sep 15, 2026, 1:57 PM UTC
Code-evidenced contributions
What it adds to DSH
Registers a virtual rotation route that selects configured provider credentials and switches keys on configured failures.
Mechanism evidence ↗Adds a Settings section for editing key pools, cooldown behavior, and switch codes.
Mechanism evidence ↗Before you choose it
A DeepSeek Harness web-profile bundle that registers a rotation provider route and a Key Rotation settings area. Configure provider key references, cooldowns, switch codes, concurrency limits, and optional fallback providers to continue requests when a key is unavailable.
Best for
DeepSeek Harness administrators running multiple credentials for one or more model providers.
Common tasks
- Rotate to another configured key after quota, rate-limit, timeout, server, or authentication errors.
- Set per-provider RPM/TPM limits, cooldowns, concurrency limits, and optional provider cascades.
- Review pool status and manage key pools from Settings → Key Rotation.
Permissions and data
The plugin handles configured API-key references and exposes local management functions for rotation settings and credential pools.
Permissions- Uses DeepSeek Harness credential resolution and registers a virtual provider route.
- Provides management endpoints to read or update rotation configuration, keys, cooldowns, and tests.
- The project states that configuration stores environment-variable reference names and uses DSH credential storage for secret values.
- The project states that the client receives only a five-character key tail for identification.
- Configured model-provider endpoints receive routed model requests.
- Optional webhook URLs may send notifications to Telegram, Discord, Slack, or another endpoint.
- Requires existing provider API-key references; provider pools are configured by reference name.
Limitations
- The npm package version was not found by the supplied distribution check; use the verified pinned Git bundle path.
- Runtime installation, failover behavior, security claims, and UI behavior were not independently executed or verified.
- Harness version compatibility is not declared in the supplied evidence; peer dependency ranges are declared.
What DSHub checked
- Pinned Git source and DSH bundle patch structure are verified.
- Node.js >=18 and peer dependency ranges are declared.
- The package is MIT licensed.
What DSHub did not check
- Successful installation or operation against a DeepSeek Harness instance.
- Actual key rotation, rate-limit handling, credential masking, loopback fencing, or webhook delivery.
Pinned install
Install DSH Key Rotation
This plugin bundle does not have a DSH Plugin install action. Use its source documentation for the delivery method.
Maintainer source
Project README
📦 @goodandready/dsh-key-rotation
<div align="center"><h3>Enterprise-Grade Transparent API Key Rotation, Rate-Limit Pre-emption & Failover Cascade for DeepSeek Harness</h3><p align="center"> <a href="https://www.npmjs.com/package/@goodandready/dsh-key-rotation"><img src="https://img.shields.io/npm/v/@goodandready/dsh-key-rotation.svg?style=for-the-badge&color=6366f1&labelColor=1e1b4b" alt="npm version"></a> <a href="LICENSE"><img src="https://img.shields.io/github/license/GooDAnDReaDY/dsh-key-rotation.svg?style=for-the-badge&color=10b981&labelColor=064e3b" alt="license"></a> <a href="https://github.com/topics/dsh-plugin"><img src="https://img.shields.io/badge/DSH-Plugin-8b5cf6.svg?style=for-the-badge&labelColor=2e1065" alt="DSH Plugin"></a> <a href="https://nodejs.org"><img src="https://img.shields.io/badge/Node-20%2B-f59e0b.svg?style=for-the-badge&labelColor=451a03" alt="Node version"></a> </p><!-- Showcase Link --> <p align="center"> <a href="https://goodandready.app/"><img src="https://img.shields.io/badge/🌐_DSH_Hub-goodandready.app-ff4500.svg?style=for-the-badge&labelColor=1a1a2e" alt="GoodAndReady Showcase"></a> </p><p align="center"> <a href="README.md"><b>🇬🇧 English</b></a> • <a href="README.ru.md"><b>🇷🇺 Русский</b></a> • <a href="README.zh.md"><b>🇨🇳 中文说明</b></a> </p><table align="center"> <tr> <td align="center"> ⭐ <strong>If you like this plugin, please star it on GitHub</strong> — it shows me that the plugin is useful to you and motivates me to keep developing it. <br><br> 🐛 <strong>If you find a bug or would like to request a feature</strong>, open a GitHub issue in any language — I will review your proposal and implement useful suggestions in a future plugin version. </td> </tr> </table></div>⚡ Overview & The Problem
🚀 What's New in v0.8.10 (Stream Concurrency Hardening & Auto-Pruning)
- Zero Concurrency Leaks: Guaranteed release of stream concurrency slots via deterministic
try ... finallyblock, preventing key starvation during clean finishes or client stream aborts. - Robust Probe Retry: Added transient network socket error retry (
PROBE_RETRY_DELAY_MS) inSandboxRunner.probeModelsbefore marking keys as broken. - Memory & State Pruning: Automated pruning of removed/stale keys from internal pool maps during periodic sweep cycles.
🚀 What's New in v0.8.9 (Routing Evolution & UI)
- Proactive Rate-Limit Guard: Automatic key pausing based on
x-ratelimit-remaining-*andRetry-Afterheaders before hitting 429 errors. - Self-Healing / Auto-Unbreak: Periodic background probe via free
/modelsendpoint to automatically revive broken keys without token burn. - Latency-Aware Routing: Selectable strategies:
round-robin,least-loaded(concurrency), andlowest-latency(p95 latency). - UI Evolution in
dsh-clinebotStyle: Sequential batch "Test All Keys" runner with live progress, Live Event Stream drawer, and Quota Reset countdown badge. - Native Dual Language Support: Native English (
en) and Chinese (zh) UI dictionaries.
🛠️ What's New in v0.8.0 (Stability)
- 🔌 Circuit breaker: after N consecutive provider failures the circuit opens and requests fail fast (
CIRCUIT_OPEN) until a cool-down; half-open probes recover automatically. - 🕒 Monotonic clock: cooldown/breaker durations use process monotonic time so NTP steps cannot invert remaining times.
- 📮 Non-blocking webhooks: alerts go through a bounded queue with backoff — stream rotation never waits on webhook HTTP.
- 🧱 Atomic I/O helpers: crash-safe writes; corrupt JSON never overwrites previous in-memory state.
- 🧹 Clone-route GC: orphaned auto-created clone routes are dropped from the runtime set.
- 🧭 Error taxonomy: explicit switch/surface/soft classification for 408/425/429/5xx, sockets and gRPC codes.
- 📡 Status extras: per-provider
circuitplusmeta.expectedClones/meta.notifyQueue. - 🧪 Smoke harness: scripted 429 → next-key → success path in
test/smoke-rotation-080.test.mjs.
🛠️ What's New in v0.7.33 (Stability & Bugfix Release)
- 🔍 Resolved Key Probing BaseURL: Fixed
resolveBaseUrlto map key credential refs to owning provider pools, restoring liveprobeModelstesting. - 🛡️ Guarded Cascade Recursion: Prevented call stack overflow in cross-provider failover when circular cascade chains occur.
- 🕒 Accurate Midnight PST Resets: Corrected UTC-8 timezone calculation offset sign for calendar quota reset windows.
- 🧹 Lifecycle Timer Cleanup: Wrapped
canaryTimerandselfHealTimerin Cordis effect scopes, eliminating background orphaned intervals on hot reload. - ⚡ Stale Lock Recovery in Load Balancer: Added expired lock detection to
pickLeastLoadedfor uninterrupted least-connections routing. - 📊 Load Distribution & Modals (Changed in v0.8.5): Interactive segmented load distribution charts per pool, modal action confirmation, and 429/5xx backoff jitter (#283, #284).
- 🎨 Native Design System (Changed in v0.8.3): Unified with
dsh-clinebotbaseline: modular section cards, live pool telemetry stat boxes, pill badges, and complete semantic theme token styling (#281). - 🌐 Localization (Changed in v0.8.2): Source strings are English-only. Russian/Chinese UI comes from the DSH core locale service and translation plugins (
props.t). Active locale: host snapshot → firstnavigator.languagesentry →en(#277).
🚀 What's New in v0.7.31
- ⚡ O(1) TokenBucket Accumulator: Upgraded rate limiting math to O(1) time and zero-allocation memory with adaptive header synchronization.
- 🛡️ Soft vs Hard Backoff: Differentiates transient infrastructure drops (502/503/timeouts: 10s flat cooldown) from hard quota errors (progressive doubling).
- ⏳ Penalty Decay: Stable keys that operate cleanly automatically decay their failure penalty multiplier every hour.
- 🎲 Cooldown Jitter: Adds ±12.5% random dispersion to recovery timers, eliminating thundering herd stampedes.
- 🎯 Addressable Canary Probing: Support for probing target pool models with lightweight single-token verification pings.
- 📊 TTFT Percentiles (p50 / p95 / p99): Sub-second high-resolution latency percentile tracking across all key pools.
- 🔔 Webhook Alert Digest: Aggregates multiple rapid switch/cooldown events into consolidated incident digests for Telegram, Discord, and Slack.
- 🧹 30-Day Usage Compaction: Automatic bounded memory management with 30-day rolling window data pruning.
- ✨ Optimistic UI & Filter Pills: Instant zero-latency UI updates on reset, plus
All,Ready,In Cooldown, andWith Errorsquick filter chips.
High-throughput autonomous agent workflows, parallel subagent swarms, and multi-turn tool loops inevitably hit upstream API rate limits (HTTP 429, RPM/TPM exhaustion, daily quotas, or sudden provider outages). In standard DeepSeek Harness deployments, a single exhausted API key breaks the entire agent execution chain, requiring manual intervention and destroying the session's replay state.
dsh-key-rotation provides a seamless, enterprise-ready transparent API key pooling, pre-emptive rate-limiting, and cross-provider failover engine built natively on the Cordis microkernel architecture.
Unlike naive routing proxies that alter provider identifiers, dsh-key-rotation hooks into ctx.credentials.resolve and intercepts llm/stream at runtime:
- The provider identity never changes: Agent replay states, multi-call turns, and tool schemas remain 100% consistent.
- Pre-emptive Token Bucket: Throttled keys are skipped before issuing network calls, eliminating retry latency.
- Least-Connections Concurrency Control: Balances in-flight streams across keys to prevent burst saturation.
- Autonomous Self-Healing & Cascades: Lifts expired quarantines on idle keys and smoothly escalates to fallback providers if an entire pool is exhausted.
🏗️ Architecture & Request Lifecycle
graph LR
subgraph ClientLayer ["Client & Agent Turn"]
UserMsg["User / Subagent Message"] --> Adapter["pi-ai Model Adapter"]
end
subgraph RotationEngine ["dsh-key-rotation Core Engine"]
Adapter --> StreamHook["llm/stream Interceptor"]
StreamHook --> BucketCheck{"Token Bucket\nRPM / TPM Check"}
BucketCheck -->|Under Limit| ConcurrencyCheck{"Concurrency Tracker\nLeast-Connections"}
BucketCheck -->|Exceeded| NextKey1["Pick Next Healthy Key"]
ConcurrencyCheck -->|Slot Available| KeyResolver["ctx.credentials.resolve"]
ConcurrencyCheck -->|Saturated| NextKey1
KeyResolver --> ActiveKey["Active Key (In Use)"]
ActiveKey -.->|HTTP 429 / Quota / Error| Failover["Instant Failover Handler"]
Failover --> BackoffCalc["Exponential Backoff & Quarantine"]
Failover --> NextKey2["Retry Next Key (Zero Token Loss)"]
Failover -.->|All Pool Keys Exhausted| CascadeEngine["Cross-Provider Cascade"]
BackoffCalc --> QuotaWindow["Calendar Reset / Midnight Window"]
BackoffCalc --> SelfHeal["Self-Heal Idle Sweep"]
SelfHeal -->|Cooldown Expired| PoolReady["Restored to Ready Pool"]
end
subgraph UpstreamLayer ["Model Provider Endpoints"]
ActiveKey --> UpstreamAPI["Primary Provider API"]
CascadeEngine --> FallbackAPI["Backup Provider API"]
end
style ClientLayer fill:#1e1e2e,stroke:#89b4fa,stroke-width:2px,color:#cdd6f4
style RotationEngine fill:#181825,stroke:#cba6f7,stroke-width:2px,color:#cdd6f4
style UpstreamLayer fill:#11111b,stroke:#a6e3a1,stroke-width:2px,color:#cdd6f4
✨ Full Feature Breakdown
🔄 1. Transparent Rotation & Failover
- Unchanged Provider Identity: Rotates only the underlying resolved API credential ref, never the provider ID. Prevents
INVALID_REPLAY_STATEcrashes inpi-aimulti-turn sessions. - Zero-Token-Loss Stream Retries: If an API key encounters an error before the first content chunk is emitted, the request is transparently re-dispatched to the next healthy key in the pool.
- Comprehensive Switch Codes: Automatically fails over on
QUOTA,RATE_LIMIT,SERVER,TIMEOUT,TRANSPORT,EMPTY_RESPONSE,UNKNOWN_MODEL,AUTH, andINVALIDerror codes. - Intelligent Message Pattern Matching: Fallback regex classifier (
SWITCHABLE_MESSAGE_PATTERN) identifies text-based quota/rate-limit errors thrown as generic exceptions by upstream SDKs. - Non-Streaming Safety Net: Synchronous calls (e.g., embeddings, batch evaluations) are protected via the
agent/request-errorlifecycle hook.
⏱️ 2. Rate-Limit Pre-emption & Concurrency Control
- Token Bucket / Leaky Bucket (
lib/bucket.js): Sliding-window tracking of Requests Per Minute (rpmLimit) and Tokens Per Minute (tpmLimit). Quarantines saturated keys before dispatching network requests, preventing 429 roundtrips. - Least-Connections Balancer (
lib/concurrency.js): Tracks active in-flight streams per key (inFlight). Distributes concurrent requests evenly across available credentials and enforcesmaxConcurrencylimits. - Stale Lock Auto-Release: Deadlocks from disconnected clients or aborted network sockets are automatically purged after 5 minutes.
🛡️ 3. Autonomous Healing & Cascade Escalation
- Cross-Provider Failover Cascade (
lib/cascade.js): If all keys for a selected provider are in cooldown, requests automatically cascade to an alternative fallback provider pool (e.g., primary provider → fallback proxy / secondary provider). - Sandbox Key Probes (
lib/sandbox.js): On-demand/modelsprobes validate a key before returning it to rotation; idle cooldowns are lifted by the self-heal sweep. - Calendar & Rolling Quota Reset Windows (
lib/quota-window.js): Supports scheduled quota reset alignments (midnight_utc,midnight_pst, androlling_24h) so daily free/tier quotas unfreeze exactly when upstream resets them. - Adaptive Exponential Backoff (
lib/pool.js): Successive failures on a key double its quarantine duration (base → ×2 → ×4 → cap ×8). Successful requests gradually restore healthy status.
🎯 4. Model-Aware Routing
- Model Sub-Pools (
lib/pool.js): Configure dedicated key pools for specific model tiers (e.g. reasoning/heavy models vs fast/cheap utility models). - Tag-Based Routing: Assign operational tags (
production,background,eval) to match key usage with workload priorities.
📊 5. Observability, Telemetry & Webhooks
- Interactive Multi-Platform Webhooks (
lib/webhook.js): Dispatches rich notifications with HMAC-signed action buttons for Telegram (Inline Keyboards), Discord (Action Rows), and Slack (Block Kit). Administrators can click buttons to reset cooldowns or pause providers directly from their mobile chat. - Usage & Cost Reporting (
lib/usage-report.js): Per-key daily request counters and estimated cost breakdown with one-click CSV/JSON export (GET /dsh-key-rotation/usage-report). - Latency SLO & Histogram (
lib/histogram.js): Tracks Time-To-First-Token (TTFT) and stream durations with health score degradation scoring (0..100).
🖥️ Rich Web GUI & Dashboard
Access full visual management under Settings → Key Rotation or via the Header quick-widget.
| Interface Feature | Description |
|---|---|
| Header Status Widget | Compact live badge in DSH header: 🟢 All Healthy | 🟡 Cooldown Active | 🔴 Pool Exhausted with quick popover actions. |
| 1-Click Health Matrix | "Health Matrix" dashboard running parallel sandbox probes across all providers, keys, and models with TTFT latency and status badges. |
| Instant Key Provisioning | Add keys with auto-generated names (<PROVIDER>_API_KEY, _2, _3) and automatic key-tail disambiguation. |
| Live Status Badges | Visual states: In Use, Ready, Cooling Down (with live countdown timer), and Not Found. |
| Drag & Priority Ordering | Reorder keys with <kbd>↑</kbd> and <kbd>↓</kbd> buttons to fine-tune selection precedence. |
| Switch Code Toggles | Interactive checkboxes for switchable error conditions. |
| Secret Leak Detector | Real-time input sanitizer (lib/keycheck.js) catching accidental pastes of private keys, SSH keys, or misplaced tokens. |
Batch .env Import |
Parse standard .env key-value pairs directly into corresponding provider pools. |
| 5-Second Undo Bar | Non-destructive undo bar for accidental key or pool removals. |
| Usage Analytics Chart | Interactive breakdown of lifetime requests and daily trends per key. |
🔒 Security & Safe Storage
- Zero Plaintext Secrets in Plugin Config: Configuration files store only environment variable reference names (e.g.
MY_PROVIDER_API_KEY). - Secure Vault Storage: Actual secret values reside securely in
$DSH_HOME/.credentials.yamlmanaged by the DSHCredentialsservice. - 5-Character Masking (
keyTail): Full secret values are never sent to the client browser; only the trailing 5 characters are exposed for visual identification. - Loopback & Same-Origin Fencing: Administrative endpoints (
GET /status,PUT /key,POST /reset,POST /test-matrix) strictly enforce loopback origin checks (isTrustedBridgeRequest).
📦 Installation
# Install via DSH Plugin Manager (Web Profile):
dsh plugin --profile web add @goodandready/dsh-key-rotation
# Or directly from GitHub:
dsh plugin --profile web add github:GooDAnDReaDY/dsh-key-rotation
[!IMPORTANT] Restart DeepSeek Harness web service after installation and refresh your browser tab:
systemctl --user restart dsh-web
⚙️ Configuration Reference (settings.yaml)
dsh-key-rotation:
switchCodes:
- QUOTA
- RATE_LIMIT
- SERVER
- TIMEOUT
- TRANSPORT
- EMPTY_RESPONSE
- UNKNOWN_MODEL
- AUTH
cooldownMs: 60000
# v0.8.0 circuit breaker
circuitBreakerEnabled: true
circuitBreakerThreshold: 5
circuitBreakerOpenMs: 30000
circuitBreakerHalfOpenProbes: 1
concurrencyLimit: 5
quotaResetWindow:
type: midnight_utc
hour: 0
cascade:
- provider: backup-provider-id
model: your-backup-model-id
webhookUrl: "https://api.telegram.org/bot<TOKEN>/sendMessage?chat_id=<CHAT_ID>"
providers:
- provider: your-primary-provider
rpmLimit: 60
tpmLimit: 100000
keys:
- PRIMARY_API_KEY
- PRIMARY_API_KEY_2
- PRIMARY_API_KEY_BACKUP
- provider: secondary-provider
keys:
- SECONDARY_API_KEY
- SECONDARY_API_KEY_2
Parameter Reference
| Parameter | Type | Default | Description |
|---|---|---|---|
switchCodes |
string[] |
[QUOTA, RATE_LIMIT, ...] |
List of error codes that immediately trigger failover. |
cooldownMs |
number |
60000 (1 min) |
Base penalty duration (in ms) for quarantined keys. |
circuitBreakerEnabled |
boolean |
true |
Enable per-provider circuit breaker (v0.8.0). |
circuitBreakerThreshold |
number |
5 |
Consecutive failures before opening the circuit. |
circuitBreakerOpenMs |
number |
30000 |
How long the circuit stays open (ms). |
circuitBreakerHalfOpenProbes |
number |
1 |
Probe requests allowed in half-open state. |
verboseLogging |
boolean |
false |
Per-request rotation logs (noisy; off by default). |
concurrencyLimit |
number |
0 (disabled) |
Max concurrent in-flight streams per key (0 = unlimited). |
quotaResetWindow |
object |
null |
Calendar reset alignment (midnight_utc, midnight_pst, rolling_24h). |
cascade |
array |
[] |
Fallback provider chain when primary pool is completely exhausted. |
webhookUrl |
string |
"" |
Target URL for interactive Telegram, Discord, Slack, or generic alerts. |
providers |
array |
[] |
List of { provider, keys, rpmLimit, tpmLimit, modelPools } definitions. |
🔌 HTTP Bridge API Reference
All management routes require loopback authentication (127.0.0.1 / ::1) with same-origin validation:
| Route | Method | Description |
|---|---|---|
/dsh-key-rotation/status |
GET |
Real-time health, keys, cooldowns. Since v0.8.0 also providers[].circuit and meta (expectedClones, notifyQueue). |
/dsh-key-rotation/config |
GET / PUT |
Read and update active key rotation settings and provider pools. |
/dsh-key-rotation/key |
PUT / DELETE |
Add, update, or remove credentials in host storage and pool. |
/dsh-key-rotation/reset |
POST |
Instantly resets all cooldowns and restores all keys to ready. |
/dsh-key-rotation/test-matrix |
POST |
Triggers parallel health check across all configured keys and models. |
/dsh-key-rotation/usage-report |
GET |
Returns aggregated usage metrics in JSON or CSV format (?format=csv). |
/dsh-key-rotation/webhook-callback |
POST |
Receives and executes interactive actions from Telegram/Slack callbacks. |
📄 License
MIT © GooDAnDReaDY
v0.7.39
- Self-Healing & lastUsedAt Accuracy: Fixed key timestamp lookup in
healIdleCooldownsto read from the modernpool.state.lastUsedAtmap (with backwards-compatible fallback).credentials.resolvenow properly records each key invocation timestamp inlastUsedAt, surfacing accurate "last used" indicators in the status dashboard and enabling background idle cooldown restoration. - Hotpath & Runtime Memoization: Eliminated redundant
buildRuntime()calls across periodic sweeps, provider exhaustion handling, and/statusquery processing. - Test Suite & CI Hardening: Periodic interval sweep timers and debounce timers unref'ed to allow Node.js event loop natural exit without stalling CI runners. Purged obsolete incident test artifacts.
v0.7.38
- Hot-Path Stream Optimization: Eliminated 4 redundant
buildRuntime()calls inside therotate()finish chunk handler by reusing the request-scopedruntime0snapshot. - Allocation-Free Rate Limit Header Parsing: Optimized
extractRateLimit()with single-pass header inspection and length guards, completely removing dynamic lowercase/uppercase string allocations on every response chunk. - Date ISO String Memoization: Memoized
todayIsostring calculation once per finishing request instead of creating multipleDateinstances forcostDaysandusageDays. - Zero-Allocation Metrics Aggregation: Replaced intermediate array allocation
[...values()].reduce()with iterative summation fortotalUsagein the/dsh-key-rotation/statusendpoint. - Stale Notification Cleanup: Automatically purge stale entries in notification throttling maps (
budgetNotifiedAt,lowHealthNotifiedAt) when provider pools are deleted.
v0.7.37
- Request Context Isolation via AsyncLocalStorage: Scoped active key resolution (
pickedRef), start timestamps, and retry counts strictly to each async dispatch context using Node'snode:async_hooks. Eliminates race conditions where concurrent streaming requests could penalize healthy keys. - Failover on Pre-Yield Stream Exceptions: Fixed fatal stream termination where transport errors (e.g. HTTP 429 thrown before headers, socket hang-up) aborted the generator. The catch block now inspects
isSwitchableErrorand cascades seamlessly to the next key if no content tokens have been yielded. - Pure Local Candidate List in rotate(): Generator uses an isolated local slice of keys (
attemptList), eliminating shared mutations onpool.weightedRefs. - Automatic Quarantine Release on Probe Success: Successful sandbox model tests via Settings UI (
/dsh-key-rotation/test) automatically liftfailedUntilandbrokenUntilquarantine flags. - Long-Term Memory Compaction: Wired
compactUsage(pool, 30, now)into the periodic 30-second maintenance sweep to prevent memory growth on high-uptime servers. - Request-Scoped Latency Recording: Replaced module-global start timestamp with context-scoped
startMsfor accurate p50/p95 latency metrics under concurrent load.
v0.7.36
- Architecture de-bloat & hardening: Removed 6 unused/overengineered modules (
shadow,incident,agent-budget,region,canary,maintenance) and dead route registrations. - High-throughput buildRuntime memoization: Eliminates per-token deep-cloning and schema validation on every streaming chunk.
- Atomic round-robin pointer rotation: Concurrent requests advance pointer immediately on candidate selection, eliminating race conditions on simultaneous tool calls.
- Enhanced switchable error detection: Direct parsing of HTTP status codes (
429,401,403,5xx) and gRPC codes (RESOURCE_EXHAUSTED,UNAVAILABLE) alongside regex fallback. - Informative user exhaustion messaging: Clear countdown notice with next key recovery ETA when all keys in a pool are cooling down.
- Smart polling: Client background polling paused when browser tab is inactive (
document.visibilityState).
v0.7.35
- Lifecycle Cleanups: Wrapped
credentials.resolvepatch andctx.onevent handlers (llm/stream,agent/request-error) inctx.effectscopes with guaranteed unmount cleanup (#238, #239). - Settings & Secret Roles: Added
.role('secret')toincidentGitHubTokenandwebhookActionTokeninConfigschema for automatic UI masking (#237). - Settings Architecture & UI: Added native
settingsScopesnapshot reading/saving in settings card with graceful bridge fallback (#235). - Localization (Changed in v0.8.2): Card uses
props.twithlocale: NS; plugin registers onlyen; nosettings.sectionfallback and no bundledru/zhtables (#236, #275, #277). - Dead Code Purge: Removed obsolete
mountDashboardroutine after header-chip migration (#240).
Operate deliberately
Install and manage
Prerequisites and target Profile
Target: Web Profile
Delivery: Dsh Bundle Git — GooDAnDReaDY/dsh-key-rotation#687eec73640f013063bb1c4ff793995e1b6a5239。
Verify, update, and remove
Show lifecycle commands
dsh plugin --profile web listCompatibility and access
Requires Node.js >=18 and declared DSH peer dependencies: Not declared in supplied evidence。
Review compatibility evidence ↗
Risk facts
Manages API-key references and can update credentials through its management API.
Evidence ↗Optional webhook configuration can send rotation alerts to external endpoints.
Evidence ↗Evidence and editorial reviewManifest, Bundle patch, distribution and freshness
Immutable evidence
Review status and source activity
Use the pinned Git source rather than assuming npm availability. Review configured provider pools and any webhook URL before enabling it.
AI reviewed Sep 15, 2026, 1:58 PM UTC。GitHub facts last checked Sep 15, 2026, 1:58 PM UTC。
No material source change has been recorded since this evidence baseline.