Skip to main content
Open Settings → Providers to view available and connected providers.

Authentication methods

The connection dialog shows only the fields required by that provider. Disconnecting a provider removes its stored credential and refreshes the model catalog.

Claude Code subscription

Install the Claude CLI and authenticate once:
Then connect Claude Code in Provider Settings. TurenOS invokes the local CLI and routes supported tool calls through its own permission and settlement boundaries.

OpenAI and Codex

OpenAI can use an API key or OAuth. Starting a fresh OAuth connection clears stale credentials and authorization state before opening the provider flow. If OAuth fails, disconnect and reconnect rather than reusing an expired callback.

Local endpoints

Custom OpenAI-compatible endpoints can point to localhost or your LAN. Those definitions live in your machine configuration and are not included in TurenOS releases.
Only connect endpoints you trust. Provider requests can contain repository context, prompts, tool results, and attachments selected for the model turn.

Credential storage

Desktop credentials are sealed by the Secret Vault using the operating system’s protected storage. TurenOS does not silently fall back to plaintext storage when the native vault is unavailable. See Secure storage for platform details.