Latest release v2026.1001.0 is live (October 1, 2026).

See what's new

OpenAI connector

Run agents on the Codex runtime with an OpenAI subscription or API key.

Category
AI
Provider
OpenAI
Sign-in
OpenAI subscription or API key
Works as
Model provider

Paperclip’s OpenAI connection supplies the credential your AI agents use to run models.

Use an OpenAI subscription or API key with an agent on the Codex runtime. Choose the model in the agent configuration.

What agents can do with OpenAI

  • Run agents with your personal account

    Set your personal default and configure the agent to use the responsible user’s connection.

  • Use a shared account for eligible runs

    Bind a compatible Company shared connection. The responsible user must be in its human audience and the agent must be permitted to use it.

  • Use an API key for model access

    Use the key with an agent on the Codex runtime. Choose the model in the agent configuration.

How to connect OpenAI

  1. In Paperclip, open Connectors and select OpenAI.
  2. On the Access step, choose Personal or Company shared and which agents may use the credential.
  3. Choose OpenAI subscription and complete sign-in in a supported environment or OpenAI API key and paste your key. Then select the AI connection in the agent configuration.

Setup guide

How OpenAI works in Paperclip

The connection supplies a model credential and has no per-action permission switches. Set a personal default or bind a compatible Company shared connection. Each run needs a responsible user and an eligible agent.

OpenAI connector FAQ

Can I set this connection to Ask first?

This connection supplies a model credential. It has no per-action permission switches. Access depends on credential sharing, the responsible user and agent eligibility.

Which agents can use this credential?

Use an agent on the Codex runtime. The connection must also be permitted for the agent and the responsible user.

Does a shared binding work without a responsible user?

No. A specific binding must be Company shared, shared with the responsible user and installed for the agent or company-wide. A binding cannot replace the responsible-user check.