Codewhale is the public product from Shannon Labs. The
codewhale
command, npm package, and release-asset names remain lowercase technical
identifiers. The legacy npm packagedeepseek-tuiis deprecated and
receives no further releases. Users coming from v0.8.x legacydeepseek/
deepseek-tuinames should migrate withdocs/REBRAND.md.
Install
Recommended — npm (one command, both entrypoints)
npm install -g codewhaleThe wrapper downloads the matched codewhale and codew command assets
from this Release. Both contain the same compiled runtime.
Docker / GHCR
docker run --rm -it \
-e DEEPSEEK_API_KEY="$DEEPSEEK_API_KEY" \
-v codewhale-home:/home/codewhale/.codewhale \
ghcr.io/hmbown/codewhale:v0.9.7The image exposes the same runtime as both codewhale and codew. The
latest tag is also updated on release.
Cargo (Linux / macOS)
cargo install codewhale-cli --lockedThe Cargo package installs codewhale. Cargo cannot create a second command
alias from one binary target; users who want the shorter spelling can add a
codew symlink to that installed executable. The npm, Homebrew, archive,
shell-installer, and container channels install both command names directly.
Manual download — platform archives (recommended)
Each archive below contains the same runtime under the codewhale and
codew command names, plus an install script:
| Platform | Archive | Install script |
|---|---|---|
| Linux x64 | codewhale-linux-x64.tar.gz |
install.sh |
| Linux ARM64 | codewhale-linux-arm64.tar.gz |
install.sh |
| Android ARM64 (Termux) | codewhale-android-arm64.tar.gz |
install.sh |
| macOS x64 | codewhale-macos-x64.tar.gz |
install.sh |
| macOS ARM | codewhale-macos-arm64.tar.gz |
install.sh |
| Windows x64 (installer) | CodeWhaleSetup.exe |
NSIS setup |
| Windows x64 | codewhale-windows-x64.zip |
install.bat |
| Windows x64 (portable) | codewhale-windows-x64-portable.zip |
— |
| Windows ARM64 | codewhale-windows-arm64.zip |
install.bat |
| Windows ARM64 (portable) | codewhale-windows-arm64-portable.zip |
— |
Unix (Linux / macOS):
tar xzf codewhale-<platform>.tar.gz
cd codewhale-<platform>
./install.shWindows:
- For the installer path, run
CodeWhaleSetup.exe; it installs
codewhale.exeandcodew.exeunder
%LOCALAPPDATA%\Programs\CodeWhale\binand adds that directory to the
current-user PATH. - Extract the archive for your machine:
codewhale-windows-x64.zipor
codewhale-windows-arm64.zip - Run
install.bat(copies to%USERPROFILE%\bin) - Add
%USERPROFILE%\binto your PATH
The portable Windows archive skips the install script — extract and run from any directory. The NSIS installer is currently unsigned and may trigger Windows SmartScreen until a signing certificate is wired into the release pipeline.
Each platform also has bare, unarchived codewhale-<platform> and
codew-<platform> assets. The seven codewhale-tui-<platform> filenames
attached to v0.9.5 are byte-identical compatibility copies used only to let
already-installed v0.9.4 clients discover and cross this single-binary
transition; current installers do not expose a third runtime. The legacy npm
package deepseek-tui is deprecated and is not republished. For migration
from v0.8.x legacy binary names, see docs/REBRAND.md.
Verify (recommended)
Download the checksum manifests from this Release and verify:
# Linux — archive bundles
sha256sum -c codewhale-bundles-sha256.txt --ignore-missing
# Linux — individual binaries
sha256sum -c codewhale-artifacts-sha256.txt --ignore-missing
# macOS
shasum -a 256 -c codewhale-bundles-sha256.txt --ignore-missing
shasum -a 256 -c codewhale-artifacts-sha256.txt --ignore-missingWhat's in v0.9.7
Codewhale v0.9.7 keeps the catalog ordinary. Grok 4.6 lands as a normal catalog
row instead of a provider-shaped pile of special cases, OrcaRouter joins as a
named provider, and a panic-safety advisory in lru is cleared by lifting the
pin that caused it rather than living around it.
Added
- Grok 4.6 is the direct xAI default, with the
grokalias moving onto it and
grok-4.5still explicitly selectable. Its 500K context, text/image input,
tool and structured-output support,low/medium/high/xhighreasoning
efforts (defaulthigh), and server-side web search all come from the
Models.dev-shaped catalog rather than model-specific code.reasoning_effort
reaches the wire only on the exact first-partyhttps://api.x.ai/v1route,
and the usage-aware 200K-token pricing boundary is scoped to direct xAI so
aggregator routes reusing the model slug cannot inherit xAI billing. - OrcaRouter is a first-class named provider:
ORCAROUTER_API_KEY, default base
URLhttps://api.orcarouter.ai/v1,deepseek/deepseek-v4-prodefault,
orcarouter/autorouting, CLI--providerselector, and TUI picker entries
(#5321).
Changed
- Reasoning-effort normalization and the model picker read a model's published
reasoning_optionslist from the catalog instead of collapsing every route to
the historic Low/Medium ladder. Any catalog row that publishes an effort list
keeps its own vocabulary. - Docs record DeepSeek's live
DeepSeek-V4-Pro-0813backend label while the
callable API ID staysdeepseek-v4-pro. No aliases are remapped and no
deepseek-v4-pro[1m]selector is sent.
Fixed
- Copying a user or assistant message takes its canonical content instead of
reserialized transcript lines, keeping role glyphs, continuation rails, and
visual wrapping out of the clipboard while preserving authored Unicode,
Markdown, and hard line breaks. Tool and Thinking cells stay on the existing
full-transcript path (#5319). load_sessionno longer runs crash recovery on every read. Snapshot reads go
through a side-effect-freeload_session_snapshotand recovery is explicit
viarecover_session_for_resume, so an embedding host inspecting a durable
session while a tool is still running no longer gets a spurious crash repair
(#5320).
Security
lrumoves to 0.18 to clear RUSTSEC-2026-0253, whereLruCache::pop()was
not panic-safe and could leave dangling list pointers. Theratatui-core
=0.1.0pin that transitively forcedlru^0.16 is lifted, so
ColorCompatBackendnow answersget_cursor_position()from tracked cursor
state — the upstream-recommended workaround for the startup CPR race
(ratatui/ratatui#2483, ratatui/ratatui#2640) that the pin originally worked
around.ratatuiitself stays pinned at=0.30.0, so the API surface is
unchanged.
Known issues
- The integration test
exec_persistent_service::failed_exec_kills_pending_service_and_exits_nonzero
is a confirmed flake under parallel load ("service pid file never appeared").
It passes in isolation and is unrelated to any v0.9.7 change.
Contributors
- XhesicaFrost (@XhesicaFrost) — canonical message copy (#5319).
- h3c-hexin (@h3c-hexin) — session snapshot and crash-recovery split (#5320).
- XiaoHuo888-hue (@XiaoHuo888-hue) — OrcaRouter provider registration (#5321).
See CHANGELOG.md for full notes and docs/CHANGELOG_ARCHIVE.md for older releases.