amplifthq/oh-my-dsh 预览 preview

amplifthq/oh-my-dsh

DeepSeek Harness 的精选发行版。叠加层,而非分支。

Project Overview项目介绍

oh-my-dsh is a curated, opinionated distribution overlay for DeepSeek Harness (DSH), built specifically as a native DSH bundle. It retains DSH’s upstream “everything is a plugin” architecture, so users can override any default configuration to match their own unique workflow. Unlike a full fork, it pins tested upstream DSH releases to avoid silent breaking changes that can disrupt development work. It adds sensible default configurations, supports reusing existing MCP setups, includes LSP navigation, and ships with recoverable semantic refactoring tools. It also runs a weekly canary test against upcoming DSH releases to catch compatibility issues early.

It supports three installation paths: portable, manual archive, and npm for developers. The recommended portable install works with a single curl command, and it ships with a self-contained Node.js runtime so you don’t need a system-wide Node, npm, or root access to run it. Portable builds are available for macOS arm64 and Linux x64 (glibc). Native Windows is not supported, so Windows users must install it via WSL2 with a glibc-based distro like Ubuntu. After installation, it will automatically set up two separate profiles: one for interactive web UI use, and another for one-shot headless terminal tasks.

oh-my-dsh includes multiple opinionated security hardening rules by default. It blocks web requests to private, loopback, link-local, and cloud-metadata destinations by default, though you can disable this block with an environment variable if needed. MCP configurations do not expand placeholders or expose schemas during discovery, so expansions only happen after explicit user approval. All semantic refactoring changes are checked against current file versions before writing, and DAP debugging is disabled by default unless you explicitly enable it. The project is released under the open source MIT license, and it is not affiliated with or endorsed by DeepSeek.

这是专为 DeepSeek Harness (DSH) 打造的原生定制化分发项目,作为上层覆盖而非上游分叉,保留了 DSH 原有的「一切皆插件」架构,允许用户自定义覆盖所有配置,同时固定经过测试的上游发行版本,避免静默跟随破坏性变更。它提供合理的默认配置、可复用的现有 MCP 配置继承,支持 LSP 导航、语义重命名等功能。

它支持多种安装方式,推荐使用便携版安装,只需一条 curl 命令即可完成,不需要系统 Node.js、npm 或 root 权限,支持 macOS arm64 和 Linux x64 平台。Windows 用户需要通过 WSL2 安装使用,原生 Windows 暂不支持。安装后会自动生成交互式 Web UI 和无终端任务两个配置配置文件。

该项目内置多项安全规则,默认阻止私有、回环、本地链路等地址的网络请求,MCP 配置仅在激活后展开,所有代码变更和操作默认需要用户手动审批。它还加入了 DAP 调试开关,默认关闭,开启需要手动设置环境变量。代码采用 MIT 许可证开源,不隶属于 DeepSeek 官方,适合想要开箱即用、安全加固的 DSH 开发环境的用户。

Pre-install check安装前体检Compatibility · Security兼容性 · 安全性 1 note1 项提示
  • 16 stars - an early-stage project星标 16,属于早期项目
DSH walks through these 9 checksDSH 会逐条核对这 9 项

Compatibility兼容性

  • DSH, Node, OS and profile requirementsDSH 版本 / Node 版本 / 操作系统 / profile 是否满足要求
  • External dependencies and runtimes (Electron / Python / Docker, ...)外部依赖与运行时(Electron / Python / Docker 等)是否齐备
  • Conflicts with installed plugins: command names, skill / tool names, ports, duplicate MCP registration与已装插件是否冲突:命令名、skill / tool 重名、端口占用、重复 MCP 注册

Security安全性

  • Repo matches the facts registered here; archived or abandoned?仓库是否与页面登记一致,是否归档或长期停更
  • Safety of preinstall / install / postinstall and install.sh / setup.ps1preinstall / install / postinstall 与 install.sh、setup.ps1 是否安全
  • curl|bash, download-then-execute, obfuscation, unrelated domains → stop immediatelycurl|bash、下载即执行、混淆代码、无关域名 → 立刻停止
  • Typosquatting or unmaintained packages among the new dependencies新增依赖里有没有 typosquatting 或无人维护的包
  • Requested permissions vs. what the feature actually needs申请了哪些权限、是否超出功能所需(filesystem / network / shell / clipboard)
  • Any sudo / admin requirement, plus uninstall and rollback是否要求 sudo / 管理员权限,以及卸载与回滚方式

Anything uncertain must be marked unknown with a note on how to confirm it. This site's signal screen is a static snapshot, not a security audit.拿不准的必须标「未知」并说明要我怎么确认。本站的信号筛查是静态快照,不能替代安全审计。

Or use CLI install (for developers)或使用命令行安装(适合开发者)

CLI Install命令行安装

dsh plugin --profile web add github:amplifthq/oh-my-dsh

把 amplifthq/oh-my-dsh 加入你的 DSH 配置(web profile)即可启用。

READMEREADME

oh-my-dsh

A curated distribution of DeepSeek Harness.
Overlay, not a fork.

npm version npm downloads license TypeScript Node.js

English | 中文

DeepSeek Harness provides an excellent plugin framework and a conservative reference setup. oh-my-dsh turns those building blocks into an opinionated coding environment: sensible profiles, inert reuse of your existing MCP configuration, LSP navigation and recoverable semantic rename, upstream @file discovery with anchored line-range snapshots, stale-safe editing, SSRF-hardened web fetch on by default, optional DAP debugging, notifications, usage reporting, persistent code kernels, and approval-gated skill distillation that turns verified procedures into reusable skills.

It is a native curated distribution, not a fork. You keep upstream's “everything is a plugin” architecture and can override every choice.

DeepSeek Harness is in developer preview. oh-my-dsh pins a tested upstream release instead of silently following breaking changes.

Quick start

Portable releases ship a self-contained Node.js runtime and production dependency closure for macOS arm64 and Linux x64 (glibc). No system Node.js, npm, pnpm, or root access is required. CI covers Linux and macOS on Node 22 and 24. Native Windows is not supported; use WSL2.

Showing the opening section of the README — the full document lives in the repository以上为 README 开头摘要,完整文档在仓库内 · View the full README on GitHub →在 GitHub 查看完整 README →

← 上一个 Prev dsh-voice-mode 下一个 Next dsh-diagram →