blooming-fang/dsh-feishu-notifier
DeepSeek Harness 飞书通知插件:在需要用户操作或对话结束时发送飞书机器人提醒,并支持持久化配置。
Project Overview项目介绍
dsh-feishu-notifier is a DeepSeek Harness bundle that forwards agent interaction events to a Feishu bot via a custom webhook. Core capability: it listens for approval requests, ask_user_question prompts, exit_plan_mode plan confirmations, and turn/end events, converting completion, error, cancel, and abort reasons into readable text. When to use: when you need real-time Feishu visibility into DSH agent activity for remote review and approval. Caveat: requires DSH 0.1.0-rc.5 and Node.js 22.19+, each user must configure their own webhook, and the URL is sensitive and must never be committed or published.
dsh-feishu-notifier 是 DeepSeek Harness 飞书通知插件。核心能力:监听智能体审批请求、ask_user_question 提问、exit_plan_mode 计划确认及 turn/end 回合结束事件,转换为可读文本后通过飞书机器人 Webhook 推送。适用场景:需在飞书端实时感知 DSH 智能体交互状态、远程审阅与确认流程。需配合 DSH 0.1.0-rc.5 及 Node.js 22.19+ 使用,每个用户须自行配置 Webhook,且地址属敏感信息,不应提交至 GitHub 或随 npm 发布。
请帮我安装这个 DSH 插件。安装前先完成【兼容性检查 + 安全性检查】,检查通过再动手。
插件:dsh-feishu-notifier(blooming-fang/dsh-feishu-notifier)
仓库:https://github.com/blooming-fang/dsh-feishu-notifier
本站详情页:https://www.yhbd.top/plugins/blooming-fang-dsh-feishu-notifier/
本站登记:类型 plugin · 归类 原生 DSH 插件 · 许可证 MIT · ⭐ 2 · 最近提交 2026-09-30 · 主语言 TypeScript
按下面顺序执行,每步先把结论告诉我,再进入下一步:
【1 兼容性检查】
① 我这边:DSH 版本、Node 版本、操作系统、当前 profile(web / desktop)。
② 读它的 README、package.json、插件 manifest,列出它要求的 DSH 版本 / Node 版本 / 操作系统 / 外部依赖 / 需要另外先装的运行时。
③ 逐条比对,结论只写「满足 / 不满足 / 未知」三种;不满足的给出可行替代方案。
④ 检查是否和我已装的插件冲突:命令名重复、skill / tool 重名、端口占用、重复注册的 MCP server。
【2 安全性检查】
① 仓库可信度:和上面「本站登记」是否一致;star / fork 数、创建时间、最近提交,是否归档或长期停更。
② 安装脚本:逐行看 package.json 的 preinstall / install / postinstall,以及 install.sh、setup.ps1 之类脚本。出现 curl|bash、下载后直接执行、混淆代码、访问与插件功能无关的域名,立刻停下来告诉我,不要继续装。
③ 依赖:列出新增依赖,标出无人维护、或与知名包拼写近似的可疑包(typosquatting)。
④ 权限与副作用:它会读写哪些目录、访问哪些域名、需要哪些 DSH 权限(filesystem / network / shell / clipboard 等),以及怎么卸载和回滚。
⑤ 如果它要求 sudo / 管理员权限,或权限明显超出功能所需,先停下来问我。
【3 安装】
上面两步没有「不满足」和「高危项」时才执行;用官方推荐方式安装,不要自行提权。
【4 汇报】
用表格输出:检查项 / 结论 / 依据 / 是否需要我决策。拿不准的一律写「未知」并说明要我怎么确认——不要猜,也不要替我决定。
Send this message to DSH in your current session: it verifies compatibility and security first (answering met / not met / unknown item by item) and only installs once everything checks out — it will stop and ask you if it finds a high-risk item. The box scrolls; the copy is the full prompt. CLI install commands may not be accurate across systems, so DSH is the safer route.把上面这条消息直接发给当前会话里的 DSH:它会先核对兼容性与安全性(逐条给「满足 / 不满足 / 未知」),确认没问题再安装,有高危项会停下来问你。框内可滚动,复制到的是完整提示词;安装命令不一定准确,发给 DSH 更稳。
- Only 2 stars - very few users, little community feedback星标只有 2,几乎没人在用,遇到问题缺少社区反馈
DSH walks through these 9 checksDSH 会逐条核对这 9 项
Compatibility兼容性
- DSH, Node, OS and profile requirementsDSH 版本 / Node 版本 / 操作系统 / profile 是否满足要求
- External dependencies and runtimes (Electron / Python / Docker, ...)外部依赖与运行时(Electron / Python / Docker 等)是否齐备
- Conflicts with installed plugins: command names, skill / tool names, ports, duplicate MCP registration与已装插件是否冲突:命令名、skill / tool 重名、端口占用、重复 MCP 注册
Security安全性
- Repo matches the facts registered here; archived or abandoned?仓库是否与页面登记一致,是否归档或长期停更
- Safety of preinstall / install / postinstall and install.sh / setup.ps1preinstall / install / postinstall 与 install.sh、setup.ps1 是否安全
- curl|bash, download-then-execute, obfuscation, unrelated domains → stop immediatelycurl|bash、下载即执行、混淆代码、无关域名 → 立刻停止
- Typosquatting or unmaintained packages among the new dependencies新增依赖里有没有 typosquatting 或无人维护的包
- Requested permissions vs. what the feature actually needs申请了哪些权限、是否超出功能所需(filesystem / network / shell / clipboard)
- Any sudo / admin requirement, plus uninstall and rollback是否要求 sudo / 管理员权限,以及卸载与回滚方式
Anything uncertain must be marked unknown with a note on how to confirm it. This site's signal screen is a static snapshot, not a security audit.拿不准的必须标「未知」并说明要我怎么确认。本站的信号筛查是静态快照,不能替代安全审计。
Or use CLI install (for developers)或使用命令行安装(适合开发者)
CLI Install命令行安装
dsh plugin --profile web add dsh-feishu-notifier
把 blooming-fang/dsh-feishu-notifier 加入你的 DSH 配置(web profile)即可启用。
READMEREADME
dsh-feishu-notifier
一个 DeepSeek Harness Bundle:当智能体请求用户批准、等待用户回答问题或确认计划,以及一轮对话结束时,向飞书机器人发送文本通知。

使用要求
- DeepSeek Harness
0.2.0-rc.1或兼容版本。 - Node.js
22.19+。 - 在 Web 设置中配置飞书自定义机器人 Webhook。
本地开发
pnpm install
pnpm run typecheck
pnpm run smoke
pnpm run build
pnpm pack:check
pnpm run smoke 会用桩上下文加载 lib/index.js 与 lib/client.js,校验通知分发、设置契约(volatile 字段与 secret 脱敏)、settings.section 注册,并复刻 dsh-app-boot 的插件版本校验、断言每个 dsh peer 范围都能接纳目标运行时版本 —— 升级 DSH 后应优先运行它,版本范围失配会在这里而非启动时报错。
构建会生成:
lib/index.js:Node/Cordis Loader 入口;lib/client.js:Web 浏览器插件入口。
从 npm 安装
将插件发布到 npm 后,用户可以直接使用以下命令安装到 web Profile:
dsh plugin --profile web add dsh-feishu-notifier
dsh --profile web
如果使用源码方式运行 DeepSeek Harness,则将 dsh 替换为 pnpm dsh:
pnpm dsh plugin --profile web add dsh-feishu-notifier
pnpm dsh --profile web
启动后打开:
设置 → 飞书通知
填写飞书机器人 Webhook,点击“保存 Webhook”,然后点击“发送测试消息”验证连接。
配置通过 DSH 的 settings 服务写入当前 Profile 的补丁文件,通常是 ~/.dsh/profiles/<profile>/cordis.patch.yml。真实 Webhook 不会包含在 npm 包中,每位用户都需要配置自己的地址。

从 GitHub 安装
建议使用 release tag 或 commit SHA,确保安装内容可复现:
pnpm dsh plugin --profile demo add github:blooming-fang/dsh-feishu-notifier
从 GitHub 安装时会执行 prepare 构建插件。只应安装可信仓库中的代码;pnpm 可能要求在 Profile 的 workspace 配置中加入 allowBuilds 授权。
通知事件
插件会发送以下通知:
- 用户审批请求(
approval/request瀑布事件); ask_user_question用户问题请求;exit_plan_mode计划确认请求;turn/end对话轮次结束事件,并将完成、错误、取消、分叉和中断原因转换为可读文本。子代理(session.header.origin === 'subagent')的轮次结束不会触发通知。
Webhook 属于敏感设置(Config 中声明为 role('secret')),保存后不会返回给浏览器。不要把真实 Webhook 地址提交到 GitHub 或发布到 npm。
从旧版本升级
从 0.2.x 升级到 0.3.0(DSH 0.2.0-rc.1)
DSH 0.2.0-rc.1 新增了插件版本校验:启动导入插件前,dsh-app-boot 会读取插件 package.json 的 peerDependencies,把所有 @deepseek-ai/dsh 与 @deepseek-ai/dsh-* 声明与当前运行时版本逐一比对(含预发布版本)。任一范围不匹配即拒绝加载该插件并提示 Plugin ... is incompatible with dsh ...。
因此本次升级是必需的,而不是可选的:插件 0.2.2 声明的 @deepseek-ai/dsh-settings: ^0.1.7-alpha.1 无法满足 0.2.0-rc.1,会在启动时被直接拒绝。0.3.0 的改动:
- 所有
@deepseek-ai/dsh-*依赖与 peer 范围提升到^0.2.0-rc.1,@deepseek-ai/cordis提升到^4.0.4,@deepseek-ai/schemastery提升到^3.18.4; - 新增
scripts/smoke.mjs版本校验回归:用semver复刻dsh-app-boot的判定逻辑,断言每个 dsh peer 范围都能接纳目标运行时版本,避免下次再出现同类静默失败; - 面向 DSH 0.2.0-rc.1 重新构建
lib/index.js与lib/client.js。
Showing the opening section of the README — the full document lives in the repository以上为 README 开头摘要,完整文档在仓库内 · View the full README on GitHub →在 GitHub 查看完整 README →
whiteguo233/dsh-openbiliclaw
hanshanyike/dsh-yolo
AX1202/ax-feishu-bridge
amlyczz/dsh-lark-link
MichengAI/dsh-im-connect
caoyiwei850/dsh-ssh-ops
jiezeng2004-design/dsh-chatgpt-bridge