caoyiwei850/dsh-ssh-ops
DeepSeek Harness SSH 运维插件:主对话驱动 SSH,带高危命令保护与右侧终端。
Project Overview项目介绍
This repository, caoyiwei850/dsh-ssh-ops, is a purpose-built plugin for DeepSeek Harness (DSH) that enables SSH-based remote server operations directly within the DSH interface. It ships with a DSH bundle manifest and follows DSH plugin market conventions for versioning and compatibility. The plugin is verified to work with DSH Desktop and Web Profile version 0.1.6-alpha.1, and declares compatibility with the entire 0.1.6 release series. It leverages DSH’s built-in Node.js runtime, so users do not need to install any additional system-level dependencies like standalone OpenSSH or Node.js to use it.
After installation, users can manage all their SSH server assets and groups directly from DSH’s built-in settings menu. Each saved server can be configured with a default project directory, so when you click “enter project”, both the terminal and SFTP client start in that preconfigured directory. The plugin supports shared credentials that can be reused across multiple servers, and allows up to 8 hops for jump host proxy connections. Once connected, you can issue commands to the DSH agent in the main chat window to execute operations on the active remote server, and switch the agent’s target between panes with one click.
The plugin is released under the permissive open-source MIT license, so it can be used and modified freely for both personal and commercial projects. It includes automatic compatibility fallback: if your installed version of DSH does not support the new right sidebar tab API, the plugin will automatically switch to a legacy floating panel mode with full core functionality. Sensitive credentials like passwords and PEM private keys are stored locally in DSH’s credential store with owner-only file permissions, and are never exposed to the browser or DSH agent context. Regular plugin upgrades do not delete existing saved connection data.
这是专为DeepSeek Harness(DSH)开发的原生SSH运维插件,安装后可在DSH主界面右侧集成交互式SSH终端,同时支持SFTP文件管理、端口转发与数据库管理等功能。它遵循DSH插件市场规范,在peerDependencies中声明宿主兼容性,目前适配DSH Desktop/Web Profile 0.1.6系列,已在0.1.6-alpha.1版本验证可用性。插件使用DSH自带的Node.js运行时,无需用户在系统额外安装ssh、sftp或独立Node环境。
用户可在DSH设置侧边栏统一管理SSH服务器资产,支持添加任意数量的服务器分组,配置认证信息时可设置默认远程项目目录,支持共享凭据复用与最多8级跳板机跳转。连接服务器后,用户可直接在主对话中指挥DSH代理执行远程操作,还能在不同分栏之间快速切换代理的操作目标,分栏默认独立连接,也可勾选复用已有连接。
本插件采用MIT许可,完全开源免费。它做了宿主兼容性适配,当DSH版本不支持新版右侧边栏API时,会自动回退为浮动面板模式,核心功能均可正常使用。密码、私钥等敏感信息存储在DSH本地凭据库,仅拥有宿主端权限才可访问,不会暴露到浏览器存储或代理上下文,常规升级也不会删除已保存的连接数据。
请帮我安装这个 DSH 插件。安装前先完成【兼容性检查 + 安全性检查】,检查通过再动手。
插件:dsh-ssh-ops(caoyiwei850/dsh-ssh-ops)
仓库:https://github.com/caoyiwei850/dsh-ssh-ops
本站详情页:https://www.yhbd.top/plugins/caoyiwei850-dsh-ssh-ops/
本站登记:类型 plugin · 归类 原生 DSH 插件 · 许可证 MIT · ⭐ 23 · 最近提交 2026-09-28 · 主语言 JavaScript
按下面顺序执行,每步先把结论告诉我,再进入下一步:
【1 兼容性检查】
① 我这边:DSH 版本、Node 版本、操作系统、当前 profile(web / desktop)。
② 读它的 README、package.json、插件 manifest,列出它要求的 DSH 版本 / Node 版本 / 操作系统 / 外部依赖 / 需要另外先装的运行时。
③ 逐条比对,结论只写「满足 / 不满足 / 未知」三种;不满足的给出可行替代方案。
④ 检查是否和我已装的插件冲突:命令名重复、skill / tool 重名、端口占用、重复注册的 MCP server。
【2 安全性检查】
① 仓库可信度:和上面「本站登记」是否一致;star / fork 数、创建时间、最近提交,是否归档或长期停更。
② 安装脚本:逐行看 package.json 的 preinstall / install / postinstall,以及 install.sh、setup.ps1 之类脚本。出现 curl|bash、下载后直接执行、混淆代码、访问与插件功能无关的域名,立刻停下来告诉我,不要继续装。
③ 依赖:列出新增依赖,标出无人维护、或与知名包拼写近似的可疑包(typosquatting)。
④ 权限与副作用:它会读写哪些目录、访问哪些域名、需要哪些 DSH 权限(filesystem / network / shell / clipboard 等),以及怎么卸载和回滚。
⑤ 如果它要求 sudo / 管理员权限,或权限明显超出功能所需,先停下来问我。
【3 安装】
上面两步没有「不满足」和「高危项」时才执行;用官方推荐方式安装,不要自行提权。
【4 汇报】
用表格输出:检查项 / 结论 / 依据 / 是否需要我决策。拿不准的一律写「未知」并说明要我怎么确认——不要猜,也不要替我决定。
Send this message to DSH in your current session: it verifies compatibility and security first (answering met / not met / unknown item by item) and only installs once everything checks out — it will stop and ask you if it finds a high-risk item. The box scrolls; the copy is the full prompt. CLI install commands may not be accurate across systems, so DSH is the safer route.把上面这条消息直接发给当前会话里的 DSH:它会先核对兼容性与安全性(逐条给「满足 / 不满足 / 未知」),确认没问题再安装,有高危项会停下来问你。框内可滚动,复制到的是完整提示词;安装命令不一定准确,发给 DSH 更稳。
- 23 stars - an early-stage project星标 23,属于早期项目
DSH walks through these 9 checksDSH 会逐条核对这 9 项
Compatibility兼容性
- DSH, Node, OS and profile requirementsDSH 版本 / Node 版本 / 操作系统 / profile 是否满足要求
- External dependencies and runtimes (Electron / Python / Docker, ...)外部依赖与运行时(Electron / Python / Docker 等)是否齐备
- Conflicts with installed plugins: command names, skill / tool names, ports, duplicate MCP registration与已装插件是否冲突:命令名、skill / tool 重名、端口占用、重复 MCP 注册
Security安全性
- Repo matches the facts registered here; archived or abandoned?仓库是否与页面登记一致,是否归档或长期停更
- Safety of preinstall / install / postinstall and install.sh / setup.ps1preinstall / install / postinstall 与 install.sh、setup.ps1 是否安全
- curl|bash, download-then-execute, obfuscation, unrelated domains → stop immediatelycurl|bash、下载即执行、混淆代码、无关域名 → 立刻停止
- Typosquatting or unmaintained packages among the new dependencies新增依赖里有没有 typosquatting 或无人维护的包
- Requested permissions vs. what the feature actually needs申请了哪些权限、是否超出功能所需(filesystem / network / shell / clipboard)
- Any sudo / admin requirement, plus uninstall and rollback是否要求 sudo / 管理员权限,以及卸载与回滚方式
Anything uncertain must be marked unknown with a note on how to confirm it. This site's signal screen is a static snapshot, not a security audit.拿不准的必须标「未知」并说明要我怎么确认。本站的信号筛查是静态快照,不能替代安全审计。
Or use CLI install (for developers)或使用命令行安装(适合开发者)
CLI Install命令行安装
dsh plugin --profile web add github:caoyiwei850/dsh-ssh-ops#v0.3.14
把 caoyiwei850/dsh-ssh-ops 加入你的 DSH 配置(web profile)即可启用。
READMEREADME
中文 · English
DSH SSH Ops
DeepSeek Harness 的 SSH 运维插件:在主对话中驱动当前服务器,同时在右侧保留真实的交互式终端,并集成文件管理、端口转发与数据库管理。
v0.3.14:新增默认关闭的「AI 自动连接」开关。开启后,Agent 可按名称连接已保存的 SSH 资源,目标终端自动出现在右侧;关闭时,Agent 无法枚举保存资源。修复会话日志空文件读取问题。
v0.3.13:整轮更新——SFTP 目录批量上传/下载(新工具
sftp_upload_dir/sftp_download_dir:小文件并发、大文件独占、单文件失败不中断整批);SSH 认证失败结构化诊断(试过哪些方法、服务器还接受什么、下一步怎么走),并新增 keyboard-interactive 认证(保存的密码应答交互提示/MFA 门禁,设备掐断时自动降级纯密码重试);数据库连接健壮性三件套(TCP keepalive、空闲复用前活性 ping + 透明重连、断连时手工事务有界收尾);修复 MySQL 未知字符集文本列显示为字节对象的问题;上一版的破坏性操作可逆化(rm 回收站、危险 SQL 自动备份、DROP 隔离改名、绕过向量封堵)一并随本版发布。
v0.3.11:修复 shell integration 的 shell 家族探测(此前探测输出被 cwd 标记污染,导致总是按 zsh 变体注入、bash 上整行脚本失效),并把
shell状态补进终端上下文的结果契约。
v0.3.10:数据库面扩展——新增 SQLite(宿主内置
node:sqlite,零新依赖)、ClickHouse(HTTP 接口)、openGauss(复用 PostgreSQL 协议)三种驱动,查询结果可导出 CSV/JSON(经 SSH 的库直接把文件写到服务器,用 SFTP 面板下载);新增动态 SOCKS5 隧道(ssh -D);新增会话录制与日志(面板可预览/搜索/下载,agent 读取需批准并自动脱敏);新增 OSC 133 shell integration,终端上下文能给出 cwd、退出码与提示符状态;SFTP 面板获得文本编辑器、目录过滤、路径收藏与拖拽上传。
v0.3.9:兼容 DSH
0.1.6-alpha.2——适配新宿主 typert 校验(schema 与 strict codec 必须携带create()工厂,浏览器端 web boot 同样校验)与槽位注册新规则(拒绝同 id 重复注册,此前会导致 SSH 标签从官方侧边栏消失);修复含null默认远程项目目录的资源记录导致配置无法读取的问题(#20);数据库驱动改为首次连接时懒加载。
v0.3.8:按 DSH 插件市场惯例将宿主兼容性唯一声明在四个官方包的
peerDependencies中,覆盖0.1.2-rc.1、0.1.3-alpha.2、0.1.5-alpha.1与已验证的0.1.6-alpha.1预发布线;移除不被市场使用的engines.dsh,避免两套版本口径分叉。
v0.3.5:移除不再维护的「运维模式」预设安装器,避免生成无效的 npm 命令入口;SSH 资源可保存一个默认远程项目目录,点击“进入项目”后终端和 SFTP 会从同一目录开始。
v0.3.4 新增:分栏各走一条独立通道——同一台服务器在两个分栏各开一次会各建一条连接,两条通道、两个终端、各自保留自己的当前目录,不再镜像同一个终端;想共用终端可在连接对话框勾选「复用已打开的连接」。Agent 的作用目标可见、可切换:正在被 Agent 使用的那一栏带蓝色机器人徽标,点另一栏即把 Agent 切过去。不符合 RFC 4253 的 SSH 横幅不再连不上:对端把自我介绍写坏(如
SSH-2.0- OpenSSH多一个空格、SSH-2.1-)时,此前 ssh2 只会抛一句不说明任何原因的Invalid identification string,现在仅在它因此拒绝后重试一次并把该行规范化(软件版本原样保留、加密强度不受影响);确实不可用的横幅会明确报出对端原文。另修复在设置页点「连接」不会打开/载入 SSH 窗口的问题。上一版的共享凭据、跳板机、连接复用与终端主题见 0.3.3。桌面版安装说明见 INSTALL.md。
Showing the opening section of the README — the full document lives in the repository以上为 README 开头摘要,完整文档在仓库内 · View the full README on GitHub →在 GitHub 查看完整 README →
Jesse-njx/dsh-chatnode-wechat
pzc2004/dsh-frostfin
whiteguo233/dsh-openbiliclaw
hanshanyike/dsh-yolo
AX1202/ax-feishu-bridge