erduotong/dsh-plugin-graph
Deepseek Harness的插件关系图谱可视化插件
Project Overview项目介绍
dsh-plugin-graph is a DSH web settings plugin that visualizes client-plugin and slot relationships as a force-directed graph. It shows plugin and slot nodes with inject, declares, and registers edges, and supports dragging, panning, zooming, hover details, refresh, and a fullscreen modal. Use it to inspect dependencies and slot wiring. The graph is a read-only snapshot: it does not subscribe to changes and mainly covers client plugins.
dsh-plugin-graph 是 DSH Web 设置页插件,用力导向图可视化客户端插件与插槽关系:蓝色插件节点、琥珀色插槽节点,以及 inject、declares、registers 三类边;支持拖拽、平移、缩放、悬停查看依赖信息和全屏模态。适合排查插件依赖、插槽声明与注册关系。它是只读快照,不订阅事件,变化需手动刷新,且主要覆盖客户端插件。
请帮我安装这个 DSH 插件。安装前先完成【兼容性检查 + 安全性检查】,检查通过再动手。
插件:dsh-plugin-graph(erduotong/dsh-plugin-graph)
仓库:https://github.com/erduotong/dsh-plugin-graph
本站详情页:https://www.yhbd.top/plugins/erduotong-dsh-plugin-graph/
本站登记:类型 plugin · 归类 原生 DSH 插件 · 许可证 MIT · ⭐ 2 · 最近提交 2026-08-13 · 主语言 TypeScript
按下面顺序执行,每步先把结论告诉我,再进入下一步:
【1 兼容性检查】
① 我这边:DSH 版本、Node 版本、操作系统、当前 profile(web / desktop)。
② 读它的 README、package.json、插件 manifest,列出它要求的 DSH 版本 / Node 版本 / 操作系统 / 外部依赖 / 需要另外先装的运行时。
③ 逐条比对,结论只写「满足 / 不满足 / 未知」三种;不满足的给出可行替代方案。
④ 检查是否和我已装的插件冲突:命令名重复、skill / tool 重名、端口占用、重复注册的 MCP server。
【2 安全性检查】
① 仓库可信度:和上面「本站登记」是否一致;star / fork 数、创建时间、最近提交,是否归档或长期停更。
② 安装脚本:逐行看 package.json 的 preinstall / install / postinstall,以及 install.sh、setup.ps1 之类脚本。出现 curl|bash、下载后直接执行、混淆代码、访问与插件功能无关的域名,立刻停下来告诉我,不要继续装。
③ 依赖:列出新增依赖,标出无人维护、或与知名包拼写近似的可疑包(typosquatting)。
④ 权限与副作用:它会读写哪些目录、访问哪些域名、需要哪些 DSH 权限(filesystem / network / shell / clipboard 等),以及怎么卸载和回滚。
⑤ 如果它要求 sudo / 管理员权限,或权限明显超出功能所需,先停下来问我。
【3 安装】
上面两步没有「不满足」和「高危项」时才执行;用官方推荐方式安装,不要自行提权。
【4 汇报】
用表格输出:检查项 / 结论 / 依据 / 是否需要我决策。拿不准的一律写「未知」并说明要我怎么确认——不要猜,也不要替我决定。
Send this message to DSH in your current session: it verifies compatibility and security first (answering met / not met / unknown item by item) and only installs once everything checks out — it will stop and ask you if it finds a high-risk item. The box scrolls; the copy is the full prompt. CLI install commands may not be accurate across systems, so DSH is the safer route.把上面这条消息直接发给当前会话里的 DSH:它会先核对兼容性与安全性(逐条给「满足 / 不满足 / 未知」),确认没问题再安装,有高危项会停下来问你。框内可滚动,复制到的是完整提示词;安装命令不一定准确,发给 DSH 更稳。
- Only 2 stars - very few users, little community feedback星标只有 2,几乎没人在用,遇到问题缺少社区反馈
DSH walks through these 9 checksDSH 会逐条核对这 9 项
Compatibility兼容性
- DSH, Node, OS and profile requirementsDSH 版本 / Node 版本 / 操作系统 / profile 是否满足要求
- External dependencies and runtimes (Electron / Python / Docker, ...)外部依赖与运行时(Electron / Python / Docker 等)是否齐备
- Conflicts with installed plugins: command names, skill / tool names, ports, duplicate MCP registration与已装插件是否冲突:命令名、skill / tool 重名、端口占用、重复 MCP 注册
Security安全性
- Repo matches the facts registered here; archived or abandoned?仓库是否与页面登记一致,是否归档或长期停更
- Safety of preinstall / install / postinstall and install.sh / setup.ps1preinstall / install / postinstall 与 install.sh、setup.ps1 是否安全
- curl|bash, download-then-execute, obfuscation, unrelated domains → stop immediatelycurl|bash、下载即执行、混淆代码、无关域名 → 立刻停止
- Typosquatting or unmaintained packages among the new dependencies新增依赖里有没有 typosquatting 或无人维护的包
- Requested permissions vs. what the feature actually needs申请了哪些权限、是否超出功能所需(filesystem / network / shell / clipboard)
- Any sudo / admin requirement, plus uninstall and rollback是否要求 sudo / 管理员权限,以及卸载与回滚方式
Anything uncertain must be marked unknown with a note on how to confirm it. This site's signal screen is a static snapshot, not a security audit.拿不准的必须标「未知」并说明要我怎么确认。本站的信号筛查是静态快照,不能替代安全审计。
Or use CLI install (for developers)或使用命令行安装(适合开发者)
CLI Install命令行安装
dsh plugin --profile web add dsh-plugin-graph
把 erduotong/dsh-plugin-graph 加入你的 DSH 配置(web profile)即可启用。
READMEREADME
dsh-plugin-graph
DeepSeek Harness(DSH)Web 设置页插件:以力导向图(Koishi / Obsidian 风格)可视化客户端插件之间的关系。
Tip: 这是一个dsh自己写的项目,还在快速完善中 如有好的想法,欢迎提出Issue~
功能
- 力导向图画布:节点自动物理布局,节点按度数缩放。
- 两类节点:
- 插件节点(蓝色圆点)—— 来自启动清单
window.__DSH_BOOT__与插槽注册表; - 插槽节点(琥珀色菱形)—— 来自实时插槽注册表
ctx.slots.snapshot()。
- 插件节点(蓝色圆点)—— 来自启动清单
- 三类彩色边:
- 蓝色
inject—— 插件对其它包的依赖; - 绿色
declares—— 插槽声明者; - 琥珀色
registers—— 注册到插槽的插件。
- 蓝色
- 交互:拖拽节点(重新加热布局)、拖拽空白平移、滚轮缩放、悬停高亮相邻节点并弹出信息框(显示依赖/被依赖、声明者/注册者)。
- 放大查看:画布右上角展开按钮,打开全屏模态框,支持 Esc / 遮罩 / × 关闭。
- 只读快照:不订阅任何事件,挂载与手动刷新时重建图。
快速上手
1. 前置条件
- 已安装 DeepSeek Harness,并至少启动过一次 Web 界面(会生成
~/.dsh/profiles/web)。
2. 安装插件
二选一:
方式 A:从 npm registry 安装(推荐一般用户使用)
dsh plugin --profile web add dsh-plugin-graph
方式 B:从本地源码目录安装(开发 / 未发布时)
dsh plugin --profile web add /path/to/dsh-plugin-graph
dsh plugin add会把包装进 profile 的package.json依赖并链接到~/.dsh/profiles/web/node_modules。请不要用裸npm i dsh-plugin-graph安装——那只会装进当前目录的node_modules,dsh 并不知道它。
本包自带 dsh.bundle 声明(cordis.patch.yml 配置层),dsh plugin add 后会自动追加到 profile 的 dsh.profile.bundles 层叠,启动时由包自带的 patch 挂载 ui-plugin-graph 行——无需手动编辑 cordis.patch.yml。
升级提示:如果在旧版本(无
dsh.bundle)时手动往cordis.patch.yml加过insert: - id: ui-plugin-graph,请删除该条目,避免与 bundle 自带的挂载重复。
3. 重启并打开
- 重启 dsh Web 进程(配置变更和 loader 条目都需要重启才生效)。
- 打开设置页(侧边栏底部「设置」)→ 找到 「插件关系图谱」 入口(位于 Agent 预设之后)。
- 点击进入,即看到力导向图。
4. 使用画布
| 操作 | 效果 |
|---|---|
| 拖拽节点 | 钉住该节点,重新加热布局 |
| 拖拽空白处 | 平移画布 |
| 滚轮 | 缩放 |
| 悬停节点 | 高亮相邻节点,弹出信息框(依赖/被依赖、声明者/注册者) |
| 点击右上角 ⤢ | 打开全屏模态框(Esc / 遮罩 / × 关闭) |
| 点击 ↻ | 手动刷新(重新读取启动清单与插槽注册表) |
5. 卸载
dsh plugin --profile web remove dsh-plugin-graph
dsh 会同时移除依赖与 dsh.profile.bundles 里的层条目;如果旧版本手动加过 cordis.patch.yml 的 insert,也一并删除,最后重启 dsh。
6. 常见问题
- 设置页没有「插件关系图谱」入口:确认
dsh plugin add后 profile 的package.json中dsh.profile.bundles包含dsh-plugin-graph(cat ~/.dsh/profiles/web/package.json);确认重启过 dsh;确认node_modules里链接存在(ls ~/.dsh/profiles/web/node_modules/dsh-plugin-graph)。 - 安装时报
declares no dsh.bundle警告:说明安装的版本过旧(< 0.2.0,尚无 bundle 声明),升级后重新dsh plugin add即可自动成为 profile 层。 - 安装时 pnpm 报 peer 依赖缺失(
missing peer @deepseek-ai/cordis / react ...):这是预期提示。profile 模板固定autoInstallPeers: false+ hoisted linker,缺失 peer 会回退到安装级profiles/node_modules,运行时由宿主提供,功能不受影响(harness 内部 client 插件同样声明这些 peer)。若升级 dsh 后版本不匹配,同步升级本包。 - 图谱里看不到宿主插件:本图只覆盖客户端插件(
__DSH_BOOT__内的dsh.client行);宿主平面行(webserver、storage 等)仅在被插槽声明/注册时出现。见「已知限制」。
Showing the opening section of the README — the full document lives in the repository以上为 README 开头摘要,完整文档在仓库内 · View the full README on GitHub →在 GitHub 查看完整 README →
ruvnet/ruflo
Tencent/WeKnora
EverMind-AI/EverOS
MemTensor/MemOS
plastic-labs/honcho
agentscope-ai/ReMe
zilliztech/memsearch
vshulcz/deja-vu