ikashana/dsh-notify

DeepSeek Harness(dsh)任务监控通知插件:回合/结束提醒,带超时升级的人工确认,SAPI语音,HTTP/A2A/MCP通道——零依赖、免构建打包。

Project Overview项目介绍

This is a native DSH plugin built exclusively for DeepSeek Harness that monitors agent task status and sends notifications for key events. It automatically notifies users when tasks complete, error out, get blocked, or hit the maximum token limit, and also alerts when human confirmation is needed, with escalation alerts for unhandled confirmation requests after 10 minutes by default. To install, you run the command dsh plugin --profile <your-profile> add github:ikashana/dsh-notify, and it works with both web and headless DSH profiles. It has zero runtime dependencies, is built with pure Node.js, and requires no build step before use.

After installation, the plugin defaults to a listen-only, no-disturb mode, with all notification channels turned off by default. To enable channels and configure your notification endpoints, you need to add or update the notify entry in your profile’s cordis.patch.yml file. It supports four channel types: HTTP webhooks, A2A agents, MCP notification bridges, and local Windows SAPI voice, so you can choose the delivery method that fits your workflow best. Any private credentials or endpoint secrets should be stored in a local patch file that you add to .gitignore, to avoid accidentally exposing sensitive information. This plugin is for any DSH user who wants to stay updated on their agent’s progress without constant manual checks of the DSH interface.

This plugin is released under the open source MIT license, and it has several documented known limitations. SMTP email notifications are not implemented natively, so you need to use an existing MCP mail bridge to send email notifications. SAPI voice does not work in non-interactive Windows sessions such as SSH or Session 0 services, so you need to use another channel for those cases. The model-initiated notify tool is off by default because it sends verbatim model content without privacy filtering, and enabling it counts as user authorization for the model to push content to all configured channels. Notifications are not persisted and are dropped after a short flush window on plugin dispose.

这是一款专为DeepSeek Harness(DSH)打造的原生任务监控通知插件,可在代理运行时推送各类关键状态通知,包括任务完成、错误、阻塞、达到最大token数等状态提醒,也会在需要人工确认时发出通知,超时未处理还会升级告警。它支持四种通知渠道:HTTP网络钩子、A2A代理、MCP工具通知桥接和Windows SAPI本地语音,纯Node.js开发,无运行依赖,无需构建,通过bundle补丁安装。

安装可通过命令行完成,针对web和无头两种配置文件都可安装,命令格式为 dsh plugin --profile <配置名> add github:ikashana/dsh-notify。默认配置为仅监听无打扰模式,所有渠道默认关闭,需要用户在配置文件的 cordis.patch.yml 中修改对应配置,开启所需渠道并填入端点信息,隐私配置建议存入本地补丁文件并加入gitignore。它面向需要实时掌握DSH代理运行状态,不想错过任务节点或人工确认请求的DSH用户。

本项目遵循MIT许可协议,已知存在若干使用限制:暂不支持SMTP直接发送邮件,需要通过MCP邮件桥接实现;非交互Windows会话无法使用SAPI语音,需要改用其他渠道;A2A仅支持单向消息发送,MCP为最小实现,通知不会持久化存储。模型主动发起的notify工具默认关闭,开启后会发送模型原始文本,开启即代表用户授权模型推送任意内容到已配置渠道。

Pre-install check安装前体检Compatibility · Security兼容性 · 安全性 1 warning1 项注意
  • Only 2 stars - very few users, little community feedback星标只有 2,几乎没人在用,遇到问题缺少社区反馈
DSH walks through these 9 checksDSH 会逐条核对这 9 项

Compatibility兼容性

  • DSH, Node, OS and profile requirementsDSH 版本 / Node 版本 / 操作系统 / profile 是否满足要求
  • External dependencies and runtimes (Electron / Python / Docker, ...)外部依赖与运行时(Electron / Python / Docker 等)是否齐备
  • Conflicts with installed plugins: command names, skill / tool names, ports, duplicate MCP registration与已装插件是否冲突:命令名、skill / tool 重名、端口占用、重复 MCP 注册

Security安全性

  • Repo matches the facts registered here; archived or abandoned?仓库是否与页面登记一致,是否归档或长期停更
  • Safety of preinstall / install / postinstall and install.sh / setup.ps1preinstall / install / postinstall 与 install.sh、setup.ps1 是否安全
  • curl|bash, download-then-execute, obfuscation, unrelated domains → stop immediatelycurl|bash、下载即执行、混淆代码、无关域名 → 立刻停止
  • Typosquatting or unmaintained packages among the new dependencies新增依赖里有没有 typosquatting 或无人维护的包
  • Requested permissions vs. what the feature actually needs申请了哪些权限、是否超出功能所需(filesystem / network / shell / clipboard)
  • Any sudo / admin requirement, plus uninstall and rollback是否要求 sudo / 管理员权限,以及卸载与回滚方式

Anything uncertain must be marked unknown with a note on how to confirm it. This site's signal screen is a static snapshot, not a security audit.拿不准的必须标「未知」并说明要我怎么确认。本站的信号筛查是静态快照,不能替代安全审计。

Or use CLI install (for developers)或使用命令行安装(适合开发者)

CLI Install命令行安装

dsh plugin --profile web add github:ikashana/dsh-notify

把 ikashana/dsh-notify 加入你的 DSH 配置(web profile)即可启用。

READMEREADME

dsh-notify

A DeepSeek Harness (dsh) task-monitoring notification plugin. While the agent works, it pushes key states to you:

  • turn/end: notifies on task completion/error/blocked/max-tokens (title, reason, duration by default)
  • human confirmation needed: notifies on approval dialogs and ask_user_question (with a question summary)
  • confirmation timeout escalation: after 10 minutes without a decision, re-alerts via SAPI voice + high-priority webhooks
  • model-initiated notify tool: notify tool (off by default) lets the model push a message to you proactively

Four channel kinds: HTTP webhooks (QQ bot / serverchan / DingTalk / WeCom / ntfy are the same channel with different endpoints), A2A agents (one-way message/send), MCP tools (streamable-http notification bridges), and Windows SAPI local voice. Pure Node, zero runtime dependencies, build-free bundle, installed in the same dsh.bundle.patch shape as dsh-desktop-shell.

Installation

dsh plugin --profile web add github:ikashana/dsh-notify
# headless works too (voice/HTTP/A2A/MCP all still send):
dsh plugin --profile headless add github:ikashana/dsh-notify

The plugin is inserted via a bundle patch and defaults to listen-only, no disturbance (no HTTP/A2A/MCP channels, voice off, notify tool off). Configure endpoints by replacing the whole config under the same id in your profile's cordis.patch.yml (a non-insert patch replaces the target entry's entire config object — rewrite every key you want to keep):

- id: notify
  config:
    http:
      channels:
        - id: ntfy
          url: 'https://ntfy.sh/my-topic'
    sapi:
      enabled: true
    tools:
      notify:
        enabled: true

Keep private config (endpoints with secrets) in a local patch/config file and gitignore it; the public repo has zero hardcoded secrets.

Triggers

1. turn/end (automatic)

Listens to session/event turn/end. The reason.kind whitelist defaults to [completed, error, blocked, max-tokens] (aborted is a user-initiated cancel and stays quiet by default; configurable). If a new turn/start appears inside the cooldown window after a turn ends (default 10 s), the pending notification is cancelled — multi-turn jobs report only the final state. Only root sessions notify (subagent children stay silent; configurable). Duration = envelope time of turn/end minus turn/start.

Showing the opening section of the README — the full document lives in the repository以上为 README 开头摘要,完整文档在仓库内 · View the full README on GitHub →在 GitHub 查看完整 README →

← 上一个 Prev OLEDCare 下一个 Next dsh-econ-tools →