Player-MINEPIG/dsh-tavern 预览 preview

Player-MINEPIG/dsh-tavern

一个使dsh与SillyTavern制品兼容的插件。

Project Overview项目介绍

dsh-tavern is a native plugin built exclusively for DeepSeek Harness (DSH), adding SillyTavern-compatible roleplay functionality to the DSH platform. It leverages DSH’s native extension points and public APIs to add a layered, testable, and removable compatibility framework without replacing DSH’s core session management or frontend. It supports two operating modes: Lingzhu (DSH native mode) that preserves DSH’s original sidebar, sessions, and plugin ecosystem, and Mowan (RP mode) that adds a dedicated roleplay sidebar, character management, and custom RP UI elements. All core DSH functions like persistent session history, tool permissions, and model requests remain controlled by DSH itself.

This plugin is designed for users who want to run roleplay sessions within DSH while retaining access to DSH’s full native tooling and agent capabilities. To start a new roleplay session, users first install the plugin via the DSH CLI command, restart the DSH web interface, then import SillyTavern JSON or PNG character cards via the plugin’s floating ball menu. Next, users create a dedicated DSH workspace for roleplay, switch to Mowan RP mode, select the pre-created workspace, and create a new playthrough for their imported character to start the conversation. The plugin also supports common RP features like branching paths, swipe reply, playthrough reversion, and import/export of session data.

dsh-tavern is released under the permissive open-source MIT license, and requires Node.js 20 or higher to run when installed from source. Currently, it only officially supports DSH versions 0.1.2-rc.1 and 0.1.5-rc.1, with no guarantee of compatibility for other DSH releases. Installation can be done via the DSH plugin CLI command for pre-built packages, or via cloning the repository and running the custom install script for source-based development. RP data is stored separately in the DSH home directory, so uninstalling the plugin does not delete existing roleplay sessions. Users are advised to only import trusted character resources to avoid prompt injection risks.

dsh-tavern 是 DeepSeek Harness(DSH)原生插件,专为 DSH 提供兼容 SillyTavern 的角色扮演能力。它基于 DSH 原生扩展接口和原子 API 构建,支持双模式运行:保留 DSH 原生界面与插件生态的「灵珠」模式,以及新增角色扮演侧边栏、角色资源管理的「魔丸」RP 模式。它始终以 DSH 原生会话机制为权威,支持导入 SillyTavern 格式的角色卡、预设和世界书,不替换原生前端,不伪造或覆盖原始会话历史。

该插件面向想要在 DSH 中进行角色扮演,同时保留 DSH 原生工具能力的用户。典型使用流程为:安装插件后重启 DSH,通过悬浮球导入角色卡,在 DSH 中创建专用 RP 工作区,切换到魔丸模式后选择工作区,创建角色周目即可开始对话。它还提供了分支对话、滑动切换回复、回退周目、导入导出等常用 RP 功能,满足不同角色扮演需求。

该插件采用 MIT 许可证开源,运行依赖 Node.js 20 及以上版本,仅支持指定范围的 DSH 版本(0.1.2-rc.1 和 0.1.5-rc.1),其他版本不保证兼容。安装需要通过 DSH 插件命令或源码编译安装,数据默认保存在 DSH 目录下,卸载插件不会删除已保存的 RP 数据。使用时需要注意提示注入等安全风险,仅建议导入信任的角色资源。

Pre-install check安装前体检Compatibility · Security兼容性 · 安全性 1 note1 项提示
  • 16 stars - an early-stage project星标 16,属于早期项目
DSH walks through these 9 checksDSH 会逐条核对这 9 项

Compatibility兼容性

  • DSH, Node, OS and profile requirementsDSH 版本 / Node 版本 / 操作系统 / profile 是否满足要求
  • External dependencies and runtimes (Electron / Python / Docker, ...)外部依赖与运行时(Electron / Python / Docker 等)是否齐备
  • Conflicts with installed plugins: command names, skill / tool names, ports, duplicate MCP registration与已装插件是否冲突:命令名、skill / tool 重名、端口占用、重复 MCP 注册

Security安全性

  • Repo matches the facts registered here; archived or abandoned?仓库是否与页面登记一致,是否归档或长期停更
  • Safety of preinstall / install / postinstall and install.sh / setup.ps1preinstall / install / postinstall 与 install.sh、setup.ps1 是否安全
  • curl|bash, download-then-execute, obfuscation, unrelated domains → stop immediatelycurl|bash、下载即执行、混淆代码、无关域名 → 立刻停止
  • Typosquatting or unmaintained packages among the new dependencies新增依赖里有没有 typosquatting 或无人维护的包
  • Requested permissions vs. what the feature actually needs申请了哪些权限、是否超出功能所需(filesystem / network / shell / clipboard)
  • Any sudo / admin requirement, plus uninstall and rollback是否要求 sudo / 管理员权限,以及卸载与回滚方式

Anything uncertain must be marked unknown with a note on how to confirm it. This site's signal screen is a static snapshot, not a security audit.拿不准的必须标「未知」并说明要我怎么确认。本站的信号筛查是静态快照,不能替代安全审计。

Or use CLI install (for developers)或使用命令行安装(适合开发者)

CLI Install命令行安装

dsh plugin --profile web add github:Player-MINEPIG/dsh-tavern#v2.5.1

把 Player-MINEPIG/dsh-tavern 加入你的 DSH 配置(web profile)即可启用。

READMEREADME

pmp-dsh-tavern

English

以 DeepSeek Harness(DSH)原生会话与执行机制为权威的酒馆兼容插件,提供前后端 API,支持自由组合酒馆能力与 DSH 原生功能。

Tavern 2.5.1 适配 DSH 0.2.0-rc.2,新增 RP 正文、开场白与静态 HTML 导出的 LaTeX 数学公式渲染。变更记录 · MIT License。

从 Tavern 2.5.0 升级无需数据迁移,DSH 目标版本不变;更新前保留备份并停止目标 Host。从旧 DSH 升级时,已完成 V4 迁移的会话与 Tavern 引用无需再次转换;更早格式按 升级指南 单向迁移。不支持旧版 Host。

Tavern Trace 可查看每次请求的配置、世界书触发情况和提示词段落的内容与来源;第三方工具也可通过只读 v3 API 读取这些信息。见 API 与设计。

公式默认启用,支持 $…$、$$…$$、\(...\)、\[...\],使用现代浏览器的 MathML,无需额外按钮或远程字体。字面分隔符请转义或放入代码;完整 HTML 模板和交互卡片内不自动解析公式。RP 还支持头像、可配置气泡与可选受限交互卡片;卡片脚本默认关闭,不支持 MVU 或完整酒馆助手兼容。见显示能力与边界。

本项目只维护嵌入 DSH Web 与桌面端的前端,不额外开发独立 Web UI。导航、输入框与会话生命周期继续由 DSH 拥有,Tavern 通过公开扩展点提供 RP 展示;第三方仍可组合 HTTP API 开发客户端。这项决策调整产品范围,不引入数据迁移。

设计理念

pmp-dsh-tavern 不是用另一套界面取代 DSH,也不会复制一份会话历史。它以公开扩展点和原子 API 为基础,在 DSH 之上增加一层可测试、可审计、可卸载的 Tavern 兼容框架:

  • 灵珠 / DSH 原生模式:保留 DSH 原生会话、侧边栏和插件生态;
  • 魔丸 / RP 模式:按角色卡与周目重组 RP 侧栏,提供开场白、显示正则、swipe、分支、回退、导入与导出;
  • DSH 仍是权威:durable history、工具、权限和最终模型请求继续由 DSH 拥有;
  • 最小程度改动,最大程度兼容:优先复用 DSH 公开机制,不替换原生前端,不依赖私有 DOM;
  • 卸载后仍可阅读原始会话:插件保存资源、选择、周目指针、显示元数据与有界的 Trace metadata/官方历史引用,不伪造、覆盖或复制 DSH 历史正文。

双模式本身就是兼容方案:不进入魔丸时,用户看到的仍是普通 DSH;只有进入 RP 模式后,插件才挂载自己的 RP 表面。

⚠️ 安全警示

安装本插件等同于允许其代码在 DSH Host 和浏览器页面中运行。请只从可信仓库与提交安装,并在更新前检查变更、备份插件数据。以下防护用于降低风险,不构成操作系统级隔离或账号鉴权:

  • Agent 与工具风险:预设、角色卡、世界书、外部记录和用户消息都可能包含 prompt injection。高权限 Agent 仍可能在模型诱导下调用获准的终端、文件、网络、浏览器或其他插件能力;不要在对话中提供密钥,保留 DSH 审批与沙箱,并按最小权限启用工具。
  • RP 安全模式边界:RP 模式会在 DSH 权限之上增加只读与高风险工具限制,子 agent 也继承该叠加,但它不是虚拟机、容器或系统沙箱,不能约束本机其他进程,也不能把恶意提示词变成可信内容。
  • 后端与 API 风险:v1/v2/v3 API 面向本机 loopback,Host、Origin 和 Content-Type 检查不是登录认证,本机恶意进程仍可能访问。不要把 DSH Web 或本插件 API 直接暴露到局域网或公网;反向代理必须自行增加 TLS、认证和可信 Host 配置。
  • 前端渲染风险:模型输出经过净化并禁止自动远程资源。可选卡片脚本使用有配额的解释器与受限 DOM 桥;昂贵的 CSS 和布局仍可能导致拒绝服务。显示正则使用 JavaScript RegExp,灾难性回溯可能冻结页面;只导入和启用你信任的模板与正则。
  • 数据与生命周期风险:swipe、分支和周目会创建真实 DSH session,并可能增加磁盘占用。revision/CAS、路径检查和原子写入不能替代备份,也不能把多个 API 组合变成跨文件事务。

遇到可疑行为时,停止 Agent、切回 DSH 原生模式并检查原始会话与工具记录。完整威胁模型、已实现边界和漏洞报告方式见 安全策略;RP 模式具体拦截范围见 RP 安全模式。

Showing the opening section of the README — the full document lives in the repository以上为 README 开头摘要,完整文档在仓库内 · View the full README on GitHub →在 GitHub 查看完整 README →

← 上一个 Prev relay-dsh-plugin-codex 下一个 Next DSH-Mobile →