RUO-MO/DSH-Plugin

DeepSeek Harness (DSH) 插件仓库:侧边栏内嵌网页版 DeepSeek 聊天 + Token 用量仪表盘。零侵入,本地 127.0.0.1 数据桥/反代,浏览器与桌面端通用。

Project Overview项目介绍

This repository holds two native DSH plugins built exclusively for DeepSeek Harness, a client for interacting with DeepSeek’s large language models. The first plugin, dsh-deepseek-web, embeds the official web version of DeepSeek Chat directly into DSH’s sidebar, so users do not need to switch browser tabs or windows to chat, and it does not consume any of DSH’s native session tokens. The second plugin, token-usage, adds a Token usage dashboard to DSH that displays usage heatmaps, key metrics, model preference rankings, and coding time curves, and automatically adapts to your selected light or dark theme.

To install either plugin, you first need to clone this repository to your local development machine. All plugin source code is self-contained, with no hardcoded absolute paths or machine-specific configuration, so you do not need to modify any code before starting the installation process. For the web version of DSH running in a browser, you can add the plugin directory via the dsh CLI command, then start DSH to use the new plugin. For the packaged desktop version of DSH, you can import the plugin directory directly through DSH’s built-in plugin management panel.

Both plugins only require one dependency, @deepseek-ai/schemastery, which you can install via running npm install after entering the specific plugin’s directory, and no additional build steps are required. The dsh-deepseek-web plugin works by spinning up a local reverse proxy bound only to 127.0.0.1 that bypasses DeepSeek’s content security policy restrictions that block embedding, so the web chat can load safely inside DSH’s iframe. The entire repository is released under the permissive MIT open source license, so you can modify the plugins to fit your own needs without any cost or legal restriction.

本仓库是面向DeepSeek Harness(DSH)开发的原生插件集合,目前包含两个可独立安装的DSH原生插件。第一个插件dsh-deepseek-web可在DSH侧边栏内嵌网页版DeepSeek聊天,无需切换窗口,也不消耗DSH自身的会话token。第二个插件token-usage是Token用量分析仪表盘,支持展示活跃度热力图、关键指标、模型偏好排行、编程时段曲线,可自动适配深浅主题,对原有使用零侵入。

开发者克隆本仓库后即可安装使用,所有插件源码都是自包含的,没有绝对路径或机器专属配置,无需修改源码就能直接安装使用。对于浏览器形态的网页版DSH,可以通过dsh命令行添加本插件目录后启动使用。对于已经打包好的桌面版DSH,可以直接在插件管理面板导入插件目录。它适合想要拓展DSH功能、追踪自己DeepSeek API Token使用情况的DSH用户。

两个插件都只需要安装@deepseek-ai/schemastery这一个依赖,就能完成安装。dsh-deepseek-web通过本地反向代理绕过了DeepSeek网页的跨框架限制,代理仅绑定127.0.0.1,不会对外暴露服务。本仓库整体采用MIT许可证开源,没有使用成本,用户可以自行修改源码适配自身需求。

Pre-install check安装前体检Compatibility · Security兼容性 · 安全性 3 warnings3 项注意
  • Only 2 stars - very few users, little community feedback星标只有 2,几乎没人在用,遇到问题缺少社区反馈
  • No DSH plugin manifest detected - it may only carry the dsh-plugin topic, so the install method must be confirmed on the spot未检测到 DSH 插件清单:可能只是打了 dsh-plugin 话题,安装方式要现场确认
  • Desktop client: installation downloads an executable - verify the publisher and checksums桌面客户端:安装会下载可执行文件,请核对发布者与校验和
DSH walks through these 9 checksDSH 会逐条核对这 9 项

Compatibility兼容性

  • DSH, Node, OS and profile requirementsDSH 版本 / Node 版本 / 操作系统 / profile 是否满足要求
  • External dependencies and runtimes (Electron / Python / Docker, ...)外部依赖与运行时(Electron / Python / Docker 等)是否齐备
  • Conflicts with installed plugins: command names, skill / tool names, ports, duplicate MCP registration与已装插件是否冲突:命令名、skill / tool 重名、端口占用、重复 MCP 注册

Security安全性

  • Repo matches the facts registered here; archived or abandoned?仓库是否与页面登记一致,是否归档或长期停更
  • Safety of preinstall / install / postinstall and install.sh / setup.ps1preinstall / install / postinstall 与 install.sh、setup.ps1 是否安全
  • curl|bash, download-then-execute, obfuscation, unrelated domains → stop immediatelycurl|bash、下载即执行、混淆代码、无关域名 → 立刻停止
  • Typosquatting or unmaintained packages among the new dependencies新增依赖里有没有 typosquatting 或无人维护的包
  • Requested permissions vs. what the feature actually needs申请了哪些权限、是否超出功能所需(filesystem / network / shell / clipboard)
  • Any sudo / admin requirement, plus uninstall and rollback是否要求 sudo / 管理员权限,以及卸载与回滚方式

Anything uncertain must be marked unknown with a note on how to confirm it. This site's signal screen is a static snapshot, not a security audit.拿不准的必须标「未知」并说明要我怎么确认。本站的信号筛查是静态快照,不能替代安全审计。

Or use CLI install (for developers)或使用命令行安装(适合开发者)

CLI Install命令行安装

dsh plugin --profile web add github:RUO-MO/DSH-Plugin

把 RUO-MO/DSH-Plugin 加入你的 DSH 配置(web profile)即可启用。

READMEREADME

DSH-Plugin · DeepSeek Harness 插件仓库

本仓库面向 DeepSeek Harness(DSH) 的插件开发,当前包含两个可独立安装的官方协议插件:

  • plugin/dsh-deepseek-web —— 在 DSH 侧边栏内嵌网页版 DeepSeek 聊天 (chat.deepseek.com),无需切窗口、不消耗 Harness 会话 token。
  • plugin/token-usage —— Token 用量仪表盘:活跃度热力图、关键指标、模型偏好 排行、编程时段曲线(深色 TraeCode 风格,浅色主题自动适配),零侵入、数据桥仅绑定 127.0.0.1。

快速使用(克隆即用)

克隆本仓库后,插件源码是自包含的,内部不含任何绝对路径或机器专属配置,无需改动即可安装:

# 进入到插件目录并安装唯一依赖 @deepseek-ai/schemastery
cd plugin/dsh-deepseek-web
npm install

# 方式一:dsh web(浏览器形态,拷贝安装)
pnpm dsh plugin --profile web add <本插件仓库绝对路径> && pnpm dsh web

# 方式二:已打包桌面版 → DSH++ 面板 → 插件管理 → 导入本插件目录

dsh-deepseek-web 面板默认进入站点根路径 /(DeepSeek 首页/登录),登录后无需再额外配置;如需直接打开 某个共享会话,可在该插件补丁行 config: startPath 里指定你的 /a/chat/s/<share-id>。

第二个插件(token 用量仪表盘)同理,依赖与导入方式相同:

cd plugin/token-usage
npm install                       # 唯一依赖 @deepseek-ai/schemastery
pnpm dsh plugin --profile web add dsh-plugin-token-usage   # 或 DSH++ 面板导入本目录

仓库结构

DSH-Plugin/
├── README.md              # 本文件(仓库导读)
├── LICENSE                # MIT
├── .gitignore
└── plugin/
    ├── dsh-deepseek-web/  # 可安装的 DSH 插件包(含 host 半 + client 半 + 冒烟测试)
    │   ├── lib/index.js          # host 半:本地回环反向代理
    │   ├── lib/client.js         # client 半:Slots 注入侧边栏入口与 iframe 面板
    │   ├── cordis.patch.yml      # bundle 补丁行
    │   └── scripts/              # 冒烟测试 / 边界测试 / dev 注入脚本
    └── token-usage/     # Token 用量仪表盘插件
        ├── lib/index.js          # host 半:跨会话 token 用量聚合 + 127.0.0.1 数据桥
        ├── lib/client.js         # client 半:统计页 + 会话视图 Token 标签
        ├── cordis.patch.yml      # bundle 补丁行
        └── scripts/              # 冒烟测试

cordis/(上游 Cordis 框架源码)与 docs/(开发提示词模板)是本地参考资料,不入版本管理。

插件说明

内嵌受限于上游 Content-Security-Policy: frame-ancestors 'none' 与静态 CDN 的来源校验,本插件在 Harness 宿主进程内启动一个仅绑定 127.0.0.1 的本地反向代理:剥掉框架拒绝头、将静态域改写为代理相对 路径、改写 Cookie 与重定向,从而让 DeepSeek 网页安全地生活在 Harness 的 iframe 面板中。

← 上一个 Prev dsh-plugin-xquant 下一个 Next dsh-session-manager →