weisiren000/dsh-remote-ssh-ops
DeepSeek Harness SSH远程运维插件,支持远程命令执行、文件管理、JumpServer及键盘交互认证。
Project Overview项目介绍
This is a native SSH remote operations plugin built specifically for DeepSeek Harness. It extends DSH with capabilities including direct SSH connection, remote-hostd pairing, remote command execution, remote file read and write, task management, and a dedicated remote workbench. It does not replace DSH’s built-in local tools, and DSH will only call its remote operation tools when a user explicitly requests work on a remote server or specified host. To install the plugin, users can run a one-line DSH command to pull the stable release from GitHub, no manual cloning or dependency setup is required.
The plugin supports two different ways to connect to a remote machine. For direct SSH connection, users just need to fill in the server address, port, username, and one-time login password in the DSH settings panel. After confirming the SSH fingerprint on the first connection, the plugin saves a local dedicated key and will not use or store passwords for future connections. For advanced pairing, users can run remote-hostd on the remote machine and input the generated one-time pairing code locally to connect.
If you do not have a global DSH command installed on your system, you can use npx to run the DSH package directly to install the plugin. The installation requires Git and pnpm to be available on your local machine, and npx additionally requires a working Node.js installation. After installation, you need to restart DSH Web to load the plugin, and you can verify the installation by checking for a 200 status response from the plugin’s API endpoint. To upgrade the plugin, simply re-run the install command with the new version tag.
这是一款专为 DeepSeek Harness 开发的原生 SSH 远程运维插件,为 DSH 新增了 SSH 直连、remote-hostd 配对、远程命令执行、远程文件读写、任务管理和远程工作台功能。插件不会替代 DSH 自带的本地工具,仅在用户明确要求对远程服务器或指定主机执行操作时才会触发使用。
插件支持两种连接远程主机的方式:SSH 直连只需要用户填写服务器地址、端口、用户名和首次登录密码,首次确认指纹后会保存本地专用密钥,后续无需密码;高级配对适合已经部署 hostd 的机器,只需输入地址和一次性配对码即可连接。
插件支持通过 DSH 内置命令一键安装,依赖本地 Git 和 pnpm,若没有全局 dsh 命令也可以用 npx 调用 Node.js 版本的 DSH 完成安装。升级只需重新执行安装命令更换版本号,卸载也仅需一条命令即可完成操作。
请帮我安装这个 DSH 插件。安装前先完成【兼容性检查 + 安全性检查】,检查通过再动手。
插件:dsh-remote-ssh-ops(weisiren000/dsh-remote-ssh-ops)
仓库:https://github.com/weisiren000/dsh-remote-ssh-ops
本站详情页:https://www.yhbd.top/plugins/weisiren000-dsh-remote-ssh-ops/
本站登记:类型 plugin · 归类 原生 DSH 插件 · 许可证未声明 · ⭐ 3 · 最近提交 2026-08-17 · 主语言 JavaScript
按下面顺序执行,每步先把结论告诉我,再进入下一步:
【1 兼容性检查】
① 我这边:DSH 版本、Node 版本、操作系统、当前 profile(web / desktop)。
② 读它的 README、package.json、插件 manifest,列出它要求的 DSH 版本 / Node 版本 / 操作系统 / 外部依赖 / 需要另外先装的运行时。
③ 逐条比对,结论只写「满足 / 不满足 / 未知」三种;不满足的给出可行替代方案。
④ 检查是否和我已装的插件冲突:命令名重复、skill / tool 重名、端口占用、重复注册的 MCP server。
【2 安全性检查】
① 仓库可信度:和上面「本站登记」是否一致;star / fork 数、创建时间、最近提交,是否归档或长期停更。
② 安装脚本:逐行看 package.json 的 preinstall / install / postinstall,以及 install.sh、setup.ps1 之类脚本。出现 curl|bash、下载后直接执行、混淆代码、访问与插件功能无关的域名,立刻停下来告诉我,不要继续装。
③ 依赖:列出新增依赖,标出无人维护、或与知名包拼写近似的可疑包(typosquatting)。
④ 权限与副作用:它会读写哪些目录、访问哪些域名、需要哪些 DSH 权限(filesystem / network / shell / clipboard 等),以及怎么卸载和回滚。
⑤ 如果它要求 sudo / 管理员权限,或权限明显超出功能所需,先停下来问我。
【3 安装】
上面两步没有「不满足」和「高危项」时才执行;用官方推荐方式安装,不要自行提权。
【4 汇报】
用表格输出:检查项 / 结论 / 依据 / 是否需要我决策。拿不准的一律写「未知」并说明要我怎么确认——不要猜,也不要替我决定。
Send this message to DSH in your current session: it verifies compatibility and security first (answering met / not met / unknown item by item) and only installs once everything checks out — it will stop and ask you if it finds a high-risk item. The box scrolls; the copy is the full prompt. CLI install commands may not be accurate across systems, so DSH is the safer route.把上面这条消息直接发给当前会话里的 DSH:它会先核对兼容性与安全性(逐条给「满足 / 不满足 / 未知」),确认没问题再安装,有高危项会停下来问你。框内可滚动,复制到的是完整提示词;安装命令不一定准确,发给 DSH 更稳。
- No license declared - all rights reserved by default; ask the author before commercial use or redistribution未声明开源许可证 —— 默认「保留所有权利」,商用或再分发前先问作者
- Only 3 stars - very few users, little community feedback星标只有 3,几乎没人在用,遇到问题缺少社区反馈
DSH walks through these 9 checksDSH 会逐条核对这 9 项
Compatibility兼容性
- DSH, Node, OS and profile requirementsDSH 版本 / Node 版本 / 操作系统 / profile 是否满足要求
- External dependencies and runtimes (Electron / Python / Docker, ...)外部依赖与运行时(Electron / Python / Docker 等)是否齐备
- Conflicts with installed plugins: command names, skill / tool names, ports, duplicate MCP registration与已装插件是否冲突:命令名、skill / tool 重名、端口占用、重复 MCP 注册
Security安全性
- Repo matches the facts registered here; archived or abandoned?仓库是否与页面登记一致,是否归档或长期停更
- Safety of preinstall / install / postinstall and install.sh / setup.ps1preinstall / install / postinstall 与 install.sh、setup.ps1 是否安全
- curl|bash, download-then-execute, obfuscation, unrelated domains → stop immediatelycurl|bash、下载即执行、混淆代码、无关域名 → 立刻停止
- Typosquatting or unmaintained packages among the new dependencies新增依赖里有没有 typosquatting 或无人维护的包
- Requested permissions vs. what the feature actually needs申请了哪些权限、是否超出功能所需(filesystem / network / shell / clipboard)
- Any sudo / admin requirement, plus uninstall and rollback是否要求 sudo / 管理员权限,以及卸载与回滚方式
Anything uncertain must be marked unknown with a note on how to confirm it. This site's signal screen is a static snapshot, not a security audit.拿不准的必须标「未知」并说明要我怎么确认。本站的信号筛查是静态快照,不能替代安全审计。
Or use CLI install (for developers)或使用命令行安装(适合开发者)
CLI Install命令行安装
dsh plugin --profile web add github:weisiren000/dsh-remote-ssh-ops#v0.0.11
把 weisiren000/dsh-remote-ssh-ops 加入你的 DSH 配置(web profile)即可启用。
READMEREADME
dsh-remote-ssh-ops
dsh-remote-ssh-ops 是 DeepSeek Harness 的 SSH 远程运维插件。它为 DSH 增加 SSH 直连、remote-hostd 配对、远程命令执行、远程文件读写、任务管理和远程工作台。
插件不会替代 DSH 的本地工具:检查当前本地工作区时,应使用 DSH 自带的本地工具;只有用户明确要求远程、服务器或指定主机操作时,才使用 host_* 工具。
工作方式
- SSH 直连:在 DSH 设置中填写服务器、端口、用户名和首次登录密码。首次连接确认 SSH 指纹后,插件保存本机专用密钥,后续不再保存或使用密码。
- 高级配对:远端运行
remote-hostd,本地输入地址和一次性配对码。适合已经部署 hostd 的机器。 - 远程工作台:会话标题栏的“服务器”入口用于浏览远程文件、运行远程命令和审阅远程文件变更。
界面预览

安装
从 GitHub 安装(推荐)
安装当前稳定版本:
dsh plugin --profile web add github:weisiren000/dsh-remote-ssh-ops#v0.0.11
DSH 会自动把插件安装到 Web profile,并将 dsh-remote-ssh-ops 注册到 dsh.profile.bundles。不需要克隆仓库、手动安装依赖、构建客户端或修改 profile 的 package.json。
如果系统没有全局 dsh 命令,可以通过 npx 执行:
npx @deepseek-ai/dsh plugin --profile web add github:weisiren000/dsh-remote-ssh-ops#v0.0.11
安装命令需要本机可以使用 Git 和 pnpm。使用 npx 时还需要 Node.js。
启动或重启 DSH Web
关闭旧的 DSH Web 进程,然后重新启动:
dsh web
使用 npx 的启动方式:
npx @deepseek-ai/dsh web
启动后进入“设置 → 插件 → 远程主机”。看到远程主机面板,说明插件已加载。
升级
发布新版本后,重新执行安装命令并替换 TAG:
dsh plugin --profile web add github:weisiren000/dsh-remote-ssh-ops#vX.Y.Z
随后重启 DSH Web。
卸载
dsh plugin --profile web remove dsh-remote-ssh-ops
没有全局 dsh 命令时:
npx @deepseek-ai/dsh plugin --profile web remove dsh-remote-ssh-ops
连接远程机器
SSH 直连(推荐)
在远程主机面板填写服务器、SSH 端口、用户名和首次登录密码,点击“连接主机”。首次连接显示服务器指纹时,只有确认指纹属于你的服务器才继续。
高级配对
在远端启动 remote-hostd,复制终端打印的一次性配对码,然后在面板切换到“高级配对”并填写地址和配对码。
验证安装
Invoke-WebRequest 'http://127.0.0.1:3080/remote-ssh-ops/v1/hosts' | Select-Object StatusCode
预期状态码为 200。然后在对话中明确说“列出远程主机”或“在指定服务器执行命令”验证 host_* 工具;检查本地代码时不要用远程请求作为验证。
远端安装 remote-hostd
remote-hostd 只在使用“高级配对”时需要。它把自己的工作目录作为远程工作区,因此启动前应先切换到要开放的项目目录。
本机回环监听(已有反向代理或只允许本机访问):
cd /path/to/remote-project
node /path/to/dsh-remote-ssh-ops/src/hostd/cli.js --listen 127.0.0.1:7680
直接对局域网或公网提供服务时必须使用 TLS:
cd /path/to/remote-project
node /path/to/dsh-remote-ssh-ops/src/hostd/cli.js \
--listen 0.0.0.0:7680 \
--tls-cert /path/to/fullchain.pem \
--tls-key /path/to/privkey.pem
只有在临时隔离网络中,才使用不安全的明文监听:
node /path/to/dsh-remote-ssh-ops/src/hostd/cli.js --listen 0.0.0.0:7680 --allow-insecure
终端会打印监听地址和配对码。不要把配对码提交到代码仓库或写入公开日志。
模型工具
host_pair:配对一个远程主机。host_list:列出已配对主机和在线状态。host_use:切换当前远程目标。host_bash:在远程主机执行前台或后台命令。host_jobs/host_job_log:查询远程任务和日志。host_list_files/host_read_file:浏览、读取远程文件。host_write_file:按版本校验写入远程文件并创建待审阅变更。host_review_changes:查看或处理远程文件变更。
所有远程工具都是显式远程能力。用户没有明确指定远程操作时,Agent 不应调用它们。
xmanrui/dsh-im
tencent-connect/dsh-qqbot
flymysql/dsh-remote
whiteguo233/dsh-openbiliclaw
omdsh-dev/dsh-lark
hanshanyike/dsh-yolo
THEWOLFWALKER/dsh-notifier