Yan-Zero/dsh-remote-ssh

Plugin插件 Native原生 ⭐ 11 Apache-2.0 Notifications & Remote通知与远程

在DeepSeek Harness中使用SSH主机作为透明工作区。

Project Overview项目介绍

This is a native plugin built exclusively for DeepSeek Harness that enables users to treat remote SSH hosts as transparent workspaces directly inside Harness. It supports two operational modes: one keeps the AI runtime local and routes all tool calls through the Agent Host Protocol (AHP), while the other creates a host tunnel that runs a full persistent Harness instance on the remote SSH host. It automatically discovers hosts from existing user and system OpenSSH configurations including recursive Include files, and can manage multiple hosts and multiple workspaces per host. Install it via the DSH CLI by running dsh plugin add dsh-remote-ssh to your Web or TUI profile.

The plugin provides the same editable directory browser for both local and remote folders, and routes all filesystem access, search, subprocess calls, background jobs, and terminals based on the active workspace. It works with the DSH TUI to let users open remote workspaces via slash commands, direct connection strings, or pre-configured URIs. When you remove a remote mapping, the plugin preserves all workspace and session history, so old sessions remain readable but will reject any new tool calls to avoid accidental local fallback. Currently, only POSIX/Linux SSH hosts are supported; Windows SSH hosts are not yet implemented, matching requirements for DeepSeek Harness 0.1.0-rc.6.

The plugin is released under the open-source Apache 2.0 license, and it does not redistribute the VS Code Server archives, relying instead on the user’s existing official VS Code CLI installation to manage the Agent Host. You must complete any required password, MFA prompts, and first-use host-key confirmation steps via OpenSSH before you can use the host in DSH, because these steps are not bridged into the DSH Web UI. Local development can be done by checking out the source repository, installing dependencies with pnpm, and linking the local plugin to your DSH profile. This plugin is currently compatible with DeepSeek Harness version 0.1.0-rc.6.

这是一个专为 DeepSeek Harness 开发的原生插件,允许用户将 SSH 主机作为透明工作区来使用,支持两种兼容模式:一种是 AI 运行时保留在本地,工具通过 AHP 透明路由;另一种是主机隧道,让完整的持久化 Harness 运行在远程 SSH 主机上。插件会自动从用户和系统的 OpenSSH 配置中发现可用主机,可管理多台主机及每个主机下的多个工作区,会根据当前激活的工作区路由文件访问、搜索、子进程和任务。

插件提供统一的本地和远程目录浏览器,支持直接在 DSH TUI 中通过命令打开指定远程工作区,也支持通过 URI 直接启动目标工作区。移除远程映射后,仍会保留工作区和会话的历史记录,旧会话仍可读但不会接受新的工具调用,避免意外回落到本地执行。目前仅支持 POSIX/Linux 远程主机,暂不支持 Windows SSH 主机。

插件采用 Apache-2.0 许可证,本身不重新分发 VS Code Server 归档,依赖用户已安装的官方 VS Code CLI 来管理 Agent Host。安装可通过 DSH CLI 命令将已发布的包安装到 Web 或 TUI 配置文件,也支持从源码 checkout 进行本地开发。使用前需要先通过 OpenSSH 完成密码、MFA 和主机密钥验证步骤。

Pre-install check安装前体检Compatibility · Security兼容性 · 安全性 1 note1 项提示
  • 11 stars - an early-stage project星标 11,属于早期项目
DSH walks through these 9 checksDSH 会逐条核对这 9 项

Compatibility兼容性

  • DSH, Node, OS and profile requirementsDSH 版本 / Node 版本 / 操作系统 / profile 是否满足要求
  • External dependencies and runtimes (Electron / Python / Docker, ...)外部依赖与运行时(Electron / Python / Docker 等)是否齐备
  • Conflicts with installed plugins: command names, skill / tool names, ports, duplicate MCP registration与已装插件是否冲突:命令名、skill / tool 重名、端口占用、重复 MCP 注册

Security安全性

  • Repo matches the facts registered here; archived or abandoned?仓库是否与页面登记一致,是否归档或长期停更
  • Safety of preinstall / install / postinstall and install.sh / setup.ps1preinstall / install / postinstall 与 install.sh、setup.ps1 是否安全
  • curl|bash, download-then-execute, obfuscation, unrelated domains → stop immediatelycurl|bash、下载即执行、混淆代码、无关域名 → 立刻停止
  • Typosquatting or unmaintained packages among the new dependencies新增依赖里有没有 typosquatting 或无人维护的包
  • Requested permissions vs. what the feature actually needs申请了哪些权限、是否超出功能所需(filesystem / network / shell / clipboard)
  • Any sudo / admin requirement, plus uninstall and rollback是否要求 sudo / 管理员权限,以及卸载与回滚方式

Anything uncertain must be marked unknown with a note on how to confirm it. This site's signal screen is a static snapshot, not a security audit.拿不准的必须标「未知」并说明要我怎么确认。本站的信号筛查是静态快照,不能替代安全审计。

Or use CLI install (for developers)或使用命令行安装(适合开发者)

CLI Install命令行安装

dsh plugin --profile web add dsh-remote-ssh

把 Yan-Zero/dsh-remote-ssh 加入你的 DSH 配置(web profile)即可启用。

READMEREADME

dsh Remote SSH

English | 中文

Use SSH hosts as transparent workspaces in DeepSeek Harness.

Remote SSH has two compatible modes. A remote workspace keeps the AI runtime local and transparently routes its tools through AHP. A Host tunnel attaches any protocol client to a complete persistent Harness running on the SSH host through dsh-host. Open Backend in Web is the browser entry for that same tunnel.

Choose LOCAL > project and ordinary file, search, shell, and background-task tools run locally. Choose <Server> > project and those same tools run on that SSH host. There is no second set of remote_* tools, and a remote failure never falls back to the local machine.

Features

  • discovers concrete hosts from the user and system OpenSSH configuration, including recursive Include files;
  • manages multiple SSH hosts and multiple workspaces per host from Settings;
  • provides the same editable directory browser for local and remote folders;
  • labels workspaces and terminal calls as LOCAL > ... or <Server> > ...;
  • routes filesystem access, search, subprocesses, background jobs, and terminals by the active workspace;
  • exposes binary workspace writes for artifact plugins such as dsh-codex image generation; raw bytes are base64-encoded only inside AHP resourceWrite transport;
  • keeps remote search results in POSIX path space and stores oversized tool results in a private runtime directory on the corresponding SSH host for follow-up read/grep access;
  • exposes bash for POSIX remote workspaces and pwsh for local Windows workspaces;
  • opens remote file links in an installed VS Code-compatible editor through its Remote SSH extension, with a local downloaded snapshot as fallback;
  • reuses one persistent SSH/AHP host connection while each Bash call opens its own terminal channel, like a new VS Code terminal tab;
  • shares one host-scoped SSH/AHP connection across workspaces on the same server;
  • opens a UI-neutral remote Backend over one persistent SSH connection carrying startup, authentication, HTTP, and WebSocket forwarding;
  • exports the forwarded Host endpoint and a typed Node API client independently of the optional Web reverse proxy;
  • preserves readable Workspace and Session history after a remote mapping is removed, while rejecting new tool calls from the old session.

Showing the opening section of the README — the full document lives in the repository以上为 README 开头摘要,完整文档在仓库内 · View the full README on GitHub →在 GitHub 查看完整 README →

← 上一个 Prev context-vista 下一个 Next dsh-web-remote →