zbsph/dsh-ppt-studio
Project Overview项目介绍
dsh-ppt-studio is a native presentation-generation plugin built for the DeepSeek Harness runtime, distributed as the npm package dsh-ppt-studio and versioned at 1.1.5 with an installation footprint of roughly 890 kB after the 1.0.4 trim. It accepts natural-language requirements from the user, has the LLM first lock in an outline and per-slide layout, then generates each slide, runs an automated validation pass on every page, and finally delivers a .pptx file that opens in PowerPoint and remains fully editable downstream. The package declares a dsh.bundle.patch through the repository's cordis.patch.yml, so a single install command wires it into the host; the archive channel exposes the identical bytes as .tgz assets on the Releases page, with sha256 verification available to confirm the two channels match byte-for-byte.
The intended workflow starts with the user creating a new DSH session and selecting the "PPT Studio" preset, which is the only scope in which the plugin's capabilities are visible by default. That preset provisions a complete workbench: twenty-two ppt_* tools, the /ppt slash command, four bundled handbooks, and an injected workflow prompt block. Isolation is enforced by appending an absolute file:// self-locator row inside the preset's bundle composition, so the tool, skill, and prompt registrations only resolve inside that preset's registry layer; users who want the traditional profile-wide behavior can flip scope: profile in the cordis.patch.yml. A ppt_state call exposes presetDelivery.isolation, returning preset, profile-fallback, or profile to indicate the actual delivery mode.
Dependencies and operational limits are clearly bounded: Office, Edge/Chrome, and python-pptx are documented as optional enhancements, so the plugin still works without them but will explicitly degrade render, screenshot, and fallback engine capabilities and surface that fact in the delivery notes. The host must be DSH >= 0.1.7-rc.1; the desktop client uses an independent desktop profile managed exclusively by the Electron application, blocking CLI access to it and requiring the in-app plugin manager for installs and tarball URL fetches there due to a pnpm 11.7.0 + hoisted combination that triggers ERR_PNPM_MISSING_TARBALL_INTEGRITY. Freshly released versions may silently resolve back to a previous mature build during pnpm's approximately twelve-hour minimumReleaseAge window, so users who need the absolute latest must install via the .tgz path or wait out the window. The project is MIT-licensed, ships pre-built lib/ checked into git so repository-URL installs have a valid entry, and pairs each release with a Trusted Publishing (OIDC) push to npm alongside the GitHub Release asset to guarantee parity.
dsh-ppt-studio 是面向 DeepSeek Harness 的原生 PPT 制作插件,1.1.5 版安装包约 890 kB,通过 npm 的 dsh-ppt-studio 包名在 web 端与桌面端一键装载。其核心能力是接受自然语言需求,先用 LLM 定大纲与版式,再逐页生成内容并自动校验,最后输出兼容 PowerPoint 可继续编辑的 .pptx 文件。插件声明 dsh.bundle.patch(仓库根的 cordis.patch.yml)实现"装完即挂",无需手工建链或配置账号,归档通道则通过 Releases 页面获取 .tgz,两条通道字节相同并支持 sha256 核对。
典型工作流:用户在 DSH 中新建会话、选择"PPT 工作室"预设,该预设同时注入 22 个 ppt_* 工具、/ppt 命令、4 本手册与工作流提示段,构成完整工作台;隔离机制通过 cordis.patch.yml 在预设作用域里追加绝对 file:// 自定位行实现,默认只有该预设可见相关能力,其他预设不受影响。适用人群为需要在 DeepSeek Harness 内直接产出可二次编辑幻灯片的用户,宿主要求 dsh >= 0.1.7-rc.1。
依赖与限制方面,Office、Edge/Chrome 与 python-pptx 均为可选增强:缺失时渲染、截图、兜底引擎自动降级,交付说明会标注;新版本可能受 pnpm 供应链 minimumReleaseAge 约 12 小时窗口影响而静默装回旧版,可用 .tgz 直装路径绕开。桌面端的 desktop profile 由 Electron 应用独占管理,命令行禁止操作,归档通道需在插件管理填本地路径。插件以 MIT 协议发布,迁移老版本时需先卸载 @dsh-external/dsh-ppt-studio。
请帮我安装这个 DSH 插件。安装前先完成【兼容性检查 + 安全性检查】,检查通过再动手。
插件:dsh-ppt-studio(zbsph/dsh-ppt-studio)
仓库:https://github.com/zbsph/dsh-ppt-studio
本站详情页:https://www.yhbd.top/plugins/zbsph-dsh-ppt-studio/
本站登记:类型 plugin · 归类 原生 DSH 插件 · 许可证 MIT · ⭐ 4 · 最近提交 2026-09-30 · 主语言 JavaScript
按下面顺序执行,每步先把结论告诉我,再进入下一步:
【1 兼容性检查】
① 我这边:DSH 版本、Node 版本、操作系统、当前 profile(web / desktop)。
② 读它的 README、package.json、插件 manifest,列出它要求的 DSH 版本 / Node 版本 / 操作系统 / 外部依赖 / 需要另外先装的运行时。
③ 逐条比对,结论只写「满足 / 不满足 / 未知」三种;不满足的给出可行替代方案。
④ 检查是否和我已装的插件冲突:命令名重复、skill / tool 重名、端口占用、重复注册的 MCP server。
【2 安全性检查】
① 仓库可信度:和上面「本站登记」是否一致;star / fork 数、创建时间、最近提交,是否归档或长期停更。
② 安装脚本:逐行看 package.json 的 preinstall / install / postinstall,以及 install.sh、setup.ps1 之类脚本。出现 curl|bash、下载后直接执行、混淆代码、访问与插件功能无关的域名,立刻停下来告诉我,不要继续装。
③ 依赖:列出新增依赖,标出无人维护、或与知名包拼写近似的可疑包(typosquatting)。
④ 权限与副作用:它会读写哪些目录、访问哪些域名、需要哪些 DSH 权限(filesystem / network / shell / clipboard 等),以及怎么卸载和回滚。
⑤ 如果它要求 sudo / 管理员权限,或权限明显超出功能所需,先停下来问我。
【3 安装】
上面两步没有「不满足」和「高危项」时才执行;用官方推荐方式安装,不要自行提权。
【4 汇报】
用表格输出:检查项 / 结论 / 依据 / 是否需要我决策。拿不准的一律写「未知」并说明要我怎么确认——不要猜,也不要替我决定。
Send this message to DSH in your current session: it verifies compatibility and security first (answering met / not met / unknown item by item) and only installs once everything checks out — it will stop and ask you if it finds a high-risk item. The box scrolls; the copy is the full prompt. CLI install commands may not be accurate across systems, so DSH is the safer route.把上面这条消息直接发给当前会话里的 DSH:它会先核对兼容性与安全性(逐条给「满足 / 不满足 / 未知」),确认没问题再安装,有高危项会停下来问你。框内可滚动,复制到的是完整提示词;安装命令不一定准确,发给 DSH 更稳。
- Only 4 stars - very few users, little community feedback星标只有 4,几乎没人在用,遇到问题缺少社区反馈
DSH walks through these 9 checksDSH 会逐条核对这 9 项
Compatibility兼容性
- DSH, Node, OS and profile requirementsDSH 版本 / Node 版本 / 操作系统 / profile 是否满足要求
- External dependencies and runtimes (Electron / Python / Docker, ...)外部依赖与运行时(Electron / Python / Docker 等)是否齐备
- Conflicts with installed plugins: command names, skill / tool names, ports, duplicate MCP registration与已装插件是否冲突:命令名、skill / tool 重名、端口占用、重复 MCP 注册
Security安全性
- Repo matches the facts registered here; archived or abandoned?仓库是否与页面登记一致,是否归档或长期停更
- Safety of preinstall / install / postinstall and install.sh / setup.ps1preinstall / install / postinstall 与 install.sh、setup.ps1 是否安全
- curl|bash, download-then-execute, obfuscation, unrelated domains → stop immediatelycurl|bash、下载即执行、混淆代码、无关域名 → 立刻停止
- Typosquatting or unmaintained packages among the new dependencies新增依赖里有没有 typosquatting 或无人维护的包
- Requested permissions vs. what the feature actually needs申请了哪些权限、是否超出功能所需(filesystem / network / shell / clipboard)
- Any sudo / admin requirement, plus uninstall and rollback是否要求 sudo / 管理员权限,以及卸载与回滚方式
Anything uncertain must be marked unknown with a note on how to confirm it. This site's signal screen is a static snapshot, not a security audit.拿不准的必须标「未知」并说明要我怎么确认。本站的信号筛查是静态快照,不能替代安全审计。
Or use CLI install (for developers)或使用命令行安装(适合开发者)
CLI Install命令行安装
dsh plugin --profile web add dsh-ppt-studio
把 zbsph/dsh-ppt-studio 加入你的 DSH 配置(web profile)即可启用。
READMEREADME
PPT 工作室(dsh-ppt-studio)
在 DeepSeek Harness 里说需求,它把 PPT 做出来:先定大纲和版式,再逐页制作,每页过一遍自动检查,最后交付一个能用 PowerPoint 打开、继续改的 .pptx。
当前版本 1.1.5,安装包约 890 kB(1.0.3 及更早的版本是 35 MB,因为随包带着 4 套没人用过的导入模板,1.0.4 把它们删了)。
隔离是默认的:装好之后,这套能力只出现在「PPT 工作室」预设里,其他预设与"没装插件"完全一样(§1.6)。
新建会话时选「PPT 工作室」即可;预设提供的是"完整工作台"——人格 + 22 个工具 + /ppt 命令 + 4 本手册 + 工作流提示段。
1. 装上
1.1 需要什么
一台能跑 dsh web 的机器,或者 DeepSeek Harness 桌面端(桌面端见 §1.7,装法不同)。宿主版本要求 DSH >= 0.1.7-rc.1(本包 1.0.7 起;0.1.7-rc.1 命令行版验过,0.1.7-rc.2 命令行版与桌面端都验过)。Office、Edge/Chrome、python-pptx 都是可选增强:没有它们插件照常工作,只是真渲染、截图、兜底引擎这些能力自动降级,交付说明里会写明。
1.2 一条命令(默认走 npm)
npm 是本插件的默认安装途径(web 端与桌面端都支持):包名就是 dsh-ppt-studio,不需要账号、不需要配 registry,升级只需再跑一次同名命令。
web 端:
dsh plugin --profile web add dsh-ppt-studio
# 装完重启 dsh web
桌面端:在「插件管理」里填同一个包名 dsh-ppt-studio(详见 §1.7)。
本插件声明了 dsh.bundle.patch(仓库根的 cordis.patch.yml),所以装完就挂上了:不用手工建链接,不用跑安装器,装的人也不需要任何账号(公开包)。
想走归档通道(离线、或不想依赖 npm)也一样可以:从 Releases 页面 复制最新那条 .tgz 资产的完整链接即可。两条通道是同一份字节(可用 sha256 逐字节核对):
dsh plugin --profile web add <粘贴那条资产 URL>
资产名形如 dsh-ppt-studio-<版本>-<YYYYMMDD-HHmm>-<构建戳前 8 位>.tgz:版本、构建时间、构建内容的前 8 位哈希。页面会保留历次构建,所以按上传时间取最新那条。懒得翻页面就用这行拿名字(把 <版本> 换成当前 tag,例如 v1.1.1):
gh release view v1.1.0 --json assets --jq '.assets | sort_by(.createdAt) | last | .name'
也可以直接装仓库地址,产物和 tgz 一样(lib/ 已入库):
dsh plugin --profile web add https://github.com/zbsph/dsh-ppt-studio
为什么资产名不固定:同一个 URL 用
--clobber覆盖内容后,pnpm 会复用本地旧副本,dsh plugin add <同一 URL>不会重新下载(2026-09-15 实测,--force也绕不过)。把构建哈希写进文件名,URL 必变,升级才真的换字节。
1.3 装完怎么确认
dsh --profile web --dump-config # 组合树里应出现 ppt-studio 插件行
看到这行就说明挂上了,重启 dsh web 后生效。
1.4 升级 / 卸载
# 升级:再跑一次同名命令即可(走 npm),不需要先卸载
dsh plugin --profile web add dsh-ppt-studio
# 桌面端:在「插件管理」里对 dsh-ppt-studio 重新安装 / 升级,然后重启应用
# 卸载
dsh plugin --profile web remove dsh-ppt-studio
刚发布的版本可能装不上(会静默装回旧版)。宿主给 pnpm 带了供应链策略(
minimumReleaseAge,实测窗口约 12 小时): 新版本在窗口期内不是合法候选,于是按名字安装会静默解析回旧的成熟版本(命令成功、无警告、界面却仍显示旧版本号)。 要第一时间用上刚发布的版本,两条路:
- 用
.tgz装(tarball 规格不经过 registry 版本解析):把dsh-ppt-studio-<版本>-….tgz放到一个稳定目录, 在插件管理里填它的绝对路径(桌面端不要用 https 资产 URL,会撞ERR_PNPM_MISSING_TARBALL_INTEGRITY,见 §1.7);- 等窗口过去(约 12 小时)再按名字升级。
另外别把 tgz 装在会被清理的临时目录里(例如发版脚本的
_artifacts/):那条file:依赖一旦悬空,下次装依赖会直接失败。
Showing the opening section of the README — the full document lives in the repository以上为 README 开头摘要,完整文档在仓库内 · View the full README on GitHub →在 GitHub 查看完整 README →
yogsoth-ai/de-anthropocentric-research-engine
ZSeven-W/dsh-openpencil
HanaAyane/dsh-reasoning-effort
HuanLinOTO/dsh-plugin-better-sidebar-plugin-office
joeseesun/qiaomu-rss-dsh