DeepSeek Harness plugin

deepseek-herness-login

Login gate + account settings for the DeepSeek Harness web UI. Host persists account/password (scrypt-hashed) to disk; browser adds a login overlay and an account-settings section.

Jump to install

Source facts

Repository
javaxiaov/deepseek-herness-login
Latest update
Aug 15, 2026
Category
Security & Permissions
GitHub stars
1
Format
plugin
Catalog evidence
Upstream dsh.bundle evidence
Evidence path
package.json#dsh.bundle
Checked against
0.1.0-rc.8
Upstream check date
2026-08-20

This evidence comes from the upstream catalog. This site has not installed, run, or security-reviewed the plugin.

Install

Start with a prompt that asks an agent to review the GitHub repository and source. Switch to the command if you want to install it yourself.

Copy this prompt into DSH, Codex, or another agent and ask it to review the GitHub repository and source first.

Do not install or run any commands yet. Read this plugin's GitHub repository, README, and relevant source code. Then answer the questions below clearly and directly so I can decide whether it fits my needs:

1. What is this plugin, and what problem does it solve?
2. Who is it for, and what are its typical use cases?
3. How is it used after installation? Include one minimal example.
4. What known limitations or privacy, security, compatibility, or maintenance risks does it have?
5. Give a clear recommendation: recommend, conditionally recommend, or do not recommend, with reasons.

Distinguish statements documented by the repository, inferences from source code, and unknowns. If evidence is insufficient, say so explicitly. Do not guess or simply repeat the README.

GitHub: https://github.com/javaxiaov/deepseek-herness-login
Plugin: deepseek-herness-login
Author: javaxiaov

Check the source files

Read the README and other files from this plugin directory before installing.

File explorer3 files
README.mdSource · read only

DeepSeek Harness 登录门禁插件 (auth-gate)

[简体中文](#简体中文) · [English](#english)

---

简体中文

一个为 DeepSeek Harness Web 界面提供登录门禁 + 账号管理的插件 bundle。

预览

![登录页面](assets/login.png)

功能

  • 登录门禁:未登录时全屏登录页覆盖整个应用,无法操作任何功能。
  • 账号设置:系统设置里新增「账号设置」页面,可修改账号名和密码。
  • 退出登录:设置页头部和账号设置页均有红色「退出登录」按钮,点击后立即切回登录页(只退出账号,不影响应用)。
  • 多语言:跟随 DeepSeek Harness 界面语言自动切换(设置 → 外观 → 语言),支持中文与 English。
  • 安全存储:密码以加盐 scrypt 哈希持久化到本地文件,绝不保存明文。
  • 持久化:账号、密码修改重启应用后依然保留(默认账号 admin / 密码 admin123)。

安装

本插件作为 DeepSeek Harness 用户 profile 的 bundle 安装:

1. 将 dsh-login-gate 目录(本仓库内容)放入 profile 的 bundles 目录,例如: ~/.dsh/profiles/web/bundles/auth-gate/ 2. 在 profile 的 package.json 中添加 bundle 引用:

``json { "dsh": { "profile": { "bundles": [ "@dsh-login-gate/auth-gate" ] } }, "dependencies": { "@dsh-login-gate/auth-gate": "link:./bundles/auth-gate" } } ``

3. 在 profile 目录执行 pnpm install 建立链接。 4. 重启 DeepSeek Harness 应用。

结构

dsh/
  index.js           Host 端:HTTP 路由(登录/状态/退出/改密)
  account-store.js   Host 端:scrypt 哈希 + 本地持久化存储
  client.js          浏览器端:登录遮罩 + 账号设置页(lazy-CJS bundle)
cordis.patch.yml     插件装载配置
package.json         包声明(dsh.bundle / dsh.client)

数据文件

账号数据保存在 <profile 目录>/login-gate-accounts.json

{
  "username": "admin",
  "password": "scrypt$16384$8$1$<salt>$<hash>",
  "sessionToken": null
}

接口

方法路径说明
GET/login-gate/status?token=...校验会话
POST/login-gate/login登录,返回 token
POST/login-gate/logout退出登录,清空会话
POST/login-gate/update修改账号名/密码(需当前密码)

许可证

[MIT](LICENSE)

---

English

A plugin bundle that adds a login gate and account management to the DeepSeek Harness web UI.

Preview

![Login page](assets/en-login.jpg)

Features

  • Login gate: a full-screen login page covers the whole app until you sign in; nothing is operable without a session.
  • Account settings: a new "Account Settings" page in the system settings for changing the username and password.
  • Log out: red "Log out" buttons in the settings header and on the account settings page; clicking returns to the login page immediately (logs the account out only, never the app).
  • Multi-language: follows the DeepSeek Harness UI language automatically (Settings → Appearance → Language), supporting Chinese and English.
  • Secure storage: the password is persisted locally as a salted scrypt hash — plaintext is never stored.
  • Persistent: account and password changes survive app restarts (default account admin / password admin123).

Installation

Install the plugin as a bundle in your DeepSeek Harness user profile:

1. Put the dsh-login-gate directory (this repository's contents) into the profile's bundles directory, e.g.: ~/.dsh/profiles/web/bundles/auth-gate/ 2. Add the bundle reference to the profile's package.json:

``json { "dsh": { "profile": { "bundles": [ "@dsh-login-gate/auth-gate" ] } }, "dependencies": { "@dsh-login-gate/auth-gate": "link:./bundles/auth-gate" } } ``

3. Run pnpm install in the profile directory to create the link. 4. Restart the DeepSeek Harness app.

Structure

dsh/
  index.js           Host side: HTTP routes (login/status/logout/update)
  account-store.js   Host side: scrypt hashing + local persistent storage
  client.js          Browser side: login gate + account settings page (lazy-CJS bundle)
cordis.patch.yml     Plugin mounting config
package.json         Package declaration (dsh.bundle / dsh.client)

Data file

Account data is stored in <profile directory>/login-gate-accounts.json:

{
  "username": "admin",
  "password": "scrypt$16384$8$1$<salt>$<hash>",
  "sessionToken": null
}

API

MethodPathDescription
GET/login-gate/status?token=...Validate a session
POST/login-gate/loginSign in, returns a token
POST/login-gate/logoutLog out, clears the session
POST/login-gate/updateChange username/password (requires the current password)

License

[MIT](LICENSE)