DeepSeek Harness 插件

dsh-api

把 dsh 内部能力(语言、工作区注册表、agent-status 与 approval 事件)以 HTTP 路由的形式暴露在 dsh 已监听的本地回环 socket 上,前缀 /dsh-api,并通过 /dsh-api/events 提供 SSE 事件推送。

跳到安装方式

来源信息

GitHub 仓库
lilming123/dsh-api
最近更新
2026年8月19日
分类
插件开发工具
GitHub stars
1

安装

默认先复制一段 Prompt,让 Agent 读页面和仓库;需要自己装时再切到命令。

复制这段 Prompt,发给 DSH、Codex 或其他 Agent,让它先读页面和仓库。

请先不要安装。阅读这个 DeepSeek Harness 插件,说明它解决什么问题、会访问哪些文件、网络或密钥,以及如何安装和卸载。

插件页面:https://deepseekplugins.org/zh/plugins/lilming123/dsh-api
GitHub:https://github.com/lilming123/dsh-api
插件名:dsh-api
作者:lilming123
安装命令:dsh plugin --profile web add github:lilming123/dsh-api

确认前不要执行安装命令。

检查来源文件

安装前先看这个插件目录里的 README 和其他文件。

文件资源管理器3 个文件
README.md来源说明 · 只读预览

dsh-api — HTTP control-plane plugin for DeepSeek Harness

![ci](https://github.com/lilming123/dsh-api/actions/workflows/ci.yml) ![license: MIT](./LICENSE)

dsh-api is a first-party plugin for [DeepSeek Harness (dsh)][dsh] that exposes dsh's own internal capabilities on the loopback HTTP socket dsh is already listening on. Any process on the same machine — a desktop wrapper, a browser extension, a CLI, an editor integration — can drive dsh through one uniform entry point, instead of reaching into its in-process services directly.

  • Route prefix (default): /dsh-api
  • Binds only where dsh already binds (127.0.0.1)
  • Zero runtime dependencies beyond Node itself

[dsh]: https://www.npmjs.com/package/@deepseek-ai/dsh

Install

# From GitHub (any dsh profile):
dsh plugin --profile web add github:lilming123/dsh-api

# From npm (once published):
dsh plugin --profile web add dsh-api

dsh plugin is a thin pnpm wrapper. Both forms drop the package into $DSH_HOME/profiles/<profile>/node_modules/ and register dsh-api in the profile's bundle list — the next dsh web picks it up automatically, no --patch flag needed.

The desktop app [dsh-desktop][dsh-desktop] detects an already-installed dsh-api and skips its bundled fallback; you only need to install this plugin manually if you drive dsh directly.

[dsh-desktop]: https://github.com/lilming123/dsh-desktop

Endpoints

Two layers, mounted under the same /dsh-api prefix:

1. Native (always available once the plugin is loaded)

| Method | Path | Purpose | | ------ | --------------------------- | ------------------------------------------------------- | | GET | /dsh-api/health | Liveness + basic identity (dsh port, cwd, companion?) | | GET | /dsh-api/language | Read locale.preference | | POST | /dsh-api/language | Write locale.preference ({ "language": "zh"\|"en" }) | | GET | /dsh-api/workspace/list | List every workspace known to workspaceRegistry | | GET | /dsh-api/workspace/current| Current cwd + companion snapshot (if registered) | | POST | /dsh-api/workspace/create | { path, title? } — register a new workspace entry | | GET | /dsh-api/events | Server-Sent Events stream (see below) |

2. Companion-bridged (needs a registered companion process)

A "companion" is any local process that writes $DSH_HOME/dsh-api-companion.json with { port, token, pid, ... } and serves the /companion/* protocol. These routes are 503 when no companion is registered; the native routes above keep working regardless.

MethodPathPurpose
GET/dsh-api/companion/stateCompanion state snapshot
POST/dsh-api/workspace/openSwitch dsh cwd (restarts dsh under the companion)
POST/dsh-api/input/paste{ text } — inject text into the dsh UI
POST/dsh-api/window/showFocus the host window
POST/dsh-api/window/reloadReload the host window
POST/dsh-api/app/quitQuit the host app

/dsh-api/events (Server-Sent Events)

Long-lived HTTP GET producing named SSE frames:

event: ready
data: {"timestamp":1730000000000}

event: agent-idle
data: {"sessionId":"…","title":"…","previousStatus":"running","timestamp":…}

event: approval-needed
data: {"sessionId":"…","kind":"…","summary":"…","timestamp":…}

event: heartbeat
data: {"timestamp":…}
  • agent-idle fires when any agent/status event transitions running → idle.
  • approval-needed is a read-only bypass of dsh's approval/request

waterfall — the plugin observes the request, broadcasts a summary, and passes control back to the real answerer chain unchanged.

  • heartbeat is emitted every 25 seconds so proxies don't idle-kill the

connection.

  • On dsh shutdown, subscribers receive a server-stopping event before the

socket closes.

Security

  • dsh binds 127.0.0.1 only; this plugin reuses that socket.
  • Mutating requests validate Origin: no Origin header (CLI) and

loopback origins are allowed; anything else is 403.

  • Companion-bridged routes forward the discovery-file token in

x-dsh-api-companion-token; the companion is expected to reject mismatches.

Configuration

The plugin exposes two knobs, both settable in the loader entry's config: { ... }:

KeyDefaultPurpose
basePath/dsh-apiHTTP route prefix
companionFile$DSH_HOME/dsh-api-companion.jsonCompanion discovery file to read on demand

Example ($DSH_HOME/profiles/web/cordis.patch.yml):

- id: dsh-api
  config:
    basePath: /control

Development

dsh-api is a plain-ESM plugin — no build step. Clone the repo, drop the file into a dsh profile, and start dsh with --patch:

git clone https://github.com/lilming123/dsh-api.git
cd dsh-api

# One-time: expose to a profile as a live-edit checkout
mkdir -p "$DSH_HOME/profiles/web/dsh-api-dev"
ln -sf "$PWD/index.mjs" "$DSH_HOME/profiles/web/dsh-api-dev/index.mjs"
cat > /tmp/dsh-api-dev.patch.yml <<'YML'
- insert:
    - id: dsh-api-dev
      name: ./dsh-api-dev/index.mjs
YML

dsh web --patch /tmp/dsh-api-dev.patch.yml --port 3181

# In another shell:
curl http://127.0.0.1:3181/dsh-api/health
curl -N http://127.0.0.1:3181/dsh-api/events

More runnable snippets live under [examples/](./examples): curl.sh walks every endpoint, and events.mjs is a dependency-free Node SSE subscriber.

Troubleshooting

**/dsh-api/* returns 404.** The plugin isn't loaded. Check that ~/.dsh/profiles/web/package.json lists dsh-api under dsh.profile.bundles, and that ~/.dsh/profiles/web/node_modules/dsh-api exists. Re-run dsh plugin --profile web add dsh-api if either is missing.

/dsh-api/workspace/create returns 503. workspaceRegistry isn't in the current dsh context — either your dsh predates the service or a profile patch has stripped it. Upgrade dsh (npm i -g @deepseek-ai/dsh) and try again.

**/dsh-api/*/companion routes return 503.** No companion is registered. This is expected when you run dsh directly rather than through a wrapper like [dsh-desktop][dsh-desktop]; the native routes (/health, /language, /workspace/*, /events`) work regardless.

SSE stream disconnects every ~60 seconds. A reverse proxy is idle-killing the stream despite our 25-second heartbeat frames. Bump its idle timeout, or drop the proxy — dsh-api binds to 127.0.0.1 and doesn't need one.

[dsh-desktop]: https://github.com/lilming123/dsh-desktop

License

MIT © 2026 lilming123