Building the DeepSeek Harness plugin ecosystem: 34 open-source plugins (Apache-2.0) across security, workflows, research, and developer experience. Every project ships five-language READMEs, CI, npm publishing, and Gitee mirrors — 57k+ monthly npm downloads across the family.
DeepSeek Harness turned "everything is a plugin" into an ecosystem. I build the plugins I wish existed — engineering-discipline guardrails, runtime panels, cross-session memory, and verifiable research engines — and publish them the way production software deserves.
- Registry sprint: 27 entries live on awesome-dsh-plugin · re-submission PRs open for dsh-fast / dsh-session-sync / dsh-talk (one-plugin per maintainer preference; dsh-budget / dsh-click / dsh-draw up next) · ecosystem PRs open: AdamPlatin123 radar #440 · Zhiyuan-Fan #59 · Herdeny #3 · official DeepSeek Harness guide PR on awesome-deepseek-agent.
- Brand protection: official-repository declaration merged into 11 repos (same-name repository defense, including the 68-star name collision on dsh-github).
- Adoption (2026-08-31 snapshot): 574★ across 35 repos (topic top-100 threshold: 456) · 57.4k npm downloads/month (4.9k/week) — top by downloads: dsh-mcp-panel 3.6k · dsh-permission-rules 2.9k · dsh-memento 2.7k · dsh-checkpoint-rewind 2.6k · dsh-auto-review 2.5k · dsh-lsp-actions 2.3k. Per-package live badges on each repo.
- Full audit (2026-08-27): 33/33 install · load · keyless-boot · uninstall — all green.
- Supply chain: OpenSSF Scorecard CI on all 35 repos · npm provenance on every publish (Trusted Publishing verified with a live release) ·
fundinglinks and the 1024-store install channel on every README. - Certification: dsh-plugin-certification spec v1 published — five machine-checkable dimensions, A–D grades, independent registry + badges · proposal posted on the official security-audit discussion #454.
- Community: official Showcase post + 31 answered questions across the official repo and the ecosystem · 36 entries auto-listed on deepseek1024.com.
- New releases: dsh-fast 0.2.1 · dsh-claude-move 0.3.1 · dsh-data-quality 0.3.1 · dsh-doublecheck 0.9.1 · dsh-click 0.3.0 · dsh-fund-research 0.4.0 · dsh-local-ai 0.2.1 · dsh-lsp-actions 0.4.1 · dsh-translate 0.2.1 · dsh-permission-rules 0.6.3 · dsh-observe 0.2.1 · dsh-plugin-guide 0.3.1 · dsh-mcp-panel 0.6.2 · dsh-output-styles 0.6.2. mcp-panel 0.6.2 is live on npm via the OIDC Trusted Publishing path.
| Plugin | What it gives you | Install |
|---|---|---|
| dsh-auto-review | Second-model auto-review on the approval chain, fail-closed by default (119★) | dsh plugin --profile web add dsh-auto-review |
| dsh-memento | Approval-gated cross-session memory (ctx.memory + SQLite) (74★) |
dsh plugin --profile web add dsh-memento |
| dsh-permission-rules | Claude Code-style declarative allow/deny/ask rules with session-log audit (69★) | dsh plugin --profile web add dsh-permission-rules |
| dsh-mcp-panel | MCP management console: /mcp + Settings tab + trial calls (52★) |
dsh plugin --profile web add dsh-mcp-panel |
| dsh-checkpoint-rewind | Claude Code /rewind equivalent: git-first snapshots, session forks, one-shot restore |
dsh plugin --profile web add dsh-checkpoint-rewind |
One-command starter pack: dsh-kit — installs the full family.
| Plugin | What it gives you | npm |
|---|---|---|
| dsh-research-report | Verifiable research reports: content-addressed evidence ledger, manifest seal hash, byte-level citation checks, drift detection, disproof ledger | npm |
| dsh-fund-research | Chinese mutual-fund research with sealed, traceable snapshots — every number traces to a hashed source | npm |
| dsh-industry-research | Industry/company research: chain-map SVG with bottleneck detection, timeline, company cards, adversarial review | npm |
| dsh-data-quality | Deterministic data profiling/cleaning/verification: DAMA scorecard, content-hash dedupe, metric expectations | npm |
| Plugin | One-liner | npm |
|---|---|---|
| dsh-defend | Injection/jailbreak/secret detection + destructive-delete gate | npm |
| dsh-permission-rules | Declarative allow/deny/ask permission rules | npm |
| dsh-mask | PII masking/sanitization | npm |
| dsh-skill-pack-security | Security-audit skill pack + supply-chain gate | npm |
| Plugin | One-liner | npm |
|---|---|---|
| dsh-background-agents | Durable background child agents with a Web UI sidebar | npm |
| dsh-checkpoint-rewind | Snapshots, forks, one-shot restore | npm |
| dsh-github | GitHub PR/issue integration + Action, writes approval-gated | npm |
| dsh-claude-move | Migrate Claude Code/Codex/OpenCode/Hermes into DSH | npm |
| dsh-click | Desktop control tools (Windows/macOS) | npm |
| dsh-session-sync | Git-backed session synchronization | npm |
| dsh-test-drive | Install→smoke→uninstall test driver for plugins | npm |
| Plugin | One-liner | npm |
|---|---|---|
| dsh-composer-history | Terminal-style input history for the web composer | npm |
| dsh-output-styles | Runtime-switchable model output styles | npm |
| dsh-session-pin | Pin sessions in the Web sidebar | npm |
| dsh-memento | Approval-gated cross-session memory protocol | npm |
| dsh-personal-directive | Personal directive injector with top-bar toggle (framework edition; fork of liucaimao2026/dsh-personal-directive, upstream: Minglink/dsh-infinite-gen-1) | — |
| Plugin | One-liner | npm |
|---|---|---|
| dsh-auto-review | Second-model auto-review on the approval chain | npm |
| dsh-doublecheck | Engineering-discipline guard: grill, gates, adversary review | npm |
| dsh-score | Plugin quality scoring across git/gh/npm | npm |
| Plugin | One-liner | npm |
|---|---|---|
| dsh-budget | Token metering and budget governance | npm |
| dsh-observe | OTel/Langfuse telemetry export | npm |
| dsh-fast | Performance diagnostics | npm |
| Plugin | One-liner | npm |
|---|---|---|
| dsh-draw | Image-generation routing | npm |
| dsh-translate | Translation + JSON repair | npm |
| dsh-talk | Speech recognition and voice I/O | npm |
| dsh-library | Local knowledge-base RAG | npm |
| dsh-local-ai | Ollama LLM provider and routing | npm |
| Plugin | One-liner | npm |
|---|---|---|
| dsh-lsp-actions | LSP diagnostics/formatting/completion/actions | npm |
| dsh-mcp-panel | MCP management console | npm |
Companion knowledge base: dsh-plugin-guide — plugin-development knowledge base + CLI toolchain | npm
| Plugin | One-liner | npm |
|---|---|---|
| dsh-data-quality | Data profiling/cleaning/verification | npm |
| dsh-fund-research | Mutual-fund research, sealed traceable snapshots | npm |
| dsh-industry-research | Industry/company research domain pack | npm |
| dsh-research-report | Verifiable research-report engine | npm |
- GitHub (this profile) — source, CI, releases
- Gitee — full mirror of every repo's branches and tags
- npm — every plugin published with CI provenance
Listed on awesome-dsh-plugin, Awesome DeepSeek Harness, the AdamPlatin123 radar, and dsh-market (via the awesome-dsh-plugin registry). Auto-indexed on deepseek1024.com (36 entries). Certification: dsh-plugin-certification.
我在 DeepSeek Harness 上把 Claude Code / Codex 生态里最实用的能力做成了开源插件:检查点回退、声明式权限、输出风格、跨会话记忆、MCP 面板,以及可验证研究报告 / 基金研究 / 行业研究 / 数据质量「研究四件套」——共 34 个插件(Apache-2.0),全部带五语文档、CI、npm 发布与 Gitee 镜像。一键全家桶:dsh-kit。
2026-08-31 生态轮:主榜 27 条在线收录,重提 PR 覆盖 fast / session-sync / talk(budget/click/draw 下一轮)、生态榜 PR(radar #440 / Zhiyuan-Fan #59 / Herdeny #3)与官方指南 PR 在审;11 仓品牌声明合并;供应链:35 仓 OpenSSF Scorecard + npm provenance + Trusted Publishing(mcp-panel 0.6.2 已 OIDC 直发);认证 spec 公开并提案 #454;官方 Showcase 帖 + 31 条社区问答;deepseek1024 自动收录 36 条;家族合计 574+ 星、npm 月下载 5.7 万(周 4.9k,Top:mcp-panel/permission-rules/memento)。




