Introduction

DeepSeek Harness (DSH) aims to achieve unbounded extensibility through a plugin-based architecture. In distributed agent development scenarios, cross-host connections, trust establishment, and session management are common pain points. DSH Weave focuses on solving this problem. Through the Iroh protocol layer, it provides encrypted, trusted connection channels for multiple DSH instances and centrally manages host identity and reachability.

Plugin Introduction

DSH Weave is a plugin for connecting DeepSeek Harness hosts with explicit trust. It is built on Iroh to implement QUIC-encrypted transport, and is responsible for host trust, endpoint refresh, reachability detection, and forwarding of authentication requests. The core responsibilities of the plugin include persistent storage of identities and management of trusted peers.

Core Features

This plugin primarily provides the following capabilities:
* Persistent identity: Host identity remains consistent after restart, without repeated initialization.
* Explicit pairing: Establish secure connections by exchanging tickets and explicitly trusting the counterpart locally.
* Encrypted transport: Leverage Iroh to provide QUIC connections, direct paths, and relay fallback, ensuring secure transport.
* Remote directory: Discover and access workspaces and sessions on paired hosts.
* Visible state: Host reachability is separated from the idle/running/offline state of DSH Agents.
* Native settings: Provide group-managed identity and pairing controls, including copy feedback and removal confirmation.

Installation and Enablement

Run the following command on the target host to install:

dsh plugin --profile web add dsh-weave@latest

After installation, run dsh web to launch the Web interface.

Typical Usage

  1. Run the installation command above on each host participating in the connection.
  2. Start DSH Web on each host: dsh web.
  3. In the Web interface of both hosts, open Settings -> Weave respectively.
  4. Exchange the tickets of the two hosts through a channel trusted by both parties (such as secure chat or terminal).
  5. In the Weave settings of each host, add and explicitly trust the ticket provided by the counterpart.
  6. After pairing is complete, use plugins such as DSH Chat to select a remote session and operate.

Applicable Scenarios and Notes

DSH Weave runs with the permissions of the current DSH process. Before installation, check the source code and license (MIT).

  • Prerequisites: Node.js >= 22 is required.
  • Data storage: Identities and trusted peers are stored in $DSH_HOME/dsh-weave (default ~/.dsh), with owner-only permissions.
  • Connection behavior: Cancelling a request closes the connection, and the listener on the receiving end receives a disconnection notification. A cancel operation does not mark the host as offline.
  • Current version status: The current version is a transport MVP (minimum viable product), primarily providing pairing, directory access, and delivery of authentication requests. It has not yet implemented a general remote task approval workflow, nor does it support persistent transmission of outbound messages or disconnect-reconnect replay mechanisms.
  • Ecosystem context: This plugin is part of the DSH ecosystem, and the community directory has no affiliation with DeepSeek official.

Conclusion

DSH Weave provides a foundational trusted transport layer for multi-host collaboration in DSH. Through Iroh’s encryption and persistence capabilities, developers can manage distributed agent connections more securely. For more details, refer to the community directory or GitHub repository.