DeepSeek Harness (DSH) is a plugin-based platform. To develop using the Harness Web UI from a phone, you typically need to bind the service to 0.0.0.0, which bypasses DSH’s default local-access security model. The dsh-guard-messenger plugin offers an alternative: instead of expanding the bind scope, it establishes a temporary connection at the edge through Cloudflare quick tunnels and forwards traffic to the local 127.0.0.1.
Installation¶
Install it with a single command:
dsh plugin --profile web add dsh-guard-messenger
After installation, the plugin is configured automatically, and no manual bind address changes are required.
Core Features¶
This plugin focuses on addressing security and convenience when accessing a local Harness remotely:
- Protect the tunnel, not loopback: DSH listens locally on
127.0.0.1, and external access is provided through Cloudflare tunnels. When loaded, the plugin rejects non-loopback bind requests and denies the dangerousdanger-full-accesspermission. - Passwordless authentication: Accessing the tunnel does not require a password. Authentication is handled via the
?key=parameter in the URL or a session cookie. - Ephemeral tunnels: The tunnels are temporary and intended for testing and development.
- One-click toggle: Access can be enabled or disabled through Telegram, Discord, or the DSH admin panel.
- Bot-triggered Agent: Use the bot command
/agenteto run a Harness Agent on the host machine.
Usage¶
After installation and enablement, you can use it in the following ways:
- Access the Web UI: Visit
/__guard-uiin a browser. - Manage keys: Run
/rotacionarin Harness to rotate the access key, which also invalidates currently active connections. - Run an Agent: Send a command in the bot to execute an Agent on the host machine.
Applicability and Considerations¶
This plugin reduces the attack surface while introducing specific security considerations. Be aware of the following before use:
- TLS termination at the edge: Cloudflare terminates TLS at the edge, and plaintext data (prompts, code, and responses) passes through third-party servers. This is not end-to-end encryption.
- Public URL, protected by key: The tunnel URL does not need to be kept secret; the real protection is the
?key=URL parameter. If the key is leaked, it should be regenerated immediately using/rotacionar. - No SLA: Quick Tunnels do not guarantee a service-level agreement and are designed only for testing and development.
- Not secure by default: This is not an “out-of-the-box safe” solution, but rather a risk-reduction approach that limits bind scope and adds edge authentication. Attacks such as prompt injection may still occur.
The plugin runs with the permissions of the current DSH process. Please ensure that the source code and license are reviewed before installation.
Summary¶
dsh-guard-messenger addresses the need to access a local Harness remotely. Without changing DSH’s local security policy, it provides a controlled exposure path through Cloudflare tunnels and edge authentication. It offers a convenient management interface via Telegram or Discord and is suitable for developers who need to debug from mobile devices.