Foreword

When using DeepSeek Harness (DSH), accessing the Web interface from a phone usually requires purchasing a domain name or performing complex network configuration. The dsh-webroad plugin provides a free and simplified alternative through Tailscale Funnel. It allows users to access DSH directly in a browser without installing an App on their phone, making it suitable for home use or general users.

What Is This?

dsh-webroad is a DSH plugin designed to provide free remote access to the Web interface. It leverages Tailscale Funnel technology. It is maintained by iTrimut. It supports LAN and public network access.

Installation and Enablement

The -w parameter must be used during installation.

dsh plugin --profile web add github:iTrimut/dsh-Webroad -w

Note: Using the github: method reconnects to GitHub on every subsequent pnpm install. If network access to GitHub is unstable, local development or the git+ssh method is recommended. After installation, restart dsh web or run npx @deepseek-ai/dsh web.

Core Features

  • Embedded entry in the settings page: DSH Settings directly provides a “Phone Access” entry, with no need to navigate to external pages.
  • LAN QR code scan: The proxy automatically listens on 0.0.0.0:3081 and generates a QR code. Connect the phone to the same WiFi and scan it with a PIN to start using it.
  • Public QR code scan: After enabling public access, a public QR code is generated, allowing access from anywhere, including 4G or any other network.
  • Security authentication: Independent 8-digit PINs for LAN/public access; login rate limiting; HttpOnly cookie session persistence.
  • Real-time reliability: WebSocket full passthrough with heartbeat keepalive, plus automatic reconnection after disconnection.
  • Traffic saving: Large JSON payloads are automatically compressed with gzip/brotli.
  • Zero-config trust fence: A header-rewriting proxy ensures the trust fence always sees loopback, with no need to modify DSH configuration.
  • Mobile-side patch: Provides a directory selector, polyfills, and direct session onboarding.
  • Tunnel auto-recovery: The public tunnel is automatically restarted after DSH restarts.
  • Fixed domain (optional): Supports reusing Cloudflare named tunnels.
  • CLI: Supports managing status, QR codes, and toggles through the command line.

Typical Usage

  1. Open the DSH Web interface and go to Settings.
  2. Find the “Phone Access” entry in the settings page.
  3. Select “LAN” or “Public” to generate a QR code.
  4. Scan the QR code with a phone and enter the PIN code to log in.
  5. You can also manage it through the standalone panel http://127.0.0.1:3081/pocket or the CLI.

Notes

  • The server enforces a mandatory security disclaimer.
  • The implementation is original code and does not copy GPL code from dsh-pocket.