Introduction¶
The plugin ecosystem for DeepSeek Harness (DSH) is expanding rapidly. Finding, verifying, and installing third-party plugins in the current work session usually requires switching context or relying on external directories. The DSH Get plugin provides direct access to a public directory inside the DSH interface, supports offline search and installation auditing, and centralizes the plugin management workflow.
Plugin Positioning¶
This is a community plugin independently maintained by bobby-sheng and is not an official DeepSeek component. It provides plugin discovery and installation capabilities through the DSH Get directory, and is compatible with DSH 0.1.0-rc.5 or later, as well as Node.js 22.19+ or 24+ environments.
Installation and Activation¶
Run the following command in the terminal to install the plugin. A DSH restart is required after installation.
dsh plugin --profile web add -w github:bobby-sheng/dshget-plugin
Core Features¶
The plugin provides a command-line interface and agent tools, covering full-lifecycle plugin management.
- Search plugins: Supports discovery by name, owner, category, tags, description, and source.
- Check plugin information: Use the
infocommand to retrieve detailed information about a target plugin. - Install plugins: Use the
installcommand to perform installation. The installation process generates six audit evidence items and writes them to a local private record. - Update the snapshot: Run the
updatecommand to fetch and validate the latest directory snapshot from the remote. - View status: Use the
statuscommand to report the current snapshot state and cache validity. - Offline search: The plugin includes a built-in directory snapshot, so it remains usable without network access or when the website is unavailable.
- Agent tools: Provides read-only
dshget_searchanddshget_plugin_infotools for Agent use.
Typical Usage¶
/dshget search memory recall
/dshget info volcengine/OpenViking#examples/dsh-memory-plugin
/dshget install example/dsh-plugin
/dshget update
/dshget status
Security and Audit¶
- Installation control: Installation operations are limited to human commands (
/dshget install). Agent tools provide only retrieval and information queries, and do not include automatic installation capabilities. - Shell injection protection: The plugin does not execute directory commands through the shell; it allows only secure npm packages or GitHub specifications, and rejects local paths and arbitrary URLs.
- Audit evidence: After a successful installation, six reports are output (including package name/version, lifecycle scripts, configuration changes, removal command, etc.), and a local audit record is generated.
- Permissions and maintenance: Loaded host plugins inherit the permissions of the
dshprocess. Before installing any third-party plugin, be sure to review its source code, license, and maintenance status. Inclusion in the directory does not equate to a security review.
Configuration¶
You can override configuration items in cordis.patch.yml to adjust behavior:
- id: dshget-plugin
config:
profile: web
maxResults: 10
cacheTtlHours: 24
allowInstall: true
Summary¶
The DSH Get plugin integrates external directories into DSH, solving the context-switching problem for plugin discovery and installation. Through built-in snapshots and audit mechanisms, it provides basic assurance for offline use and operational transparency.
- GitHub repository: https://github.com/bobby-sheng/dshget-plugin
- Directory page: https://www.skillhub.cn/plugins/bobby-sheng/dshget-plugin