Overview¶
In the plugin-based ecosystem of DeepSeek Harness (DSH), jailbreak scenarios often depend on complex preset combinations. Developers frequently face cumbersome system prompt adjustments, difficulty sharing presets, and the challenge of guiding models to follow instructions in specific contexts. To address these scenarios, Rain-kl developed the DSH-Preset-Plus plugin, aiming to provide a lightweight preset editor and output spoofing mechanism.
Plugin Overview¶
DSH-Preset-Plus is a client-side plugin, open-sourced under the MIT license. It mainly solves two problems: first, providing a way to edit and share system prompts for custom modes; second, in jailbreak scenarios, improving jailbreak effectiveness by spoofing model compliance output.
Core Features¶
- Fixed Mode Injection: The plugin provides one fixed DSH mode
preset-plus. - Output Spoofing: Supports spoofing model compliance output in jailbreak scenarios.
- Prompt Editing: Supports adjusting system prompts for custom modes.
- Preset Management: Supports importing, exporting, and sharing prompts, and provides command-line tools to manage presets.
- AB Dual Mode: Supports two modes: automatic injection (can be disabled) or manual triggering.
Installation and Activation¶
Ensure the runtime environment meets the Node.js 24+ requirement. Install the plugin via the official CLI:
dsh plugin --profile web add github:Rain-kl/dsh-preset-plus
After installation, configure the preset in the DSH settings interface and select the PresetPlus mode for it to take effect.
Commands and Usage¶
The plugin provides a series of commands to manage preset state and injection logic:
/preset-plus status # 查看当前注入状态
/preset-plus on | off # 开启/关闭注入
/preset-plus prefill # 手动触发注入
/preset-plus save # 保存当前配置
/preset-plus list # 列出可用预设
/preset-plus activate <id> # 激活指定预设
The workflow follows this order:
[system main prompt] → [user trigger] → [assistant spoofed output] → [real user input] → [real model output]
Notes¶
- The plugin only injects when the preset id mounted in the current session is within the
scopedPresetsrange. - Spoofed input content cannot be recorded in the conversation “trajectory”; check console logs to determine whether injection succeeded.
- The plugin runs with the current DSH process permissions. Before installation, review the source code and license.
Summary¶
DSH-Preset-Plus focuses on solving pain points in preset management and output spoofing. Through simple command-line and interface operations, it lowers the barrier to jailbreaking and customization. For more details, see the GitHub repository.