Adds a net_doctor tool that reports proxy environment, NODE_USE_ENV_PROXY, and reachability of the DeepSeek API and the npm registry, and sets NODE_USE_ENV_PROXY on bash and npm child processes.
Install
# from GitHub (first run asks for allowBuilds approval — follow the hint, retry)
dsh plugin --profile web add github:173787247/dsh-wsl-net
Any plugin you install runs third-party code with your own permissions — it can read your files, use your credentials, and reach the network, and tool approvals don’t sandbox it. GitHub-sourced plugins also run build scripts at install time — pnpm blocks those until you allow them, so an install can stop with ERR_PNPM_GIT_DEP_PREPARE_NOT_ALLOWED or ERR_PNPM_IGNORED_BUILDS; dsh prints the exact key to add under allowBuilds in your profile’s pnpm-workspace.yaml, and the install works on the next run. Allowing a build is a trust decision: only install sources you trust, and pin a commit (github:owner/repo#sha).
README
Install set: part of dsh-wsl-kit. Prefer
KIT_SET=daily|llm|github|full(see kit README). Fault tree: TROUBLESHOOTING.md.
DeepSeek Harness tool plugin: net_doctor diagnoses why HTTPS works in the Windows browser but fails from the WSL agent—and returns copy-paste fix scripts.
Pairs with dsh-wsl-env. Part of dsh-wsl-kit.
Where it sits
Diagnoses why the Windows browser can reach HTTPS while the WSL agent cannot. In-process page fetch is dsh-wsl-fetch, not this plugin.
flowchart LR
agent["dsh agent"] --> tool["net_doctor"] --> net["proxy, DeepSeek, npm"]
Suite diagram and version snapshot: dsh-wsl-kit. This plugin is 0.5.2 (daily; also in llm). Do not copy that matrix into this README.
Compatibility
| Field | Value |
|---|---|
| Plugin | dsh-wsl-net 0.5.2 |
| Minimum dsh | ≥ 0.1.2 (web UI one-shot ?token= on Windows relay :3081) |
| Latest verified | See dsh-wsl-kit Compatibility (currently 0.2.0-rc.2) — single source of truth for the suite |
| Kit set | daily (also in github / full; fetch+net also in llm) |
| Cloud Flash | Use model id deepseek-flash (V4.1 Flash) in ~/.dsh/settings.yaml / llm-deepseek — not configured by this plugin |
| Agent Teams | Upstream experimental; not required here |
Suite floor versions: kit check-plugin-versions.sh. Fault tree: TROUBLESHOOTING.md.
Scope: diagnoses proxy / Node 24 / DeepSeek+npm reachability for the agent process and child shells. It does not fix in-process web_fetch (use dsh-wsl-fetch). Prefer kit restart-dsh-web.sh so the dsh main process gets NODE_USE_ENV_PROXY=1 and loopback-only NO_PROXY.
Why
Clash / V2Ray often runs on Windows with HTTP_PROXY=http://127.0.0.1:…. Node 24 fetch ignores proxy env vars unless NODE_USE_ENV_PROXY=1. The browser can look fine while the agent cannot reach DeepSeek or npm.
What it does
- Reports
HTTP_PROXY/HTTPS_PROXY/ALL_PROXY/NO_PROXY(userinfo redacted),NODE_USE_ENV_PROXY, optional npm registry - Also inspects the running
dsh webprocess env (dshWeb) so you can tell tool-process vs host-process proxy flags apart - TCP-probes the configured proxy port (
proxyListen) - Probes DeepSeek API and the npm registry (HTTP status < 500 counts as reachable, including 401)
- Returns
adviceplusfix.steps/fix.scripts(reuses current proxy when set; otherwise a127.0.0.1:7890template you must edit) - Optionally injects
NODE_USE_ENV_PROXY=1and lowercasehttp_proxyaliases into bash/npm child processes (injectChildProxy)
Does not print API keys, change Clash ports, or invent a proxy URL when none is configured.
Related: in-process web_fetch failures while API works → dsh-wsl-fetch. Inherited Clash NO_PROXY=10.* breaking DeepSeek → kit restart-dsh-web.sh (loopback-only NO_PROXY).
Install
dsh plugin --profile web add github:173787247/dsh-wsl-net
Restart dsh web. In a new session, Tools should list net_doctor. Example ask: “Check whether DeepSeek API and npm are reachable.”
Child injection check:
node -e "console.log(process.env.NODE_USE_ENV_PROXY, process.env.http_proxy || process.env.HTTP_PROXY)"
Expect 1 and your proxy URL when a child bash/npm is wrapped.
Tool parameters
| Arg | Values | Meaning |
|---|---|---|
target |
all (default), env, deepseek, npm |
What to check |
Config
- id: dsh-wsl-net
name: dsh-wsl-net
config:
timeoutMs: 20000
probeTimeoutMs: 5000
injectChildProxy: true
| Key | Default | Meaning |
|---|---|---|
timeoutMs |
20000 |
Tool timeout |
probeTimeoutMs |
5000 |
Per-probe timeout |
injectChildProxy |
true |
Wrap subprocess.spawn / spawnTerminal |
Changelog (short)
- 0.3.0 —
fixcopy-paste scripts - 0.2.x — child proxy injection; redact proxy userinfo;
ALL_PROXY
Test
npm test
License
MIT
Links
More in this category
6Mikao9/dsh-wsl-workspace★ 77
Add a WSL workspace from the web GUI without needing to install dsh or related tools again inside WSL. Bash commands and file read/write operations run within the local WSL distribution on the host machine, while Windows files remain accessible.
173787247/dsh-wsl-open★ 3
Opens WSL Linux paths from DeepSeek Harness chat in the Windows default app or Explorer.
173787247/dsh-wsl-env★ 2
Injects WSL distro, Linux path mapping, /mnt/c CRLF and git caveats, and NODE_USE_ENV_PROXY into the system prompt.
Edge-Echo/dsh-win-toolkit★ 2
Windows-native tools for DSH agents: clipboard read and write, system notifications, hosts file inspection and network diagnostics, each returning structured data with UI cards from injection-safe PowerShell.
liyu34/dsh-wsl-tray★ 2
Windows desktop shortcut and system-tray launcher for DSH running in WSL, with fully hidden startup, tray open/restart/exit menu, and a plugin-configuration card to manage the shortcut.
173787247/dsh-device-bridge★ 1
Generic Companion-protocol bridge from DeepSeek Harness to phones/IoT/legacy agents (includes Termux companion example).
Community comments
Comments are public GitHub Discussions. Loading them connects to GitHub and Giscus; a GitHub account is required to post.