Lets the DSH web UI attach files of any type as pathless @-mentions: pick a workspace file from the @ menu or drop one into the composer, and the agent reads it directly.
Install
# from GitHub (first run asks for allowBuilds approval — follow the hint, retry)
dsh plugin --profile web add github:Zenjibad/dsh-any-attachment
Any plugin you install runs third-party code with your own permissions — it can read your files, use your credentials, and reach the network, and tool approvals don’t sandbox it. GitHub-sourced plugins also run build scripts at install time — pnpm blocks those until you allow them, so an install can stop with ERR_PNPM_GIT_DEP_PREPARE_NOT_ALLOWED or ERR_PNPM_IGNORED_BUILDS; dsh prints the exact key to add under allowBuilds in your profile’s pnpm-workspace.yaml, and the install works on the next run. Allowing a build is a trust decision: only install sources you trust, and pin a commit (github:owner/repo#sha).
README
A DeepSeek Harness (dsh) plugin bundle that lets the Web UI attach files of any type as pathless @-mentions: type @ to pick a workspace file, or drop a file (or use the + button) to tag it into your message — the agent then reads the file itself with its own tools. Mentions carry the name only, never a path. Raster images keep flowing through the built-in image pipeline. No changes to the harness repo, and nothing is written into your workspaces.
How mentions work
@-list: in the composer, type@and a menu shows the session workspace's files, recursively and flat (src/main.ts,docs/guide.md, …). Type more to filter; pick one and a pathless@namechip is inserted into the draft.- Drop / + button: drop a local file onto the composer (or click +) and it is stored privately; the draft gains an
@<stored-name>chip — no path, no drive letter. - Send as usual (Enter or the send button) — every mention chip resolves to its exact file location in the sent message (
@name (C:\...\absolute\path)), so the agent reads the file directly instead of guessing where it lives. - Raster images (png/jpeg/webp/gif) still route to the built-in image pipeline (vision models see them).
- Files live under
$DSH_HOME/attachments-any/— private, never dumped into a workspace.
Install
dsh plugin --profile web add https://github.com/Zenjibad/dsh-any-attachment
Restart dsh web, then hard-refresh the page.
Limits
| Guard | Value |
|---|---|
| Max bytes per file | 25 MB |
@-list depth |
4 levels below the workspace root |
@-list entries |
500 (sorted, /-separated relative paths) |
@-list exclusions |
hidden (.-prefixed) entries and node_modules |
| Name | basename only; traversal, separators, drive letters rejected |
| Storage | private store under $DSH_HOME/attachments-any, never a workspace |
How it works
- Host (
lib/): registers an RPC channel/attachments-any(authoritytrusted-host, same LAN fence as/api).list { sessionId }walks the session workspace recursively and returns relative paths;uploadvalidates base64/size/name, writes into the private store, and returns the stored name (deduped with-2suffixes). A system-prompt section tells the agent that a referenced@namelives at./<name>relative to its working directory, or in the private store otherwise. - Client (
client/): composer+button (conversation.input.left), a capture-phase drop handler, and an@fileinput-trigger source (workspace autocomplete, pathless picks). Rasters route throughcreateDraftImages/addImages; everything else uploads via the channel and the mention@<name>is appended to the composer draft viainputActions.setDraft.
The agent reads the file at the resolved path with its own tools — no extraction, no download UI, no special send flow.
Test
node --test
License
Links
More in this category
zhu1090093659/dsh-web#packages/dsh-task-board★ 8334
Task board for the dsh web GUI: a sidebar multi-column kanban whose cards run in real DSH agent sessions and can also be scheduled with cron expressions, executed host-side even with the browser closed.
zhu1090093659/dsh-web#packages/dsh-web-all★ 8334
Plugin and skin collection for the DSH Web UI: task board, Git graph, right-side panel, remote mobile UI, pet, live token stats, and a skin center.
ccch1mneyyy/dsh-TUI★ 3989
Claude Code-style full-screen terminal UI: pixel-whale header, live status line, and streaming thought expansion.
omdsh-dev/DSH-better-sidebar★ 3981
Full sidebar workbench with file rendering and editing, terminal, Git, and subagents; third-party plugins can register new tabs.
MeteorNOX/DeepSeek-Balance-Whale-Widget★ 3944
A fixed-corner whale widget for the DSH web GUI — balance, today's usage and per-turn cost with peak/off-peak pricing, editable balance-alert and daily-budget bubbles, a module-based custom bubble queue with A/B weighted choices and random lines or images, 30+ vendor templates (OpenAI, OpenRouter, Kimi, SiliconFlow, Ark, Zhipu, MiniMax and more) with per-model balance and subscription quota, plus task-end sound, imported audio, custom roles and a resource manager. Local-only, no telemetry.
Devin-AXIS/deepseek-design#deepseek-idesign★ 1412
Visual design studio for websites, app prototypes, posters, cards, reports, and magazines, with templates, direct element editing, selection-aware AI draft handoff, and export.
Community comments
Comments are public GitHub Discussions. Loading them connects to GitHub and Giscus; a GitHub account is required to post.