A plugin market for DeepSeek Harness: search and one-click install GitHub dsh-plugin plugins straight from the web GUI.
Install
# from GitHub (first run asks for allowBuilds approval — follow the hint, retry)
dsh plugin --profile web add github:kimiya1010/dsh-plugin-market
Any plugin you install runs third-party code with your own permissions — it can read your files, use your credentials, and reach the network, and tool approvals don’t sandbox it. GitHub-sourced plugins also run build scripts at install time — pnpm blocks those until you allow them, so an install can stop with ERR_PNPM_GIT_DEP_PREPARE_NOT_ALLOWED or ERR_PNPM_IGNORED_BUILDS; dsh prints the exact key to add under allowBuilds in your profile’s pnpm-workspace.yaml, and the install works on the next run. Allowing a build is a trust decision: only install sources you trust, and pin a commit (github:owner/repo#sha).
README
A DeepSeek Harness (DSH) plugin that lets users search for and install other plugins directly from the web GUI — no need to drop to a command line.
It adds a "Plugin market" tab under Settings → Plugins:
- 🔍 Search GitHub repositories tagged
dsh-plugin(sorted by stars) - 📋 Show each plugin's name, description, and star count, with a link to its GitHub repo
- ⚡ One-click install (internally runs
dsh plugin --profile web add github:owner/repo) - 🗑️ One-click uninstall of installed third-party plugins
- 📦 List the plugins currently installed in the profile (
dsh.profile.bundles)
Install
Install it like any other DSH bundle:
# Install into your web profile straight from GitHub
dsh plugin --profile web add github:kimiya1010/dsh-plugin-market
# Restart the web GUI to activate it
dsh web
Or from a local checkout:
dsh plugin --profile web add ./dsh-plugin-market
Note: this plugin is plain JavaScript with no
preparebuild script, so agithub:install needs noallowedBuildsentry — it works out of the box.
Directory layout
dsh-plugin-market/
├── package.json # dsh.bundle (patch layer) + dsh.client (browser half) declaration
├── cordis.patch.yml # inserts the loader row into the composition
├── index.js # Host half: registers the /api/plugin-market HTTP bridge + search/install/uninstall
└── client.js # Client half: Settings "Plugin market" tab UI
How it works
- Host half (
index.js): injects thewebServerservice and registers a same-origin prefix route/api/plugin-market:GET /api/plugin-market/search?q=<keyword>— calls the GitHub Search API (topic:dsh-plugin)POST /api/plugin-market/install(body{ "spec": "github:owner/repo" }) — runsdsh plugin addGET /api/plugin-market/list— reads the profile'sdsh.profile.bundlesPOST /api/plugin-market/remove(body{ "name": "…" }) — runsdsh plugin remove
- Client half (
client.js): registers the "Plugin market" page into thesettings.plugins.tabslot and calls the HTTP bridge over same-originfetch, rendering the search box, result list, install/uninstall buttons, and the installed list.
Because the bridge lives on the port the web GUI itself listens on (same origin), there is no cross-origin issue and no change to the framework's own Remote descriptors.
Publishing your own fork
Push this repo to your own GitHub and tag it with dsh-plugin
so other users' plugin markets can find it. You can also publish to npm:
npm publish --access public
Security note
Installing a third-party plugin runs its author's code on your machine (a prepare script may run
at install time, and the bundle is loaded at runtime). Only install plugins from sources you trust,
and pin to a commit (github:owner/repo#<sha>) when you want to prevent upstream changes from
silently altering behavior.
License
MIT
Links
More in this category
zhu1090093659/dsh-web#packages/dsh-plugin-manager★ 8121
Plugin manager tab in DSH Settings → Plugins: install from npm or git with progress, enable/disable switches effective at next startup, conflict reconciliation with undo, and one-click hand-off to a fix session.
dsh-market/dsh-market★ 4818
Browse, search and install community plugins from inside DeepSeek Harness settings, with category filters, one-click updates, enable/disable, theme switching and configuration backup.
bradeGithub/DSH-Plugins-Marketplace★ 169
GitHub-topic-driven plugin & skill marketplace: a Settings page that browses the auto-collected registry (the whole dsh-plugin topic plus the skills index, CI-refreshed every 2 hours) with one-click install, type detection, install-script and host-shadow-dependency safety confirmations, env-key management, and the STANDARD.md recognition spec.
kingOfSoySauce/dsh-skin-market★ 165
Native skin marketplace and lifecycle manager that discovers community skins, displays previews and compatibility status, and provides verified one-click or manual installation paths.
awesome-dsh-plugin/dsh-find-plugin★ 154
Find plugins without leaving the agent: search this curated registry by keyword or category, with ready-to-run install commands.
Sanqi-normal/dsh-webui-market-plugin★ 103
In-harness plugin market for the dsh web GUI: browse the awesome-dsh-plugin.com catalog and install/uninstall plugins into a profile from Settings → Plugins → Plugin Market.
Community comments
Comments are public GitHub Discussions. Loading them connects to GitHub and Giscus; a GitHub account is required to post.