DeepSeek Harness Plugin

pengyue-polaron/deepseek-harness-genui

Stars ★ 114 Downloads (30d) 1,875 Category UI Enhancements Added 2026-08-16 npm dsh-plugin-genui

Code-first React and TypeScript task apps rendered inline, in Canvas, full screen, or on localhost, with interaction state available to later agent turns and approval-gated MCP and API access.

Install

# from npm (prebuilt)

dsh plugin --profile web add dsh-plugin-genui

# from GitHub (first run asks for allowBuilds approval — follow the hint, retry)

dsh plugin --profile web add github:pengyue-polaron/deepseek-harness-genui

Any plugin you install runs third-party code with your own permissions — it can read your files, use your credentials, and reach the network, and tool approvals don’t sandbox it. GitHub-sourced plugins also run build scripts at install time — pnpm blocks those until you allow them, so an install can stop with ERR_PNPM_GIT_DEP_PREPARE_NOT_ALLOWED or ERR_PNPM_IGNORED_BUILDS; dsh prints the exact key to add under allowBuilds in your profile’s pnpm-workspace.yaml, and the install works on the next run. Allowing a build is a trust decision: only install sources you trust, and pin a commit (github:owner/repo#sha).

README

English | 简体中文

DeepSeek Harness GenUI lets an Agent build a focused interface when a task is awkward in text. The Coding Agent writes ordinary React + TypeScript—not a component-tree DSL—and the interface can save user selections for the next Agent turn.

The result is a task-specific app that can explain a difficult relationship, collect connected choices, or continue a tool-backed workflow without asking the user to repeat their input.

Related research: EvoGenUI-Bench: Evaluating LLMs as Multi-Turn Generative UI Assistants.

Install

Requires Node.js ^22.19.0 || ^24.0.0 and a supported DeepSeek Harness Web profile.

dsh plugin --profile web add dsh-plugin-genui
dsh --profile web

v0.15 supports Inline, Canvas, fullscreen, and localhost on the tested Harness versions listed in the release notes. TUI/headless profiles are not supported. The local compiler uses WebAssembly and needs no install-script approval. Plugin users do not need Chrome or Chromium.

Where It Helps

Use an interface when the user needs to see a complex relationship or make several connected choices. Plain questions, rewriting, summaries, and simple lists should stay in prose.

The Core Loop

  1. The Agent writes and builds a React + TypeScript app for the current task.
  2. The user saves meaningful values such as selections, form answers, drafts, or progress.
  3. A later Agent turn reads those values and continues the task.
  4. Connected tools and public HTTPS routes must be declared. Harness asks for task-scoped access, and undeclared calls are blocked.

Later edits update the same app. A candidate that fails the build or source checks does not replace the last working version; a crashing version is quarantined and rolled back when possible.

Inline & Canvas

Inline Canvas
A compact control or focused choice. More room without covering the conversation.

Inline, Canvas, fullscreen, and localhost are different surfaces over the same task state.

Try It

Start a new Web session and paste a prompt:

Plan a Saturday route with a museum, a riverside garden, and dinner. Build an
interface where I can change the times and make the garden optional.
Build an interactive double-slit experiment. Let me change wavelength, slit
spacing, and screen distance and see the interference pattern update.

After saving something in the interface, ask:

What did I just choose in the interface? Continue from the saved result.

The useful proof is not only that an interface appears—it is that the next Agent turn can continue from the interaction.

Why Code-First

Component-schema renderers are usually better for predictable cards, tables, charts, and forms. This plugin is for structures that cannot be known in advance: simulations, spatial tools, source explorers, and multi-step task apps whose saved result must continue the same Harness task.

The trade-off is deliberate: generated code is more expressive than a fixed component catalog, while this project remains DeepSeek Harness-specific rather than a cross-client UI protocol. See dsh-genui, dsh-visualize, A2UI, and MCP Apps for related approaches.

DESIGN.md

Open Settings → Plugins → Plugin configuration to choose automatic design selection, use material-3, apple-human-interface, or shadcn-ui, or import a custom DESIGN.md. The file controls visual language, not page structure; React remains free to implement the interaction the task needs.

Safety

Generated code runs in an opaque-origin sandbox. A trusted parent keeps the real task capability token and brokers only saved state, declared tools, and declared credential-free public HTTPS routes. MCP credentials never enter generated code. Temporary links and grants expire after 7 days, as does task state 7 days after its last update.

This boundary protects host credentials and capabilities, but it cannot make malicious code safe to trust with data already authorized for it to read. Do not put secrets in generated-app state or grant access to data the app should not display. See Security for the threat model.

Development

Building from source requires pnpm 11:

pnpm install
pnpm run typecheck
pnpm run build
pnpm test
pnpm run package:plugin

Acceptance scenarios · Release notes · Contributing · MIT

Listed on dsh-market · dsh.so · awesome-dsh-plugin · dsh.plus

Content from the project README on GitHub ↗

Links

More in this category

View the whole category →

Community comments

Comments are public GitHub Discussions. Loading them connects to GitHub and Giscus; a GitHub account is required to post.