deepseek-harness
deepseek-ai
DeepSeek Harness: Everything is a Plugin.
Airmetro/dsh-update-checker
全栈更新管理:对 DeepSeek Harness 主程序与每个已装第三方插件做 npm/GitHub 双源 semver 比对,GUI 横幅随系统语言(中/英)提示可更新插件;一键更新主程序或任意插件,自动备份可回滚,更新后看门狗自动重启服务。Whole-stack update management for DeepSeek Harness: dual-source semver checks of the main program and every third-party plugin, a locale-aware banner, one-click updates with backup/rollback and watchdog-guarded restart.
PROJECT TOPICS
INSTALL REFERENCE
dsh plugin --profile web add github:Airmetro/dsh-update-checker
该命令指向仓库当前默认分支;尚无绑定当前 commit 的完整验证结果。
PROJECT README
English | 中文
A permanent Cordis plugin for the DeepSeek Harness Web GUI that auto-checks for new DeepSeek Harness releases AND installed third-party plugin updates (the former standalone dsh-plugin-checker was merged in v1.1.0), asks the user, and one-click updates with success/failure feedback.
Full update lifecycle — check, backup, update, rollback, and restart, all in one plugin.
Main program check — compares the installed @deepseek-ai/dsh version against the npm latest (full packument, stable-first — a latest dist-tag pointing at a pre-release won't cause false positives; semver-aware).
Third-party plugin check — scans installed non-official plugins (composition rows + dsh manifest, layout-agnostic, multi-location node_modules incl. pnpm hoisted layouts), cross-compares each against npm + GitHub (target = higher version). Local tools with no publish source (e.g. mcp-* clients) are moved to ignored instead of spamming "not on npm registry".
Working GitHub channel — a dedicated HTTPS client for GitHub domains (rejectUnauthorized:false limited to github.com / *.githubusercontent.com, compatible with local S302 proxies that use self-signed certs; npm registry still uses strict TLS), with redirect following, download size caps, and timeouts. codeload tarballs are validated before install (entry file from main/exports exists, tag matches package.json version) so a source-only repo can never replace a runnable plugin.
In-GUI banner — locale-aware (zh/en follows the DSH UI language), states update / up-to-date / failure, with a "don't remind me" suppression flag; the update banner shows a change brief (vX→vY + risk level major/minor/patch/pre, plus GitHub release notes when available).
One-click update with safety —
remove, protecting against pruning the deploy/global tree) → backup (lockfile + @deepseek-ai manifests + recorded old version) → layout-adaptive install (local project with a package.json → in-place npm install; global install without one → -g) → post-install re-read check installed==latest (no more constant success) → eco sync.profiles/node_modules), dependency version reconciliation (replace & back up deps whose installed version doesn't satisfy the new range), and automatic --allow-scripts pass on npm ≥ 12 for native deps (koffi/node-pty/sharp…).Real rollback — main program: POST /rollback reinstalls the recorded old version (same dry-run guard + sync + verify); plugins: POST /plugin-rollback restores the old directory from .dsh-plugin-backups/<id>; GET /backups.json lists both.
Restart with watchdog — the launcher is derived from the current process argv (no more guessing start-dsh.cmd), kills by PID + port, and recovery is confirmed by port listening + an HTTP 200 probe (/dsh-update-checker/status.json); the result is written to JSON and exposed via GET /restart-status.json.
Write-route security — besides { "confirm": true }, all write routes require a loopback source (req.socket.remoteAddress of 127.0.0.1/::1), so LAN clients cannot remotely trigger update/restart/rollback.
Zero-config portability — profile dir / $DSH_HOME / composition file are derived from the plugin's own install location; the deployment root is resolved via junction realpath with DSH_DEPLOY_ROOT / process.cwd() fallback. Works on any machine without editing code.
Host half (lib/index.js) registers HTTP routes:
GET /dsh-update-checker/status.json — fetches the latest stable @deepseek-ai/dsh version from the npm registry, reads the locally installed version, compares with semver, returns JSON status (incl. the persisted suppressUpToDate flag and a brief change summary).POST /dsh-update-checker/suppress — persists the "don't remind me again" flag (requires { "confirm": true }).POST /dsh-update-checker/update — complete update: dry-run guard (no remove allowed in the plan) → backup (lockfile + @deepseek-ai manifests + old version) → layout-adaptive npm install (in-place for local projects, -g for global installs) → post-install re-read check installed==latest → eco sync. Requires { "confirm": true }; supports { "dry": true } to preview (incl. dry-run output).POST /dsh-update-checker/rollback — main-program rollback: reinstalls the old version recorded in the newest backup (same guards), taking a safety snapshot first. Requires { "confirm": true }.GET /dsh-update-checker/backups.json — lists main-program and plugin backups (rollback entry data).POST /dsh-update-checker/restart — restarts the dsh web service (launcher derived from the current process argv, kill by PID + port; detached grandchild runs restart-watchdog.ps1 which confirms recovery via an HTTP 200 probe and writes a result JSON). Requires { "confirm": true }.GET /dsh-update-checker/restart-status.json — the most recent watchdog result (whether the service recovered).GET /dsh-update-checker/plugins.json — scans installed third-party plugins (multi-location node_modules, pnpm-hoisted aware), compares each against npm + GitHub (semver), returns update status plus an ignored list for local tools.POST /dsh-update-checker/plugin-update — updates one plugin via temp-dir npm install (automatic --allow-scripts pass on npm ≥ 12) + copy, with dependency version reconciliation; GitHub-sourced plugins go through codeload with build-artifact validation and a staged dependency install. Requires { "confirm": true, "name" }.POST /dsh-update-checker/plugin-rollback — restores a plugin from .dsh-plugin-backups/<id>. Requires { "confirm": true, "id" }.Client half (lib/client.js) is a web module (ModuleLoader format) that registers two cells in the root-scoped shell.overlay slot:
brief line: vX→vY + risk + notes),installed → latest) with single / update-all buttons and per-plugin success/failure feedback.
On page load both check once, then re-check every 6 hours. The settings page ("检查更新") additionally shows rollback buttons for the main program and each plugin (when a backup exists).The banner follows the DSH UI language through the client locale service (@deepseek-ai/dsh-client-locale): zh → 中文, en → English, and only those two are shipped — any other locale falls back to Chinese. Switching DSH's language (Settings → General → Language) updates the banner text instantly without a reload. If the locale service is absent from the composition, the client falls back to the Chinese dictionary.
The package is a profile bundle (its manifest declares dsh.bundle.patch).
# 1) put the package into $DSH_HOME/profiles/node_modules/ so the profile can resolve it.
# ⚠️ Do NOT run `npm install` directly inside $DSH_HOME/profiles — it has no
# package.json and npm would prune the entire node_modules (data loss).
#
# Safe option A — install in a temp dir, then copy only this package:
npm i dsh-update-checker --prefix <temp-dir> --no-save
cp -r <temp-dir>/node_modules/dsh-update-checker $DSH_HOME/profiles/node_modules/
#
# Safe option B — copy the package directory manually (from a git clone or tarball).
# 2) add the row to $DSH_HOME/profiles/web/cordis.patch.yml
# $DSH_HOME/profiles/web/cordis.patch.yml
- insert:
- id: dsh-update-checker
name: 'dsh-update-checker'
Then let patch HMR apply it (or restart dsh web) and reload the page.
Step-by-step guide with troubleshooting (中文): docs/INSTALL.md.
All paths are auto-detected at runtime — nothing is hardcoded, so the same package works on any machine:
$DSH_HOME/profiles/node_modules): derived from the plugin's own install location (import.meta.url), walking up to the enclosing node_modules. No configuration needed.$DSH_HOME: derived as the parent of the profiles root (state file, backups, and restart log all live there).cordis.patch.yml): defaults to $DSH_HOME/profiles/web/cordis.patch.yml; if absent, any other cordis.patch.yml under $DSH_HOME/profiles/ containing the plugin id is used.profiles/node_modules/@deepseek-ai/dsh is a junction (the common "save C-drive" setup), realpath() yields <deploy-root>/node_modules/@deepseek-ai/dsh, so the deployment root is derived automatically.DSH_DEPLOY_ROOT, then process.cwd() (launchers usually cd into the deployment directory). To point elsewhere, set DSH_DEPLOY_ROOT or append to DEPLOY_ROOT_CANDIDATES at the top of lib/index.js.start-dsh.cmd, 启动 dsh.bat, start-dsh.bat, …) under the detected deployment root; the web port is read from the running webServer.port. No machine-specific paths are hardcoded in the restart flow.$DSH_HOME — machine-independent.taskkill + a derived/.cmd launcher) and the watchdog script is PowerShell.package.json (a local project, e.g. a wrapper that declares only @deepseek-ai/dsh): in-place npm install @deepseek-ai/dsh@latest (-g would install into the global prefix and leave the deployment untouched). If there is no package.json (npm global install): npm install -g @deepseek-ai/dsh@latest. Both forms run a dry-run guard first (no remove allowed in the plan) and re-read the installed version afterwards. npm ≥ 12 automatically gets --allow-scripts (npm 11 runs dependency scripts by default, verified — no flag needed).{ "confirm": true } and a loopback-source check (127.0.0.1/::1), so a stray request or a LAN client cannot trigger an install, rollback, or restart.package-lock.json + both @deepseek-ai version manifests + backup-meta.json with the old version) is written to $DSH_HOME/dsh-update-checker-backups/<timestamp>/ before npm install runs; both main-program and plugin rollback routes are provided.rejectUnauthorized:false limited to github.com / *.githubusercontent.com, compatible with the local S302 proxy's self-signed cert), with redirect following, download size caps, and timeouts; codeload tarballs are validated before install (entry file from main/exports exists, tag matches package.json version) so source-only repos can't replace runnable plugins; GitHub-sourced plugins get a staged dependency install (with version reconciliation and native builds) after extraction.satisfies is a self-contained npm-semver-compatible subset — 1110 cross-check cases against npm's semver, 0 mismatches).--allow-scripts allow-list (npm 11 runs dependency scripts by default, verified empirically).remove in the plan) → backup (incl. old version) → layout-adaptive install (in-place for local projects / -g for global) → post-install re-read check installed==latest (no more constant success).POST /rollback (main program, reinstalls the recorded version + sync + verify), POST /plugin-rollback (restore from .dsh-plugin-backups/<id>), GET /backups.json; rollback buttons in the settings page.profiles/node_modules + profiles/*/node_modules (pnpm hoisted compatible), deduped by realpath; unpublishable local tools move to ignored instead of spamming "not on npm registry".GET /restart-status.json.brief (vX→vY + risk level + GitHub release notes), shown in the banner.latest tag no longer causes false positives); codeload downloads have a size cap; header comments versioned; npm test adapted to the glob form for this machine.runSync failing to copy newly-added @deepseek-ai packages (a missing profile dir made realpath throw ENOENT and abort the sync); fix parseGhRepo truncating repository names that contain dots. Add integration tests that simulate real-copy and junction deployment layouts in a temp dir (via the DSH_UC_PROFILE_NODE_MODULES hook) covering eco-version reads, sync planning, sync execution, backup, and deploy-root detection. All tests run with npm test (30 assertions + host apply() smoke test).repository field and query api.github.com/releases/latest, cross-verify against npm (target version = the higher of the two, GitHub preferred as download source on ties), support plugins that exist only on GitHub (download via codeload tarball, backup + replace), show the update source ([GH] / [GH/npm]) in settings. If GitHub is unreachable it silently falls back to npm; if both sources fail the plugin reports a combined error (timeout included). Adds fetch timeouts (20s queries / 120s download).npm install -g @deepseek-ai/dsh@latest with --allow-scripts for the five native-dependency packages (npm 11 requirement), invoked through process.execPath + the bundled npm-cli.js (no PATH dependence). Fixes the previous non--g npm install which, on machines where dsh is installed globally (global prefix without a package.json), would treat the whole global node_modules as extraneous and prune it.$DSH_HOME, composition file, deploy root, restart launcher) from the plugin's own install location; merge the former standalone dsh-plugin-checker plugin-update capability.lib/index.js — Host half: plain ESM, depends only on Node built-ins. No build step. The pure helpers (parseVersion, compareVersions, satisfies, pickNpmLatest, deriveRisk, tagToVersion, parseGhRepo, planSyncFromMaps, planDepMerges, resolveEntryFile, extractTarGzToDir, truncate, isLoopback, …) are exported as named ESM exports for unit testing.lib/client.js — Client half: plain JS, window.__ModuleLoader__ format, requires only react. No build step.npm test (alias for node --test "scripts/*.test.mjs", Node ≥ 20 with the built-in test runner, no third-party deps). Coverage: semver comparison & tag/repo parsing (unit-semver.test.mjs), v1.4.0 pure helpers (unit-v140.test.mjs), sync planning (unit-sync.test.mjs), tar extraction incl. path-escape safety (unit-tar.test.mjs), plus the host apply() smoke test.scripts/test-host-apply.mjs — isolation test that drives apply() with a fake context (also picked up by npm test).scripts/restart-service.ps1 — manual service restart helper (run with -ExecutionPolicy Bypass); pass -Launcher (or set DSH_RESTART_LAUNCHER) plus optional -Port/-WorkingDir/-Log.MIT
CLASSIFICATION EVIDENCE
系统优先读取 GitHub Topics,再与站内分类词典和词根规则比对。当前命中: 无有效分类标签。