deepseek-harness
deepseek-ai
DeepSeek Harness: Everything is a Plugin.
PROJECT TOPICS
INSTALL REFERENCE
dsh plugin --profile web add github:runfali/dsh-skill-curator
该命令指向仓库当前默认分支;尚无绑定当前 commit 的完整验证结果。
PROJECT README
Automatic skill curation for DeepSeek Harness (DSH). After every N real conversation turns (default 3), the plugin fires a background subagent that reads a digest of the session and edits, merges, prunes and creates SKILL.md files under the user skills directory (~/.dsh/skills/) — the same self-improvement loop Nous Research's Hermes Agent runs, ported to DSH as a zero-intrusion bundle plugin.
中文说明见 README.zh-CN.md.
turn ends ──▶ agent/turn-stopping (scoped listener, counted per agent)
│ 3 turns reached? (skillNudgeInterval)
▼
async fire-and-forget (never blocks the turn close)
▼
session digest built ──▶ latest N messages verbatim + older turns compressed
▼
spawn subagent (provider: spawn) with digest + review instructions
│ toolFilter allow = skill-library-* only (whitelist, hermes-style)
▼
subagent reads the library first → subtracts (merge / shorten / delete) before it adds
│ every write must echo the sha256 it just read (= hard read-before-write)
▼
writes ~/.dsh/skills/<name>/SKILL.md (Chinese body; original backed up first)
▼
summary logged (host journal) + visible in the settings card status panel
Manual trigger: /skill-refine [focus] runs a review of the current session immediately.
| Hermes | dsh-skill-curator |
|---|---|
| turn_finalizer nudge counters (10) | scoped agent/turn-stopping counters (3, configurable) |
| fork of AIAgent in a daemon thread | platform subagent (ctx.subagents.start) — visible in the UI, fully isolated session |
| replay full conversation (warm prefix cache) | digest injection (tail-verbatim + head compression) — DSH has no cache advantage |
| runtime tool whitelist (memory+skills) | toolFilter.allow whitelist + prompt constraint |
| edits only curator-created skills | the whole library is editable, guarded by read-before-write + auto-backup + a protected list |
/refine |
/skill-refine command |
Behavioral parity matrix: docs/COMPARISON.md.
cd /path/to/dsh-skill-curator
dsh plugin --profile web add ./
# restart dsh, then open: Settings → Plugins tab → "Skill Curator" card
Skip the restart? The plugin only takes effect on next start (standard bundle plugin; no dsh source changes, ever).
/chat/completions). When reviewBaseUrl + reviewModel are set, the review subagent runs against that endpoint through a dedicated adapter route (provider name = reviewProvider, or skill-curator-review by default). Settings are read live on every request — no restart needed~/.dsh/skill-curator/reviews.json (last 50 entries) — survives plugin removal/reinstall and restarts⚠️已回退主模型 in host log / review log / status panel); ② if the final attempt then dies on an endpoint-class error or a detail-less killed, it retries up to reviewRetryCount times with reviewRetryDelayMs backoff — a model connection blip no longer loses the review. Tool-layer errors are never retriedkilled; 0 disables retrying. Tool-layer errors are never retried. Default 1base × n ms (default 5000)The review subagent can only call these ten (they are also usable by any session):
| Tool | Purpose |
|---|---|
skill-library-list |
list skills (name, description, body line count, protected?) |
skill-library-read |
read any file (SKILL.md, or a support file via filePath) + that file's own sha256 |
skill-library-tree |
list every file in a skill (lines/size) — see what you actually wrote |
skill-library-create |
create a class-level umbrella skill (Chinese body, bilingual description) |
skill-library-patch |
targeted oldString→newString or whole-body replacement (frontmatter preserved) |
skill-library-write-file |
support files; overwriting an existing file backs up its previous content |
skill-library-delete-file |
delete one support file (read-first; backed up) |
skill-library-delete |
delete a redundant/merged-away skill (read-first; whole directory backed up) |
skill-library-adopt |
stamp an externally authored skill with the author marker (provenance only) |
skill-library-git |
self-check the library repo: status / diff / log (no push, no reset, never a shell) |
patch / write-file / delete must echo the expectedSha256 returned by skill-library-read. Writing without reading, or writing against a file that changed since the read, is refused. This is the only mechanical defence against rewriting someone's skill from memory.~/.dsh/skill-curator/backups/, keeping the latest 30, so a wrong move is recoverable.excludedSkills are read-only.Paths are boundary-checked; writes are atomic (tmp + rename). Bodies over 150 lines come back with a "move detail into references/" nudge in the tool result (advisory, never blocking).
The review prompt carries a shape contract aimed squarely at "skills only ever grow":
references/. Standard skeleton: one-line conclusion → when to use → how → pitfalls → boundary.// package.json — machine-readable
"engines": { "node": "^22.19.0 || >=24.0.0" },
"peerDependencies": { // the host runtime is the single source of truth; no bundled dsh-* copies
"@deepseek-ai/dsh-llm": ">=0.1.2-alpha.3 <0.1.8 || >=0.1.5-alpha.1 <0.1.6 || >=0.1.7-alpha.0 <0.1.8 || >=0.2.0-alpha.0 <0.3.0",
"@deepseek-ai/dsh-settings": "…same…",
"@deepseek-ai/dsh-subagent": "…same…",
"@deepseek-ai/dsh-tools": "…same…",
"@deepseek-ai/schemastery": "~3.18.4" // .volatile() needs 3.18.4+
},
"devDependencies": { …local copies of the four dsh-* packages + schemastery… } // no @deepseek-ai/dsh umbrella: it drags the whole host tree in
@deepseek-ai/dsh 0.1.7-rc.2 (Node v24).[major,minor,patch] tuple, so the plain <0.2.0 group does not cover 0.1.5-rc.1 or 0.1.7-rc.2. test/entry.test.mjs pins this with a 14-row decision table, a counter-proof (reverting to the old single range turns red), and a cross-check against the host's real semver.satisfies.settings.installSection was removed from dsh-settings. The namespace is the cordis row id, Config must be exported from the plugin module, and every live-editable field must be .volatile() (the host's _commitVolatile rewrites the live reference in place, no fiber restart). The settings card therefore hangs off configForms.get(ns) and the plugins.item slot.test/entry.test.mjs guards this (no install/postinstall/prepare, no optionalDependencies, dependency scope limited to @deepseek-ai/*).pnpm install # needs proxy/cache off the default npm cache on some hosts
npm test # entry + unit + smoke + client-smoke (all suites)
node test/entry.test.mjs # entry load, manifest, engines range, key-set parity, dep hygiene
node test/smoke.mjs # module/tool/whitelist smoke
node test/client-smoke.mjs # client bundle smoke (real component-tree execution)
docs/EVIDENCE.md records the isolated-instance install/start/E2E run (disposable DSH_HOME, no deployed instance touched); docs/AUDIT.md records the audit rounds.
对桌面端 D:\DeepSeek Harness\(FileVersion 0.2.0-rc.1)做了 asar 解包源码比对 +
真机闸实测。要点:
dsh: skipping profile bundle ...),插件整个 bundle 不加载(web 与 desktop 同时失效)。
追加 || >=0.2.0-alpha.0 <0.3.0 后放行。peerDependencies:判定函数(dsh-app-boot 的
evaluatePluginCompatibility)只遍历 peerDependencies 里 @deepseek-ai/dsh* 的条目,
从不读 dsh.engines.dsh(全树 grep 零消费者)。两者必须逐字一致,测试已守护。includePrerelease: true,此时「预发布可见性」规则被绕过,
于是上界自身的预发布也被放行(<0.1.8 放行 0.1.8-rc.1、<0.3.0 放行 0.3.0-alpha.0);
严格模式(pnpm 安装期)会拒绝它们。所以上界拦的是正式版,不是预发布。
若要连预发布一起拒,上界须写成 <0.3.0-0。docs/DSH-0.2.0-ADAPTATION.md。MIT
CLASSIFICATION EVIDENCE
系统优先读取 GitHub Topics,再与站内分类词典和词根规则比对。当前命中: dsh-skill。