woyeshishen / dsh-lan-access

Listed

DeepSeek Harness static Cordis plugin: bind the Web GUI to 0.0.0.0 for LAN access + crypto.randomUUID polyfill for non-secure HTTP origins.

mainTool View source

Installation

npx -y @deepseek-ai/dsh plugin --profile web add github:woyeshishen/dsh-lan-access

This installation command is an unverified starting point generated from the GitHub repository address.

README

Maintainer-authored documentation snapshot.

View on GitHub ↗
Commit 2727fa7Synced Aug 18, 2026

dsh-lan-access

npm version license

中文 | English

Bind the DeepSeek Harness (DSH) Web GUI to 0.0.0.0 so other machines on the LAN can reach it — plus a crypto.randomUUID polyfill that makes the GUI fully work over plain-HTTP LAN origins — without modifying any shipped dsh code.

Features

🌐 LAN accessRebind the Web GUI to 0.0.0.0 via an id-targeted config patch. No --host flag involved, so the built-in 0.0.0.0 guard never runs
🛡️ crypto.randomUUID polyfillInjects a tiny script into index.html so /api RPCs work on non-secure HTTP origins (the Web API is undefined there)
🔓 Remote privileged methodsSettings / credentials / agent presets work from the LAN too (allowRemotePrivileged, default on)
📦 Install once, keep workingStatic bundle auto-mounts into the profile and loads at DSH startup, survives restarts

Install

Windows (PowerShell)

irm https://raw.githubusercontent.com/woyeshishen/dsh-lan-access/main/scripts/install.ps1 | iex

macOS / Linux

bash <(curl -fsSL https://raw.githubusercontent.com/woyeshishen/dsh-lan-access/main/scripts/install.sh)

dsh plugin command

From npm

dsh plugin --profile web add @woyeshishen/dsh-lan-access

From GitHub

dsh plugin --profile web add github:woyeshishen/dsh-lan-access

After install, the plugin auto-mounts into the profile; restart DSH (or hot-reload) to activate.

Notes

  • The bind host is pinned to 0.0.0.0 by this plugin's patch; edit cordis.patch.yml if you need a different posture.
  • --port still works (the patch keeps the !!js port expression).
  • By default privileged /api methods (settings/credentials/agent presets) are reachable from trusted LAN hosts (allowRemotePrivileged: true); set config: { allowRemotePrivileged: false } on the lan-access row to restore loopback-only for them.
  • Uninstall: dsh plugin --profile web remove @woyeshishen/dsh-lan-access
  • This plugin intentionally exposes a remote-code-execution surface to the network — only use it on a trusted LAN.

Development

npm install
npm run build     # tsc -> lib/
npm run check     # type-check only
npm run check:legacy   # cordis.patch.yml structure sanity check

License

Apache-2.0

Project files and signals

Shown items are public repository signals detected in the directory snapshot.

Contributing guideDetected
DocumentationDetected

Repository information

Language
PowerShell
License
Apache-2.0
Last updated
Aug 15, 2026, 10:24 PM

Install deliberately

Review source code, permissions, lifecycle hooks, dependencies and network access. Test untrusted plugins in an isolated environment.