# DSH Plugin Marketplace

> Browse and install plugins in DeepSeek Harness, and share your usage feedback with the community.

[![MIT License](https://img.shields.io/badge/license-MIT-blue.svg)](LICENSE)
[![DSH Index](https://img.shields.io/badge/DSH%20Index-dshindex.dev-47848F)](https://dshindex.dev)

**English** · [中文](README.zh.md)

![Marketplace: search a skill source and add its install prompt to the active Harness message box](assets/marketplace-skill-install.gif)

## What it is

[DSH Index](https://dshindex.dev) is a public index of DeepSeek Harness plugins, built from the GitHub [`dsh-plugin`](https://github.com/topics/dsh-plugin) topic. **DSH Plugin Marketplace** brings that index into [DeepSeek Harness](https://github.com/deepseek-ai/deepseek-harness): browse and inspect plugins, install them with your explicit confirmation, and report back to the community.

It runs inside DeepSeek Harness as a plugin, and ships the same capabilities to the `dsh-index` CLI.

## Installation

```sh
dsh plugin --profile web add @dshindex/dsh-plugin-marketplace
```

Then restart `dsh web`. The package ships a host plugin, a Web client bundle, and the `dsh-index` CLI in one bundle.

## Features

### In DSH Web

- **Discover** — search and inspect DSH Index sources, see the current indexed total, and hand an editable `Install plugin <repository URL>` prompt to the Agent.
- **Report issues** — turn a failure into a redacted GitHub or Gitee Issue draft; review and submit it, then watch its state.
- **Give feedback** — score a plugin, answer an FAQ, or report a pitfall.

### In the CLI

The same typed client powers the DSH tools and the `dsh-index` CLI:

```text
dsh-index doctor
dsh-index plugins list --query "git" --tag workflow --cursor <cursor>
dsh-index plugins summary
dsh-index plugins show owner/repo
dsh-index install prepare owner/repo
dsh-index issue draft github owner/repo --title "…" --body "…"
dsh-index issue submit github owner/repo --title "…" --body "…" --confirm
dsh-index issue watch github owner/repo 42 --etag <etag>
dsh-index report score owner/repo --score 4 --share
dsh-index report faq owner/repo --text "…" --share
dsh-index report pitfall owner/repo --text "…" --share
```

The CLI is an interface to the same policy-enforced library, not a route around consent. In Harness, the equivalent abilities are model-callable tools whose side-effecting calls go through the normal user-approval policy.

## Trust & consent by design

- A `dsh-plugin` topic match is a **discovery candidate**, never a compatibility or safety claim.
- Every install is a user-confirmed handoff — there is no background install.
- Issue drafts are redacted before submission; tokens, secrets, source files, and raw transcripts are excluded by default.
- Scores and reports stay private until the author opts in and DSH Index approves them.
- Issue polling is local and conservative, using conditional reads and backoff.

## Relationship to DSH Index

| Product | Responsibility | It does not do |
| --- | --- | --- |
| [DSH Index](https://dshindex.dev) | Public discovery, daily snapshots, observed movement, and moderated community reference | Certify a repository, audit security, or recommend an installation |
| Marketplace | DeepSeek Harness action layer: search, inspect, user-confirmed install, issue drafts/status, and contributions | Silently install packages, silently file issues, or publish raw user data |

## Development

```sh
npm install
npm run check   # build + 100% coverage tests
```

## License

MIT. See [LICENSE](LICENSE).
