Back to directory

dsh-claude-ux

Curated pickMaintenance: Active

eri64/dsh-claude-ux

DSH plugin: Claude-style Chinese risk control & conversation autonomy for DeepSeek Harness web

View on GitHubHomepage
$ npx -y @deepseek-ai/dsh plugin --profile web add github:eri64/dsh-claude-ux

70

stars

1

forks

JavaScript

Language

MIT

License

2026-08-15

Created

2026-08-15

Last push

A DSH web plugin that reproduces Claude's reversible region risk control and self-terminating conversation autonomy for abuse and severe-harm, installed via one `npx` command with auto-registration.

DSH integration

Native runtime

Author-claimed

Safety audit

Unaudited

Last verified

2026-08-29

License

MIT

01What can it help you accomplish?

  • Enforce Claude-style region risk control and conversation autonomy inside a DeepSeek Harness web profile

    Per-message refusal copy with attempt counters, session termination after `refusalEndsAfter` hits, and a Chat-ended panel that keeps rejecting on the server side even after restart

    Operators running DeepSeek Harness web who want Claude-like region gating plus self-terminating abusive or severely harmful conversations

  • Run reverse region risk control (flag non-Chinese users) and autonomously end abuse or severe-harm sessions

    Refusal ladder plus independent abuse-end / harm-end copy; self-harm and harm-to-others messages never trigger termination

    DSH web hosts who need to invert Claude's default region target or auto-end toxic sessions without manual moderation

02How to install into DeepSeek Harness

Installation steps

  1. 01

    Install with one command: `npx -y @deepseek-ai/dsh plugin --profile web add github:eri64/dsh-claude-ux` — the bundled `dsh.bundle` auto-registers the plugin, so no config files need editing.

    $ npx -y @deepseek-ai/dsh plugin --profile web add github:eri64/dsh-claude-ux

  2. 02

    Restart the web profile (`dsh web`) and hard-refresh the browser; a **「Claude 风控」** tab appears in Settings.

    $ dsh web

  3. 03

    The plugin ships **默认关闭** (`enabled: false`) to avoid locking yourself out; flip the master switch and click 保存并应用 to activate.

Verify the integration

Not specified by the author

03DSH integration and capability boundaries

DSH integrationNative runtime

Native DSH plugin installed into the web profile via the official dsh CLI (`npx @deepseek-ai/dsh plugin --profile web add github:eri64/dsh-claude-ux`); auto-registers from the bundled `dsh.bundle`, no manual config edits.

  • Region risk control (reversible)

    incoming web chat messages→refusal ladder → session end; injects a model-level region instruction into the system prompt

    inspects timezone, system & browser language, CJK fonts, proxy & relay-domain blacklist, public-IP geo, and WebRTC IP consistency to classify the target user
  • Conversation autonomy (abuse & severe-harm ending)

    chat messages→a warning, then an autonomous session end for sustained abuse or repeated severe-harm requests, with independent copy for abuse-end vs harm-end

    self-harm and harm-to-others messages never trigger terminationafter ending, the same-session messages keep getting server-side rejection
  • Abuse classification LLM (pre-screen)

    queued chat messages→purpose-tagged classification — strong words (傻逼/fuck etc.) judge instantly, weak / unmatched messages escalate to a standalone LLM context ruling

    a standalone LLM request for context ruling; the `purpose` tag is never written to session logs or model context
  • Steganographic control channel

    system prompt→region decision encoded via date format (`2026-06-30` ↔ `2026/06/30`); blacklist hits encoded via Unicode apostrophe variant (U+2019 ↔ U+02BC)

  • Live detection status

    HTTP GET→real-time detection status (target / host verdict / hit / signal score / public IP) at `/_dsh/claude/status`

04Who is it for? When not to use it?

Good for

  • Operators running DeepSeek Harness web who want Claude-like region gating plus self-terminating abusive or severely harmful conversations
  • DSH web hosts who need to invert Claude's default region target or auto-end toxic sessions without manual moderation

Not for

  • Ships **默认关闭** (`enabled: false`) so operators don't lock themselves out; you must open the master switch and click 保存并应用 before any behavior takes effect.
  • Region detection inspects the target user's timezone, system/browser language, CJK fonts, proxy & relay-domain blacklist, public-IP geo, and WebRTC IP consistency.

05Compatibility, maintenance and safety notes

  • Ships **默认关闭** (`enabled: false`) so operators don't lock themselves out; you must open the master switch and click 保存并应用 before any behavior takes effect.
  • Two optional external calls are off by default; apart from them **全部本地判定** (all judgment is local). Privacy details are in docs/PRIVACY.md.
  • Region detection inspects the target user's timezone, system/browser language, CJK fonts, proxy & relay-domain blacklist, public-IP geo, and WebRTC IP consistency.
  • Abuse classification can run a standalone LLM request; the model is chosen from DSH's configured model catalog or falls back to the session's main model.
2026-08-152026-08-15Not specified by the author

MIT · no tagged release (latest_release: null), last push 2026-08-15

06Frequently asked questions

How do I install dsh-claude-ux?

Run `npx -y @deepseek-ai/dsh plugin --profile web add github:eri64/dsh-claude-ux`. The bundled `dsh.bundle` auto-registers the plugin, so no config files need editing. The same command also upgrades to the latest version.

Is the plugin enabled by default?

No. It ships **默认关闭** (`enabled: false`) to avoid locking you out. After restarting the web profile and hard-refreshing, open Settings → **「Claude 风控」**, flip the master switch, and click 保存并应用.

What is reverse region risk control?

With `regionTarget` set to `non-cn`, the plugin risk-controls users detected as not Chinese — the inverse of Claude's default `cn` behavior. Detection is local: timezone, system/browser language, CJK fonts, proxy & relay-domain blacklist, public-IP geo, and WebRTC IP consistency.

Does the abuse classifier send my chats to an external model?

Abuse judging uses instant word-list hits plus an optional standalone LLM context ruling. That request is purpose-tagged and **不进会话日志与模型上下文** (never enters session logs or model context); you can pick the model from DSH's configured catalog or leave it blank to follow the session's main model.

How does it end a conversation?

Sustained abuse or repeated severe-harm requests get a warning, then an autonomous session end with independent copy for abuse-end vs harm-end. Self-harm and harm-to-others messages never trigger termination. After ending, the server keeps rejecting same-session messages.

08Data and sources

  • Author-claimedgithub.com5cb3d4973ca6…

    Claude 式「区域风控 + 自主结束对话」插件 —— 适用于 DeepSeek Harness 的 web profile。

  • Author-claimedgithub.com5cb3d4973ca6…

    包内自带注册条目(`dsh.bundle`),`dsh plugin` 安装后**自动注册**,无需手动改任何配置文件。

This page is generated from the project’s public documentation, repository metadata and a structured parse of DSH Plugins; last verified on 2026-08-29. Found an error? Submit a correction.

🏆

Best DeepSeek Harness Plugins

Twelve plugins worth installing first — picked from the whole catalog, across every category.

DSH Plugins is an independent community directory of DeepSeek Harness plugins. Not affiliated with or endorsed by DeepSeek. Third-party plugins are not security-audited — review the source before installing.

New DeepSeek Harness plugins, weekly. No spam.