DeepSeek Harness Plugin Hub

Publish and manage complete Harness Profiles. Discover Plugins for your next setup.

Explore

PluginsPresetsDocsNews

Community

Publish a pluginContactReport an issue

Resources

Plugin Hub on GitHubDeepSeek HarnessSystem statusPrivacy notice
© 2026 DeepSeek Harness Plugin HubPowered byPaxTech

Independent and unofficial. Not affiliated with, authorized by, or endorsed by DeepSeek.

Cloudflare Mcp — DSH Plugin for DeepSeek Harness
← Plugins
C

dsh-cloudflare-mcp

Cloudflare Mcp

Cloudflare MCP connection for DeepSeek Harness: official OAuth 2.0 flow (dynamic client registration + PKCE) against mcp.cloudflare.com, Cloudflare API tools under mcp__cloudflare__*, and a web settings panel

The plugin will be installed here. Keep web if you are unsure.

npx -y @deepseek-ai/dsh plugin --profile web add github:zhengjy01/dsh-cloudflare-mcp#e2a32addd2a35f9fa522e2c482ef193f8852dbb7
READMECompatibilityVersions

Compatibility and provenance

Cloudflare Mcp is published as dsh-cloudflare-mcp and currently resolves to version 0.1.1. The Hub verifies its manifest and preserves the exact installation source for reproducible installs.

DSH compatibility
*
Runtime surfaces
web
Release source
github
Registry updated
8/31/2026

Versions

0.1.1
stable
8/31/2026

Related plugins

Loading related plugins…

Latest
0.1.1
DSH
*
HMR
Process restart
Tree shaking
Safe tree shaking not declared
Unpacked size
Unavailable
Files
Unavailable
Surface
web
License
MIT
Source
github
GitHub
★ 0
Weekly downloads
0
Last push
8/31/2026
View source ↗
README badge

Click the badge to copy Markdown for your README.

Do you maintain this Plugin?Claim benefit · Priority security scan

Verify the GitHub repository declared in package.json to manage this listing. After you claim it, Hub will prioritize a security scan of the current version and publish the result when it passes.

Claim this Plugin →
Report an issue
DeepSeek Harness Plugin Hub
ProfilesPluginsCategoriesNewsDocsSign inManage Profiles
ProfilesPluginsCategoriesNewsDocsSign in

Related plugins

More verified plugins in integrations-communication.

Acp App@deepseek-ai/dsh-acp-appThe dsh ACP profile bundle: automation-only JSON-RPC stdio and process lifecycle over dsh-baseIm@xmanrui/dsh-im把十一种 IM 渠道和公网 AI Office 接入本机 DeepSeek Harness。 Connect eleven IM channels and a public AI Office to a local DeepSeek Harness.Pocketdsh-pocketPut DeepSeek Harness in your pocket: one package, one settings page, and scan a QR code on your phone to access DSH on your computer in sync (LAN + public network, real-time screen mirroring).DSCODE@toddzheng024/dscode-bundleA complete DeepSeek coding agent with persistent shell, Ultra collaboration and automatic permission review.

README

dsh-cloudflare-mcp

Cloudflare MCP connection for DeepSeek Harness (DSH): the official Cloudflare API MCP server (mcp.cloudflare.com) with the full OAuth 2.0 client dance — dynamic client registration, PKCE S256, loopback callback on the GUI's own web server, refresh-token grant — plus a web settings panel.

Once authorized, every Cloudflare API tool (accounts, Workers, Pages, DNS, R2, KV, D1, AI, …) becomes available in agent sessions as mcp__cloudflare__*, auto-refreshing its token on 401.

Why this plugin

DSH's built-in @deepseek-ai/dsh-mcp-client supports static headers only — it cannot complete the OAuth flow that mcp.cloudflare.com requires (WWW-Authenticate: Bearer realm="OAuth"). This plugin implements the OAuth client itself on the official @modelcontextprotocol/sdk primitives, so the connection is genuinely authenticated, not token-pasted.

Install

# local development (link)
dsh plugin --profile web add link:/path/to/dsh-cloudflare-mcp

The bundle patch mounts the plugin row automatically; a Host restart is needed for the layer to compose. Tokens live in ~/.dsh/dsh-cloudflare-mcp.json (mode 0600).

Authorize

Two ways, both starting the same OAuth flow against Cloudflare:

  1. Settings panel (Web GUI → 设置 → Cloudflare MCP): click 开始授权, the browser opens Cloudflare's consent page, and the loopback callback completes automatically. 测试连接 lists the discovered tools.
  2. Chat: ask the agent to run cloudflare_mcp_oauth_start, open the returned authorizeUrl, or paste the callback code back into cloudflare_mcp_oauth_finish.

Tools

Agent-facing helpers (mounted on ctx.tools):

toolwhat it does
cloudflare_mcp_statusauthorization + connection state, tool count (no secrets)
cloudflare_mcp_oauth_startbegin the OAuth flow, return the browser URL
cloudflare_mcp_oauth_finishmanual code-paste fallback
cloudflare_mcp_testconnect and list the MCP server's tools
cloudflare_mcp_clearwipe credentials and disconnect

Plus the MCP server's own tools as mcp__cloudflare__*.

API routes

All loopback-only (127.0.0.1), except the OAuth callback which accepts the cross-site landing from mcp.cloudflare.com while still verifying the OAuth state:

  • GET /api/dsh-cloudflare-mcp/status
  • POST /api/dsh-cloudflare-mcp/oauth/start
  • GET /api/dsh-cloudflare-mcp/oauth/callback (browser landing)
  • POST /api/dsh-cloudflare-mcp/oauth/finish
  • POST /api/dsh-cloudflare-mcp/oauth/refresh
  • POST /api/dsh-cloudflare-mcp/test
  • POST /api/dsh-cloudflare-mcp/clear

Development

pnpm install
npm run typecheck
npm run test                  # offline store/provider smoke
DSH_CLOUDFLARE_MCP_LIVE=1 npm run test   # live OAuth phase-1 against mcp.cloudflare.com
npm run build                 # tsc declarations + tsdown (lib/ + lib/client.js)

License

MIT