DeepSeek Harness Plugin Hub

发布与管理完整 Harness Profiles,发现适合你的插件。

探索

插件目录环境预设文档中心动态

社区

发布插件联系我们报告问题

相关链接

Plugin Hub GitHubDeepSeek Harness 官方项目系统状态隐私说明
© 2026 DeepSeek Harness Plugin HubPowered byPaxTech

独立、非官方社区项目,与 DeepSeek 官方无隶属、授权或背书关系。

Plugin Model Quota — DeepSeek Harness 插件(DSH Plugin)
← Plugins
P

dsh-plugin-model-quota

Plugin Model Quota

在 DeepSeek Harness 中显示 CLIProxyAPI 订阅配额。

插件会安装到这里;不确定时保持 web。

npx -y @deepseek-ai/dsh plugin --profile web add github:lyq3/dsh-plugin-model-quota#4fcc8b096b2b00e1bd23ab7a893d6df1a01b9845
README兼容性版本

兼容性与来源证明

Plugin Model Quota 以 dsh-plugin-model-quota 发布,当前版本为 0.1.0。Plugin Hub 会校验它的 manifest,并保存精确安装来源,便于复现安装结果。

DSH 兼容范围
*
运行环境
web
发布来源
github
Registry 更新时间
2026/8/23

版本

0.1.0stable
2026/8/23

相关插件

正在加载相关插件…

最新版
0.1.0
DSH
*
HMR
重启进程
Tree shaking
未声明可安全裁剪
解包体积
未提供
文件数
未提供
Surface
web
许可证
MIT
发布源
github
GitHub
★ 1
周下载
0
最近提交
2026/8/23
查看源码 ↗
README Badge

点击下方 Badge 复制 Markdown,粘贴到 README 即可。

这是你的 Plugin?认领权益 · 优先安全扫描

验证 package.json 声明的 GitHub 仓库,即可管理这个公开页面。认领后,Hub 会优先安排当前版本的安全扫描,并在通过后公开展示结果。

认领这个 Plugin →
报告问题
DeepSeek Harness Plugin Hub
ProfilesPlugins分类动态文档登录管理 Profiles
ProfilesPlugins分类动态文档登录

相关插件

继续浏览 models-usage 分类下经过校验的插件。

Usage@linxin666/dsh-usage用于 dsh Web GUI 的使用统计插件:检测各提供商的余额和编码计划配额,并提供实时令牌使用记录,同时在侧边栏条目中显示当前会话提供商今日的使用量Whale Widgetdsh-whale-widgetDSH Web 界面右下角的 DeepSeek 余额小鲸鱼挂件:余额/今日已用/峰谷定价、自定义泡泡点击序列(文本/余额/今日/峰谷/图片/随机语句与并列加权选择)、逐行样式与字体、悬浮快捷编辑、音效与每轮消耗、自定义角色/动图/音效、吸附与翻转自定义Usage Stats@ychris12138/dsh-usage-statsdsh Web GUI 的令牌使用热力图、提供商余额和订阅配额Codex Connectdsh-codex-connect用于 DeepSeek Harness 的 ChatGPT OAuth 和 Codex 模型。

README

dsh-plugin-model-quota

A read-only DeepSeek Harness Web plugin that discovers accounts through the CLIProxyAPI Management API and displays Codex and Kimi subscription quotas below the conversation composer.

简体中文

Features

  • Dynamically reads GET /v0/management/auth-files; accounts are never hard-coded.
  • Queries Codex and Kimi through the fixed POST /v0/management/api-call endpoint.
  • Renders a compact one-line status and expandable details in conversation.composer.dock.
  • Polls every 60 seconds while visible and refreshes 3 seconds after a model turn becomes idle.
  • Provides a DSH plugin settings card for the CLIProxyAPI base URL, write-only Management Key, and refresh timings.
  • Keeps the Management Key in DSH's secret settings wire and out of browser responses.
  • Includes English and Chinese UI with desktop and mobile layouts.

Compatibility

  • DeepSeek Harness 0.1.0-rc.8
  • CLIProxyAPI v7.2.137
  • Node.js 22 or newer
  • V1 providers: Codex and Kimi

Installation

Install the package in the DSH Web profile and add it to the Cordis composition. The included cordis.patch.yml provides the default loader row.

Install from the GitHub source checkout:

git clone https://github.com/lyq3/dsh-plugin-model-quota.git
cd dsh-plugin-model-quota
pnpm install --frozen-lockfile
pnpm build
pnpm --dir ~/.dsh/profiles/web add "$PWD"
systemctl --user restart dsh-web.service

A local development checkout can be installed the same way after pnpm install && pnpm build, using pnpm --dir ~/.dsh/profiles/web add /path/to/dsh-plugin-model-quota.

Restart the existing DSH service that serves the page; do not start a replacement server.

Configuration

Open the loopback DSH page on the host and navigate to:

Settings → Plugins → Plugin configuration → Model Quota

Defaults:

SettingDefault
CLIProxyAPI Base URLhttp://127.0.0.1:8317
Refresh interval60 seconds
Post-turn refresh delay3 seconds
Request timeout10 seconds

The Management Key is write-only. Its input remains blank after saving; the Configured badge indicates that a key is stored.

Remote-browser limitation

DSH 0.1.0-rc.8 restricts settings.describe, settings.mutate, and credential APIs to loopback same-origin browsers. A DSH page opened through a public domain or LAN address may show:

settings are unavailable in this browser

This is a DSH security boundary, not a plugin failure. Configure the plugin from the host's 127.0.0.1 page. After configuration, the read-only quota dock can still render on remote conversation pages.

Network rules

  • The CLIProxyAPI Base URL must use a loopback hostname: localhost, 127.0.0.0/8, or [::1].
  • Loopback HTTP and HTTPS are supported; the default is http://127.0.0.1:8317.
  • Userinfo, query strings, fragments, path traversal, unsafe encodings, and redirects are rejected.
  • Remote CLIProxyAPI authorities are intentionally rejected in 0.1.x so the Host cannot disclose the Management Key through SSRF, DNS rebinding, or target misconfiguration. Use a local authenticated reverse proxy or tunnel endpoint bound to loopback when the gateway runs elsewhere.

Browser security boundary

The browser can call only these fixed same-origin routes:

GET  /api/model-quota
POST /api/model-quota/test-connection

It cannot choose an upstream URL, method, headers, provider, or auth index. Browser responses never contain:

  • CLIProxyAPI Management Keys
  • OAuth tokens
  • Raw auth indexes
  • Upstream Authorization headers
  • Raw upstream response bodies

Stable opaque account IDs are generated on the host. Account labels and sanitized quota DTOs are returned for display.

Development

pnpm install
pnpm verify

pnpm verify runs type checking, unit tests, Host and Client builds, lazy-CJS package verification, and a tarball dry run.

Known limitations

  • V1 parses Codex and Kimi only.
  • The DSH New Session hero does not render conversation.composer.dock; open or create a session to see the quota line.
  • Remote browsers cannot mutate DSH settings, as described above.
  • The plugin does not manage accounts, retain history, run a database, or install a background daemon.

Security reports

See SECURITY.md.

License

MIT