
Security News
arXiv Is Rate Limiting Authors Following a Flood of AI Slop Submissions
arXiv now limits authors to two submissions a month as AI slop overwhelms moderators, delays good papers, and sparks debate over applying the limit to everyone.
dsh-plugin-workbench
Advanced tools
VS Code-style workspace file explorer + editable preview for the dsh web GUI
能直接改文件的 VS Code 风格工作台——不是只读预览:文件树 + 可编辑代码预览 (语法高亮、标签页、行号栏)+ 右键文件操作(新建 / 重命名 / 删除 / 复制 / 剪切 / 粘贴 / 在系统中打开 / 在资源管理器打开)+ 图片内联预览,每个工作区独立保存状态。 装上之后,DSH 网页就是一个轻量代码编辑器。
⚠️ 安装后需打一个布局补丁(见下方安装节);0.0.9 起插件启动时会自动检测并重打, DSH 升级覆盖 bundle 后无需再手动跑。
Ctrl+S/Cmd+S 保存;
md 默认渲染预览(源码/渲染一键切换),.txt 等散文格式与超大代码文件
自动降级为纯文本编辑,加载快、不卡界面explorer / macOS open,WSL 自动转译)@相对工作区路径 插入聊天输入框;
发送后消息中的 @相对路径 渲染为超链接(点击在工作台预览打开),
语法为 @ + 相对工作区路径,其它 @文本 一律按原样显示、无特殊含义.dsh-trash,不复制字节)reveal 端点执行/dsh-plugin-files/raw/<path> 内联显示fs.watch(监听父目录,可存活原子重命名),
变更经 SSE /dsh-plugin-files/events 推送,干净标签自动同步无需环境变量或配置文件,安装后打一次布局补丁即可:
scripts/patch-layout.mjs
(幂等、非阻塞;针对 dsh-client-ui-layout@0.1.0-rc.6 编写)。DSH 升级覆盖
bundle 后插件会自动补回;若自动重打失败(锚点失效),可手动运行
node node_modules/dsh-plugin-workbench/scripts/patch-layout.mjs;/dsh-plugin-files,写操作显式以 danger-full-access 执行,无外部配置项。布局补丁针对
dsh-client-ui-layout@0.1.0-rc.6编写,其他版本需更新锚点。 0.0.9 起插件启动时自动检测并重打补丁(详见「配置」节)。
# npm(推荐)
dsh plugin --profile web add dsh-plugin-workbench
# 或 GitHub
dsh plugin --profile web add github:Pasumao/dsh-plugin-workbench
源码安装(本地开发 / 调试):
git clone https://github.com/Pasumao/dsh-plugin-workbench.git
cd dsh-plugin-workbench
pnpm install
pnpm run build # 产出 lib/index.js 与 lib/client.js
# 以 link: 方式挂载进 profile
安装后打布局补丁并重启:
node node_modules/dsh-plugin-workbench/scripts/patch-layout.mjs
# 重启 dsh web
0.0.9 起插件启动时会自动检测并重打布局补丁,DSH 升级后无需再手动跑; 仅当自动重打失败(锚点失效)时才需手动执行上面的命令。
pnpm install
pnpm run build # 产出 lib/index.js(host)与 lib/client.js(browser)
pnpm run typecheck
dsh plugin --profile web remove dsh-plugin-workbench
# 并还原布局 bundle(patches/layout.backup/client.js.orig → dsh-client-ui-layout/lib/client.js)
/dsh-plugin-files RPC 通道仅限 loopback;写操作显式以 danger-full-access 执行;
右键菜单的新建/重命名/删除同样经该通道(loopback 信任,与编辑器保存一致)/dsh-plugin-files/raw/<path>:仅响应图片扩展名,
先经 ctx.fs.resolve → stat(沙箱一致的路径解析)再读取字节,20MB 上限scripts/patch-layout.mjs见 CONTRIBUTING 与 CODE_OF_CONDUCT; 变更记录见 CHANGELOG。
本插件属于 Pasumao 的 dsh 插件生态,同系列已发布插件可搭配使用:
| 插件(npm) | GitHub | 说明 |
|---|---|---|
| dsh-notify | GitHub 仓库 | Windows 原生通知 + 系统托盘 |
| dsh-plugin-choice-refresh | GitHub 仓库 | 选择增强:重新生成选项 / 更多选项 |
| dsh-plugin-dev-kb | GitHub 仓库 | 插件开发知识库(官方文档完整镜像 + 技能) |
| dsh-plugin-image-tools | GitHub 仓库 | 图片选择卡 + 回复内嵌图片 + 盲模型收图 |
| dsh-plugin-table-zoom | GitHub 仓库 | 聊天长表格浮窗查看 + 一键复制 Markdown |
| dsh-plugin-windows-guard | GitHub 仓库 | Windows 环境防坑守则 skill(编码/转义/路径/进程/乱码预防) |
本系列其余插件见 Pasumao · dsh 插件;觉得好用欢迎到 GitHub 点 ⭐。
部分源码与文档由 AI 辅助生成(DeepSeek Harness),均经人工审查与实机验证; 权限相关逻辑已按最小权限原则复核。
FAQs
[DISCONTINUED 2026-09-11: DSH >=0.1.5 ships a built-in workspace file tree + document preview (dsh-client-ui-sidebar-files / sidebar-documentpreview); please uninstall and use the built-in features] VS Code-style workspace file explorer for the DeepSeek H
The npm package dsh-plugin-workbench receives a total of 250 weekly downloads. As such, dsh-plugin-workbench popularity was classified as not popular.
We found that dsh-plugin-workbench demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
arXiv now limits authors to two submissions a month as AI slop overwhelms moderators, delays good papers, and sparks debate over applying the limit to everyone.

Research
/Security News
A new GhostAction wave hits hundreds of GitHub repos, expanding CI/CD secret theft to cloud and AI credentials in source code and git history.

Research
/Security News
Tensorlake npm SDK version 0.5.144 was compromised in a ChainDrop / Shai-Hulud attack, delivering credential-stealing malware.