dsh-qr-phone-login
Manifest validQR-code phone login for a DeepSeek Harness over its configured public HTTPS origin.
dsh-qr-phone-login
Adds a Plugins → QR phone login page to DSH Web. A signed-in user can display a QR code that opens the same DSH installation on a phone and signs it in using DSH's launch-token mechanism.
Install
Install the latest tagged GitHub release:
dsh plugin --profile web add 'https://github.com/yoggu/dsh-qr-phone-login.git#v0.1.4'
Or download the source and link the local checkout:
git clone --branch v0.1.4 --depth 1 https://github.com/yoggu/dsh-qr-phone-login.git
cd dsh-qr-phone-login
pnpm install
dsh plugin --profile web add "link:$(pwd)"
Keep a linked checkout in place while the plugin is installed. Use the profile you actually run if it is not web.
Restart DSH Web if necessary and reload the page. Configure publicOrigin on the plugin page to the HTTPS origin actually served to the phone (for example https://dsh.example.com), with no path or query. The plugin does not set up HTTPS, DNS, Tailscale or a reverse proxy. The phone must be able to reach that origin.
To uninstall: dsh plugin --profile web remove dsh-qr-phone-login.
Language
Settings, instructions, accessible image labels, and Host status/error messages are English-only, matching the currently supported Harness language. There is no plugin-specific language selector or setting, and no German or Chinese translations. Previously saved language values are ignored; the public origin, token, and authentication behavior are unchanged.
Security
Anyone who sees or photographs the displayed QR code can sign in with the same access. Display it privately; do not share screenshots, logs or SVG responses. The SVG route is protected by DSH's existing browser authentication and Origin checks, and the plugin does not put the launch token into configuration. The token encoded in the QR code is process-wide and reusable until the DSH process restarts; this plugin cannot make it one-time or short-lived. Restart DSH to rotate it if exposed. DSH login cookies can remain valid after that restart until their configured expiry (30 days by default); revoke affected sessions separately where supported. This is suitable only for trusted installations and users.
Tests and license
Run npm test after installing the DSH peer dependencies. MIT; see LICENSE.
Comments
Loading…
Similar plugins
by Raiyan007-gb
Scan a QR code in Settings to open the DeepSeek Harness web UI on your phone inside the active session via a cloudflared quick tunnel.
★ 2
↓ 176/wk
MIT
JavaScript
Sep 5, 2026
dsh plugin --profile web add dsh-remote-tunnel-easyby mervyn-teo
A QR-code button above Settings that lets phones connect to the web UI through an auth-gated reverse proxy.
★ 2
↓ 291/wk
MIT
JavaScript
Aug 24, 2026
dsh plugin --profile web add dsh-plugin-qr-connectby sorsama
Authenticated remote access for a DeepSeek Harness web profile: TLS, QR/passcode device pairing, password sign-in, and per-device revocation in front of an untouched loopback harness.
★ 9
↓ 158/wk
MIT
TypeScript
Aug 28, 2026
dsh plugin --profile web add dsh-relayby haibala-aii
Haibala mobile remote control for DeepSeek Harness: scan-to-pair QR and a phone surface at /m
★ 0
BSD-3-Clause
TypeScript
Aug 15, 2026
dsh plugin --profile web add @haibala-aii/dsh-extensions-remotelinkby JUANWANG-BUAA
Auditable, token-gated DeepSeek Harness remote gateway: mobile QR access, per-device sessions, Host/Origin rewrite, settings/credentials/directory support.
★ 47
MIT
TypeScript
Oct 10, 2026
dsh plugin --profile web add dsh-full-remoteby KyoMio
Turn DeepSeek Harness into a phone app you can securely reach from anywhere: minimal mobile UI rework + pairing-code gateway + PWA + Web Push. 让 DSH 变成可公网安全访问的手机 App
★ 14
↓ 746/wk
NOASSERTION
JavaScript
Oct 11, 2026
dsh plugin --profile web add dsh-zen-remote