DeepSeek Harness 的 OOMOL 连接器:经渐进式 MCP 发现已连接应用并执行 Action,不暴露供应商凭证
OOMOL Connector for DeepSeek Harness—discover connected apps and execute Actions through progressive MCP discovery without exposing provider credentials.
安装
dsh plugin --profile web add github:oomol-lab/dsh-oomolGitHub 源码安装:首次需按提示配置 allowBuilds 构建授权后重试
安装与环境配置指引、插件开发教程见 DSH 中文社区文档 ↗
安装即在你的机器上以你的权限运行第三方代码——它可读写文件、使用凭据、访问网络,DSH 的工具审批不会为插件代码加沙箱。「检测到 manifest」仅代表发现 dsh.bundle / dsh.plugin 清单,不构成兼容性或安全审查;安装前请审阅源码,不熟悉的插件先在不含密钥的环境试用。
README
目录
Use OOMOL Connector Actions from DeepSeek Harness through progressive MCP discovery.
dsh-oomol supports OOMOL Hosted and self-hosted OpenConnector. One plugin instance connects to one Connector endpoint.
Requirements
- Node.js 22.19 or later within Node.js 22, or Node.js 24+
- DeepSeek Harness
0.1.0-rc.7or0.1.0-rc.8 - An OOMOL account for OOMOL Hosted, or a running OpenConnector instance for self-hosted use
Install
Install the plugin into the Web profile and restart Harness:
dsh plugin --profile web add -w dsh-oomol
dsh web
The plugin appears under Settings > Plugins > OOMOL Connector.
OOMOL Hosted
The package connects to OOMOL Hosted by default:
- id: oomol
name: dsh-oomol
config:
endpoint: https://connector.oomol.com/v1/mcp
teamNameEnv: OOMOL_TEAM_NAME
serverName: oomol
toolCallTimeoutMs: 60000
failOnStartupError: false
Create an OOMOL MCP API key in OOMOL Console, then save it in the plugin settings. Harness Credentials stores the key under OOMOL_MCP_API_KEY.
Managed environments can provide it at launch:
export OOMOL_MCP_API_KEY="api_..."
dsh web
Set a team identity when needed:
export OOMOL_TEAM_NAME="your-team"
dsh web
The Connections button opens the native Harness panel for OOMOL Hosted accounts.
Self-hosted OpenConnector
Override the endpoint in the profile's cordis.patch.yml:
- update:
id: oomol
config:
endpoint: http://127.0.0.1:3000/mcp
The plugin recognizes every non-official endpoint as self-hosted. Local OpenConnector deployments can run without authentication. Deployments with runtime authentication use the key stored under OOMOL_CONNECT_RUNTIME_TOKEN:
export OOMOL_CONNECT_RUNTIME_TOKEN="oct_..."
dsh web
You can also save the runtime API key in the plugin settings. Create persistent runtime keys in the OpenConnector Console Access page.
Self-hosted HTTP endpoints are limited to localhost, 127.0.0.1, and [::1]. Remote deployments use HTTPS:
- update:
id: oomol
config:
endpoint: https://connect.example.com/mcp
The Connections button opens the endpoint origin, such as https://connect.example.com, where OpenConnector serves its Console.
Custom API key environment name
Both modes support an explicit credential reference:
- update:
id: oomol
config:
endpoint: https://connect.example.com/mcp
apiKeyEnv: MY_CONNECT_RUNTIME_TOKEN
Harness Credentials resolves apiKeyEnv first and the launch environment second.
Use Connector Actions
Start with discovery:
Show me the connectors available to this account.
Find Actions that can create a calendar event and inspect the selected Action schema.
For operations with external effects, include the target account and proposed arguments in your request before execution.
How it works
The plugin mounts DeepSeek Harness's Streamable HTTP MCP client with the selected Connector endpoint. Connector Actions remain progressively discoverable, keeping the permanent Harness tool surface small.
OOMOL Hosted stores Provider credentials in OOMOL Connector. Self-hosted deployments store them in OpenConnector. Harness stores only the Connector client key selected by apiKeyEnv.
The browser receives the credential reference and status metadata. Connector API keys and Provider credentials stay in Host-side secret boundaries.
See Architecture for implementation details.
Configuration
| Field | Default | Purpose |
|---|---|---|
endpoint |
https://connector.oomol.com/v1/mcp |
Streamable HTTP MCP endpoint |
apiKeyEnv |
Derived from endpoint |
Harness credential reference and launch environment name |
teamName |
unset | OOMOL Hosted team identity |
teamNameEnv |
OOMOL_TEAM_NAME |
OOMOL Hosted team environment name |
serverName |
oomol |
Harness MCP tool namespace |
toolCallTimeoutMs |
60000 |
Tool call timeout |
failOnStartupError |
false |
Fail Harness startup when MCP discovery fails |
Derived credential references:
| Endpoint mode | Default reference | Required |
|---|---|---|
| OOMOL Hosted | OOMOL_MCP_API_KEY |
Yes |
| Self-hosted | OOMOL_CONNECT_RUNTIME_TOKEN |
Depends on the OpenConnector deployment |
Troubleshooting
| Symptom | Action |
|---|---|
| Plugin missing from Settings | Install it in the web profile and restart dsh web |
| OOMOL Hosted shows Not configured | Save an OOMOL MCP API key in plugin settings |
| Self-hosted returns Unauthorized | Save a runtime API key created by that OpenConnector instance |
| Self-hosted Console link returns 404 | Open the Console URL configured by the OpenConnector deployment |
| Expected app is missing | Open the relevant Connector Console and configure the Provider connection |
| Connections panel stays closed | Widen the window to at least 1220 px so Harness can show its details column |
Run local diagnostics:
pnpm run doctor
Security
- Store Connector API keys in Harness Credentials or the launch environment.
- Use HTTPS for remote self-hosted endpoints.
- Review destructive, externally visible, permission-changing, and broad-sharing Actions before execution.
- Treat an ambiguous side-effecting call as an unknown outcome and inspect the Provider before retrying.
- Report vulnerabilities through SECURITY.md.
Development
pnpm install --frozen-lockfile
pnpm check
Build and install the checkout into a Web profile:
pnpm build
dsh plugin --profile web add -w "$(pwd)"
License: MIT
原始 README: https://github.com/oomol-lab/dsh-oomol/blob/main/README.md ↗
同类插件
查看全部 →
dsh-anchored-standard
两阶段 DeepSeek Harness 预设:先 Minimal 对齐的 bootstrap,再切完整 Standard 工具(Project2 98/99)

PicGo-Core
极致的图片上传引擎,CLI 与 API 双支持

awesome-deepseek-harness
DeepSeek Harness(DSH)及其优秀社区插件的精选指南。

awesome-deepseek-harness
DeepSeek Harness (DSH)生态系统:来自dsh-external/hub和公共dsh-plugin主题的精选插件、工具和基础设施。

AI-Novel-Writer
本地优先 AI 小说创作工作台,提供 Windows/macOS 桌面版与 DeepSeek Harness 插件开发预览,支持角色、大纲、章节蓝图、审稿修稿和本地模型。

mcp-for-stata
MCP-for-Stata:把 Stata 集成进你的 agent