插件目录 / Developer / qqbot-clawbot
qqbot-clawbot
已验证 · 实测可装 twinsant
✓ 持续维护 基于 3 个官方 DSH 包
0Stars
0Forks
0未关闭 issue
JavaScript语言
2026-08-17最近推送
跨平台平台
功能简介
DeepSeek Harness的QQ机器人桥接插件(QQ开放平台WebSocket网关)。
我们的评价
可用 — 实测通过,早期项目
可用 — 实测通过,早期项目
DeepSeek Harness的QQ机器人桥接插件(QQ开放平台WebSocket网关)。 实测能干净安装、正常启动。早期项目,但功能可用。
「已验证」表示我们的自动化 CI 在干净 profile 里实际执行了 dsh plugin add 并启动成功——仅此而已。功能描述与版本兼容性均为作者声明。这不是安全审计,也不代表对第三方代码的背书。
README
QQ Bot Bridge
A persistent https://github.com/deepseek-ai/deepseek-harness host plugin that connects a QQ Open Platform robot (AppID + AppSecret) and bridges its messages into a per-day session of a chosen workspace.Features
- **Binding** — Settings → QQ Bot in the web UI (AppID + AppSecret with an eye toggle); the host half starts the WebSocket gateway on change. - **Bidirectional bridge** — forwards inbound text / voice transcription / images into aqqbot-YYYY-MM-DD session and sends the agent's reply back to QQ.
- **Persistence** — AppID / Secret / workspace / sender allowlist in $DSH_HOME/qqbot-clawbot/state.json (mode 600); reconnects on restart.
- **Sender allowlist (TOFU)** — the first sender after binding is trusted; others are dropped.
- **C2C only by default** — TOFU assumes the first sender is the owner, which is unsafe in groups. Group / guild / dm messages are dropped unless QQBOT_ALLOW_GROUP=true (still TOFU-gated).
- **Media hardening** — image download restricted to Tencent CDN hosts, capped at 20 MB. Images attach inline only when the target model supports vision.
- **Human-in-the-loop (HITL) approval** — escalating a sandboxed action prompts ⚠️ 需要审批 … 回复「允许」或「拒绝」 in QQ with the tool's arguments; the tool blocks until you reply. C2C chats only — group-triggered approvals fall through to the web UI.
Tools
| Tool | Purpose | | --- | --- | |qqbot_list_workspaces | list candidate workspaces |
| qqbot_status() | query binding/connection status |
| qqbot_unbind() | unbind and disconnect |
Binding is done from the web UI: Settings → QQ Bot (AppID / AppSecret / workspace), stored in the qqbot settings namespace; the host half auto-connects on change.
Install
This package builds inside a https://github.com/deepseek-ai/deepseek-harness workspace checkout. 1. Place (or symlink) this directory atpackages/qqbot/qqbot-clawbot in the harness repo, then run pnpm install at the repo root.
2. Build the two halves:
``sh
node_modules/.bin/tsc -b packages/qqbot/qqbot-clawbot/tsconfig.client.json
cd packages/qqbot/qqbot-clawbot && ../../../node_modules/.bin/tsdown --env.DSH_BUILD_FACE client
`
3. Create a robot at https://q.qq.com/ and copy its AppID + AppSecret.
4. Register the plugin by package name in ~/.dsh/profiles/web/cordis.patch.yml:
`yaml
- insert:
- id: qqbot-clawbot
name: '@deepseek-ai/dsh-qqbot-clawbot'
`
5. Restart dsh web`, open Settings → QQ Bot, and enter the AppID + AppSecret (eye toggle reveals the secret).
安装
🧩 让 Agent 自动装(推荐)
装一次目录插件,之后本站所有插件都能让 DeepSeek Harness 自动找、自动装:
dsh plugin add dshbase-catalog 然后对 agent 说「帮我装 qqbot-clawbot」,它会在目录里找到并自动安装。文档:dshbase-catalog · 已验证场景包。
该插件是 GitHub 源码(未发 npm)——直接从仓库装:
Web profile:
dsh plugin --profile web add github:twinsant/qqbot-clawbot Headless(CLI)profile:
dsh plugin --profile headless add github:twinsant/qqbot-clawbot 实测报告
验证通过:从 GitHub 源码完成 L1 安装 + L2 加载 + L3 运行(dsh 0.1.0-rc.6)。
使用场景
扩展 agent 的编码能力面——给它一个新工具、工作流或集成,让它接手以前做不了的开发任务。
适合谁
想让 dsh 在真实代码库上像队友一样干活的开发者——能改、能跑、能验证,而不只是回答问题。
二次开发建议
工具/命令面就是缝:暴露更多 SDK 能力、加更聪明的上下文接线,或收紧改代码与验证之间的循环。