Milvus(@milvusio)

We just open-sourced 𝗠𝗶𝗹𝘃𝘂𝘀 𝗳𝗼𝗿 𝗗𝗲𝗲𝗽𝗦𝗲𝗲𝗸 𝗛𝗮𝗿𝗻𝗲𝘀𝘀: DeepSeek Harness(DSH) plug...

8.5内容质量
We just open-sourced 𝗠𝗶𝗹𝘃𝘂𝘀 𝗳𝗼𝗿 𝗗𝗲𝗲𝗽𝗦𝗲𝗲𝗸 𝗛𝗮𝗿𝗻𝗲𝘀𝘀: DeepSeek Harness(DSH) plug...

TL;DR · AI 摘要

Milvus开源DSH插件实现与DeepSeek Harness集成,通过‘Everything is a Plugin’设计支持多种搜索操作但限制只读访问。

核心要点

  • DSH插件已获192K+ GitHub星标,核心设计为‘Everything is a Plugin’架构。
  • 插件仅暴露Milvus的只读操作,删除/插入等高危操作被严格限制。
  • Skill定义模型行为规则,Plugin控制工具接口暴露范围,形成权限分层。

结构提纲

按章节快速跳转。

  1. 宣布开源Milvus for DeepSeek Harness插件,已获192K+ GitHub星标。

  2. 提出‘Everything is a Plugin’架构理念,将模型、工具、Agent等全部模块化。

  3. 支持集合列表、模式检查、BM25/语义搜索等10+ Milvus操作接口。

  4. 通过Plugin/ Skill分层设计,Plugin控制接口暴露,Skill定义模型行为规则。

  5. 首版仅开放只读操作,删除/插入等高危操作被严格限制。

思维导图

用一张图看清主题之间的关系。

查看大纲文本(无障碍 / 无 JS 友好)
  • Milvus DSH插件
    • 核心设计
      • Everything is a Plugin架构
      • Plugin/Skill权限分层
    • 功能特性
      • 支持10+搜索操作
      • 只读接口限制
    • 安全机制
      • 接口暴露控制
      • 高危操作禁用

金句 / Highlights

值得收藏与分享的关键句。

#Milvus#DeepSeek Harness#插件架构#开源项目
打开原文

Milvus on X: "We just open-sourced 𝗠𝗶𝗹𝘃𝘂𝘀 𝗳𝗼𝗿 𝗗𝗲𝗲𝗽𝗦𝗲𝗲𝗸 𝗛𝗮𝗿𝗻𝗲𝘀𝘀: DeepSeek Harness(DSH) plugin for Milvus DeepSeek Harness is already at 192K+ GitHub stars. One of its core design ideas is “Everything is a Plugin”: models, tools, skills, file systems, and even the Agent" / X

Milvus

@milvusio

We just open-sourced 𝗠𝗶𝗹𝘃𝘂𝘀 𝗳𝗼𝗿 𝗗𝗲𝗲𝗽𝗦𝗲𝗲𝗸 𝗛𝗮𝗿𝗻𝗲𝘀𝘀: DeepSeek Harness(DSH) plugin for Milvus DeepSeek Harness is already at 192K+ GitHub stars. One of its core design ideas is “Everything is a Plugin”: models, tools, skills, file systems, and even the Agent Loop can all be plugged into the runtime. 𝗠𝗶𝗹𝘃𝘂𝘀 𝗻𝗼𝘄 𝗽𝗹𝘂𝗴𝘀 𝗶𝗻𝘁𝗼 𝗗𝗦𝗛 𝘁𝗼𝗼. Install the plugin, connect Milvus or Zilliz Cloud, and a DSH agent can list collections, inspect schemas, run scalar queries, semantic search, BM25 search, and hybrid search. Why make this a Plugin instead of only a Skill? A Skill can tell the model: “Inspect the schema before querying.” “Keep the result set small.” “Don’t delete production data.” But these are still instructions given to the model. The model still has to understand and follow them, and that is not the same as controlling what it can execute. The plugin controls the tool surface itself. The first release only exposes read-only Milvus operations. There is no Delete tool. Insert, Upsert, schema changes, and admin operations aren’t exposed either. If an operation isn’t exposed by the Plugin, the agent can’t call it through the Plugin. So the split is pretty straightforward: 𝗦𝗸𝗶𝗹𝗹: tells the model how to work with Milvus. 𝗣𝗹𝘂𝗴𝗶𝗻: defines what Milvus operations are available to the agent. Repo:

github.com/zilliztech/dsh…

3:57 PM · Aug 25, 2026

614

Views

1

13

2