← Back to home@vecnode

vncode

vncode 🤖 Agent IDE with core DSH. Launchers run on Windows, macOS and Linux - the Windows half is PowerShell, the macOS/Linux half is plain POSIX shell.

Stars
7
Language
JavaScript
Created
Sep 8, 2026
Updated
Oct 6, 2026
GitHub repo

Introduction

🤖 vncode

Language: JavaScript Language: Rust
License: MIT DeepSeek Harness 0.2.0-rc.2 Platforms: Windows | macOS | Linux

Agent IDE with core DSH.

vncode-social

A native cross-platform app plus a pack of standard dsh bundles. The plugins are plain JavaScript with zero npm dependencies; the launchers run on Windows, macOS and Linux (PowerShell on one side, plain POSIX shell on the other, and the Unix half never needs PowerShell).

The vncode window while the pinned harness starts: a dark splash with the mark, the name and a "Starting the harness…" line

Run

WindowsmacOS / Linux
Native windowscripts\run-desktop.batcargo build --release in app/src-tauri
Browser tabscripts\run-web.bat./scripts/run-web.sh

Both start the pinned harness and open the URL it prints: the native window loads it in a WebView2 / WKWebView / WebKitGTK window, the other in Chrome, falling back to your default browser. The URL is opened only when it names a loopback address, and the launch token is never written to a file - both rules are in SECURITY.md.

Plugins

Every package's own README is the reference for what it does, why it is built that way and what it touches. The exact versions are in .dsh-version.json.

PackageWhat it adds
dsh-vn-masterthe browser-free master, installed last - the slot pack-wide patches and row restatements go in (it enables the Browser tab on the web profile, and removes the feedback surface)
dsh-rightbarthe pack's own right bar: tab strip, docking panel and the sidebarRight registry (a fork of the shipped bar)
dsh-rightbar-filesthe Files tab type on top of that bar
dsh-editortext and code tabs (vendored CodeMirror 6), with a Markdown preview and Save/Create
dsh-gittreeread-only History tab: the workspace's commits as a graph rail (lanes, merges, PR chips), and the files each one touched
dsh-imagean image viewer that fits, zooms, pans, and reads the source pixel under the pointer
dsh-audioa waveform surface: WAV/AIFF/FLAC, one track per channel, dBFS, selection and playback
dsh-mediamedia the agent can work with: media_probe / media_run / media_frames over a pinned, SHA-256-verified ffmpeg copy, plus the routes the video tab streams through
dsh-supercolliderSuperCollider the agent can play: ten sc_* tools over one long-lived sclang session (a warm round trip is ~31 ms, and what the agent defines is still there next call) and a hand-written OSC client to scsynth, the installed .schelp reference indexed for sc_help, the .scd file workflow, and five skills that teach the language, SynthDefs and live coding — every code example in them compiled by a check. Zero npm dependencies and nothing bundled — it finds the machine's own SuperCollider — and its own UI is one small console tab, with .scd files opening in the editor
dsh-videoa player tab that streams and seeks any video container, with an ffprobe facts panel, chapter jumps and a one-click remux when the browser cannot decode it
dsh-diagramsMermaid and TikZ as tabs and six agent tools, every write validated before it is stored
dsh-pdfPDF as a surface the agent can read and scan, plus a reader tab with thumbnails and bookmarks
dsh-canvasthe Canvas tab, in the chat panel's own view ring to the right of Trajectory: a design page the agent drives with nine tools, for GitHub and LinkedIn banners and posters. The browser is the rasterizer, so the model renders a design, reads its own PNG back with read_image and fixes it; presets fix each destination's pixels and safe areas, and two bundled skills carry the craft and the per-network delivery rules. Ships the two OFL font families it renders with, pinned by SHA-256
dsh-browserthe Browser tab, replacing the shipped iframe one: the page is rendered on the host in a disposable engine behind an https-only egress gate (screenshot, post-script text, measured styles) for the tab and for browser_render / browser_query / browser_text — built and shipped, but turned OFF: the master layer disables the row, so a profile loads no tab, no routes, no tools and no client bundle
dsh-skillsthe Skills browser: a header button left of the zoom control opens every skill this conversation loads, with its markdown and inline editing
dsh-cmdbarthe command bar: the agent's own commands in a bottom dock (a read-only transcript of the conversation's log — the terminals were removed in alpha.12; the panel follows whichever conversation is on screen)
dsh-themesheader controls (themes incl. Nord/Monokai/Hacker/Cyber, screenshot, page zoom), the Markdown paper, VN branding, and the shipped account-menu Feedback row hidden
dsh-ui-statethe pack's own UI state (zoom, theme, dock, column widths) remembered host-side
dsh-modalthe shared dialog surface (modals) the pack's controls use
dsh-open-in-appOpen In… patched to open the OS file browser directly

The pack used to ship its own Files panel (dsh-files, earlier dsh-focus); that was retired when the harness grew a real right Sidebar, and the installer prunes the old names so an upgrade cannot double-mount.

Security & license

  • MIT - see LICENSE. Plugins are authored by vecnode.
  • SECURITY.md: the threat model, the launch token, what the pack deliberately does not do, and how check-no-secrets.mjs keeps a credential out of a commit. Report a vulnerability privately, as described there.
  • ARCHITECTURE.md is the deep dive; docs/ holds install, distribute, compatibility and per-host notes.