Skip to main content

Plugins

Browse, filter, and install DeepSeek-Harness plugins.

135 plugins found

K

cc-safety-net

kenryu42/cc-safety-net

A pre-execution guard for AI coding agents. It blocks destructive Git and file system commands, plus common attempts to access sensitive files, before a tool call runs. Supports Amp Code, Antigravity CLI, Claude Code, Codex, Cursor, DeepSeek Harness, Gemini CLI, GitHub Copilot CLI, Grok Build, Hermes Agent, Kimi Code, OpenClaw, OpenCode, and Pi.

1.6kyesterdaySecurity & PermissionsMIT
T

api-relay-audit

toby-bridges/api-relay-audit

Runs local security audits of AI API relays and LLM proxies from DeepSeek Harness, producing Markdown reports for prompt injection, model substitution signals, tool-call rewriting, error leakage, stream integrity, and profile-gated Web3 risks.

86516 days agoSecurity & PermissionsAGPL-3.0
S

dsh-redteam-model

seaof0/dsh-redteam-model

Authorized-security DSH collection: nine work modes (redteam coordinator, pentest, code audit, binary analysis, attack-defense, AV evasion, incident response, cloud security, CTF solving) and fifteen runtime plugins, managed from a settings page with one-click deploy, install, update and uninstall.

6598 days agoSecurity & PermissionsMIT
D

dsh-reverse-skill

dhicoc/dsh-reverse-skill

Complete reverse-skill pack (85 SKILL.md) as a DeepSeek Harness Cordis plugin: reverse engineering, authorized pentesting and security-research skill router.

1922 days agoSkillsMIT
W

dsh-bridge

wenbin-wb/dsh-bridge

Remote and mobile access for DeepSeek Harness: provides LAN QR code connection, Cloudflare/custom tunnels, WeChat, QQ, Feishu, Telegram bot integration, and security authentication.

1802 days agoIntegrations & RemoteMIT
A

helm-d (helmd)

adwmc/helm-d

Single-bundle reverse-engineering and pentest security plugin: first-turn tool narrowing, domain routing, and 33 tools covering APK, web, native binary, protocol, malware and LLM samples — with unpacking, license-bypass and anti-analysis case playbooks, an H-CoT evaluation engine (semantic routing, /hcot command), a web workbench with a ledger-driven tool shelf, an on-disk case workflow (auto-persisted evidence chain, E-numbered validated findings, post-compaction resume), GitHub-based external tool discovery, and 361 on-demand reference docs.

946 days agoSecurity & PermissionsMIT
N

dsh-plugin-gating-hub

noob-stupid/dsh-plugin-gating-hub

Framework-upgrade safety and plugin gating for DSH: a pre-upgrade session-format contract preflight that adapts incompatible plugins and agent presets before you upgrade, automatic rollback on failure, auto-quarantine of plugins that broke a boot, plus environment fingerprinting and a public contract-rule pack. The built-in multi-source marketplace is a discovery layer only.

934 hours agoDev & Plugin ToolsMIT
P

dsh-secure-audit

pensivefei/dsh-secure-audit

Read-only security and compliance plugin for DeepSeek Harness: prompt-injection detection, Chinese-PII redaction, and a local configuration audit with redacted, reproducible reports.

853 days agoSecurity & PermissionsMIT
X

dsh-remote

xgone/dsh-remote

Secure remote access for the DeepSeek Harness Web UI: a login gate, MFA/TOTP, signed session cookies, optional admin/user/guest roles, in-browser workspace selection, and allowlisted remote file previews.

694 days agoSecurity & PermissionsMIT
J

dsh-redteam-mode (redteam-bundle)

jueze-2019/dsh-redteam-mode

Red-team engagement mode: send one target organization name and a planner session runs a five-role execution team (recon, asset triage, vulnerability discovery, exploitation, internal pivot) at up to three concurrent agents, preflight-checking skills and resources and asking once for any missing key or VPS first, guided by a built-in first-run onboarding skill; scoring follows the merged intrusion scoring rules (8 categories / 25 points) with server-side caps, highest-privilege-wins and per-service dedup, and self-registered accounts never score; findings land in a local SQLite fact base with discovery timestamps, shown in a persistent right-side console of 12 tabs (asset mapping with a discovery timeline, agent roster, session/tunnel state, five-stage attack chain, scoring targets, a report that spells out how each score was obtained — actions, exact commands, credential provenance, tunnel build commands — a category-organised POC/EXP knowledge base and a skill library with per-skill usability verdicts); ships 23 native skills, 53 redteam_* tools and one-command self-update.

653 days agoSecurity & PermissionsMIT
S

dsh-passwords

slywalker2006/dsh-passwords

Turns DeepSeek Harness into a server-grade multi-tenant platform: remote access + auto HTTPS, subuser permissions & token/daily quotas, sandbox enforcement, encrypted auth & audit log.

653 days agoSecurity & PermissionsGPL-3.0
K

sofagent (cordis-plugin-sofagent-audit)

kongfangxun/sofagent

Commit-time audit harness for AI coding agents: 24 git-diff rules (secrets, out-of-scope edits, prompt injection), HMAC-signed audit trail, snapshot rollback, and an MCP server with 84 tools. Installable via dsh plugin add.

5117 hours agoSecurity & PermissionsMIT
J

dsh-full-remote

juanwang-buaa/dsh-full-remote

Remote DeepSeek Harness with full server-side API access (`settings.*` / `credentials.*` / `host.listDirectory`). Token-gated reverse proxy, per-device sessions, phone invite QR, fence self-check, optional approval / CIDR / idle timeout / local TLS, WebSocket/SSE.

456 days agoIntegrations & RemoteMIT
O

openguardrails

openguardrails/openguardrails

Auto mode for DeepSeek Harness (dsh): an Auto entry in the Permissions selector whose approval prompts are answered by OpenGuardrails policy instead of a human — plus the full OGR guard engine underneath. No core changes.

272 months agoSecurity & PermissionsApache-2.0
I

dsh-remote-mobile

iceapriler/dsh-remote-mobile

Remote & mobile security gateway: zero-modification Tailscale/LAN access with QR pairing, RSA encryption, brute-force defense and mobile style snippets; auto-yields the shared pairing service to other remote plugins so coexistence never crashes startup.

2117 days agoIntegrations & RemoteMIT
P

dsh-defend

perrylink/dsh-defend

Detects prompt-injection, jailbreak, and secret-leak patterns on the agent/pre-step, tools/pre-execute, and tools/post-execute seams with allow/ask/block tiers, sanitized defend/detection audit events, a defend_report tool, and a destructive-delete command guard.

218 days agoSecurity & PermissionsApache-2.0
P

dsh-skill-pack-security

perrylink/dsh-skill-pack-security

Security-audit methodology skill pack plus the plugin_vet supply-chain gate: eight agent skills (secret scan, dependency audit, supply-chain review, prompt-injection review, audit orchestration, threat modeling, vuln intel, incident response) in Chinese and English editions, with an npm provider bundle that mounts the skills and registers the automated plugin_vet pre-install scanner.

1914 hours agoSecurity & PermissionsApache-2.0
J

dsh-chatgpt-bridge

jiezeng2004-design/dsh-chatgpt-bridge

MCP bridge that lets ChatGPT Web create, view, continue, and supervise DeepSeek Harness agent sessions and goals while preserving DSH's native approval, sandbox, and workspace security model.

183 days agoIntegrations & RemoteMIT
T

dsh-auth-gate

tecfancy/dsh-auth-gate

Login gate for the dsh web surface: password or shared-token authentication, session cookies, rate limiting, and a user-management CLI (dsh.bundle manifest since 0.4.1, one-command `dsh plugin add` mounting).

153 days agoSecurity & PermissionsMIT
X

dsh-auth-gateway

xbzbing/dsh-auth-gateway

Password + TOTP two-factor authentication gateway for the dsh web UI: every HTTP request and WebSocket upgrade is refused until login, with per-source lockout, global rate limits and one-time backup codes.

143 days agoSecurity & PermissionsMIT
O

dsh-security-audit

omdsh-dev/dsh-security-audit

Local security audit: config, plugin origins, sessions, network exposure — read-only redacted risk report.

1423 days agoSecurity & PermissionsMIT
T

dsh-one-gateway

tiantianflow/dsh-one-gateway

Private loopback DSH Web gateway for Tailscale Serve, Cloudflare Access, and Headscale TCP Serve, with exact principal allowlists and guided fail-closed setup.

13last monthIntegrations & RemoteMIT
P

dsh-mask

perrylink/dsh-mask

PII masking for DeepSeek Harness — anonymizes names, phones, emails, ids, and keys before requests and restores them at the display layer, keeping plaintext out of session logs.

138 days agoSecurity & PermissionsApache-2.0
A

dsh-expert-mode

asher-2000/dsh-expert-mode

Expert-mode agent preset for DeepSeek Harness (v0.9.2, npm dsh-expert-mode, bilingual EN/ZH): a chief coordinator plus 17 domain-expert subagents with automatic task delegation. Features: taskboard scheduler (file-system task state machine pending/ready/running/done/failed, dependency DAG, atomic claim, retry, crash recovery), quality gates (5-stage pipeline for high-risk tasks: requirement clarity, implementation, verification, independent review, integration, with 2-round rework limit), Five-Anchor constraint (review/convergence/anti-drift/collaboration-check/resource-awareness per turn), Near-distance Guidance (identity/task/output template per expert), progressive disclosure (~28% token savings), expert persistence, inter-expert file message bus (direct P2P comm, zero coordinator relay), cross review, experience pool, fast-track for simple tasks, fault recovery with auto-retry. Experts: data analyst, copywriter, legal review, product manager, frontend, UI/UX, architect, social media ops, growth hacker, quant finance, finance, backend, DevOps, database, QA, security.

1326 days agoTools & CapabilitiesMIT