본문으로 건너뛰기

보안 및 권한

보안 및 권한 플러그인은 위험한 도구 호출과 악성 플러그인으로부터 DeepSeek-Harness(dsh)를 보호합니다. 이 카테고리에는 allow/deny/ask 계층의 정책 기반 도구 게이트, 플러그인 번들과 npm tarball을 위한 설치 전 스캐너, 프롬프트 인젝션 및 비밀 정보 유출 방어, 텔레메트리 마스킹, 해시 체인 감사 로그가 포함됩니다.

플러그인 269개 찾음

M

dsh-plugin-trustlens

mengshang-spec/dsh-plugin-trustlens

Read-only DSH plugin auditor with static scanning, current-session model review, and confirmation gates.

1지난달보안 및 권한MIT
X

dsh-full-access-switch

xtd1145/dsh-full-access-switch

One-time Full access switch for DeepSeek Harness: new sessions (workspaces and conversations) start with danger-full-access and skip the per-session Full access confirmation; installable as a dsh bundle or via patch scripts.

1지난달보안 및 권한MIT
W

dsh-feishu-channel

wyattjhayes/dsh-feishu-channel

Security-focused Feishu (Lark) channel for DeepSeek Harness: allowlisted remote-agent access with workspace-scoped paths, symlink checks, risk-based approvals, session isolation, redacted logs, and bounded message queues.

1지난달보안 및 권한MIT
L

dsh-hawkeye-scan (npm)

liuqingman/dsh-hawkeye-scan

AI-driven source-code security scanning workbench: 5 model tools (start/finding/status/report/list) plus a /hawkeye web UI and JSON/Markdown/HTML vulnerability reports; zero-dependency Cordis plugin, installable as agent preset or npm package.

1지난달보안 및 권한MIT
A

dsh-llm-approve-for-me

alaxrpg/dsh-llm-approve-for-me

Uses an isolated LLM review to approve or reject DSH sandbox permission requests.

125일 전보안 및 권한MIT
T

dsh-plugin-guard

taxueseek/dsh-plugin-guard

Static-only plugin gate and clinic for DSH: audit before install, hash-and-capability lock after install, local fingerprint peer search over GitHub topic:dsh-plugin, and mechanical detox. Never executes the target plugin.

1지난달보안 및 권한MIT
A

dsh-auto-review

accpowered/dsh-auto-review

LLM approval answerer for sandbox escalations beyond workspace-write: a deterministic regex filter first, then a clean-context reviewer model; humans are asked only when it is unsure. Requires the bundled core patches.

1지난달보안 및 권한MIT
A

dsh-credential-manager

accpowered/dsh-credential-manager

Named user credentials the model uses by reference: values are entered on a Settings → Credentials page and injected into each shell execution as DSH_CM_* variables instead of being printed into the transcript, with credential_read as the documented last resort.

114일 전보안 및 권한MIT
G

dsh-compaction-audit

gendui123/dsh-compaction-audit

Compaction quality / hallucination detector: when a conversation span is compacted, check on two axes that key information survived 鈥?FIDELITY (assertions in the summary must be found verbatim in the original leaf events, else flagged as fabricated) and C

1지난달보안 및 권한MIT
G

dsh-compaction-probe

gendui123/dsh-compaction-probe

Step-0 observation probe for dsh-compaction-audit: logs every compaction/* session event and probes whether shadowedSeqs still resolve to readable events in session.events. Observe-only; never injects, never blocks.

1지난달보안 및 권한MIT
G

dsh-plan-adversarial

gendui123/dsh-plan-adversarial

Command-triggered red/blue adversarial review for ANY plan (not quant-specific). /plan-adversarial <plan>: arms a gate that requires the agent to derive two independent subagents (red=attack, blue=defend), have them converge on a consensus plan with NO th

1지난달보안 및 권한MIT
A

dsh-todo-guard

a903067276-rgb/dsh-todo-guard

Reliable todo panel that survives restarts (official panel only re-renders on write — fixed via projection pre-warm) with three-state completion verification: evidence exists → verified, fake evidence → blocked, no evidence → unverified badge; settings toggle to fall back to official behavior.

1지난달보안 및 권한MIT
K

dsh-skill-security-inspector

kakapengta/dsh-skill-security-inspector

一个可直接链接到 DeepSeek Harness(DSH)Web profile 的独立安全检查插件。在安装或使用不受信任的 Skill 前,先执行浏览器本地粗检,再由用户决定是否调用 DSH 已配置的大模型进行结构化复核。

1지난달보안 및 권한
M

forge

mjxupup/forge

Forge quality gates for DeepSeek Harness (dsh): task gates, read-before-edit, bash hazard interception and quality scoring, driven by the forge CLI through DSH's typed interception points.

1지난달보안 및 권한Apache-2.0
S

dsh-guardian-approval

scotlight/dsh-guardian-approval

DSH를 위한 독립적인 Codex Guardian 스타일 승인 리뷰어.

1지난달보안 및 권한MIT
N

nexusclaw-agent-governance

nexusclawhq/nexusclaw-agent-governance

agent-governance 사이드카를 기반으로 한 DeepSeek Harness(dsh) 승인 응답기 — 모든 승인/요청은 기본 거부(deny-by-default) 게이트, L0–L4 규칙 및 조직 감사 체인에 의해 결정됨.

1지난달보안 및 권한Apache-2.0
D

dsh-provenance

darren-tang/dsh-provenance

DeepSeek Harness 플러그인을 위한 설치 전 공급망 검사: 어떤 코드가 실행되기 전에, 설치하려는 tarball이 사용자가 읽은 소스와 일치하는지 확인.

1지난달보안 및 권한MIT
A

dsh-Almost_Full_Access

alnita-m/dsh-almost_full_access

workspace-write와 full access 사이의 권한 모드: 셸 명령은 결정적 규칙과 서브에이전트 검토로 확인되며, 되돌릴 수 없거나 시스템 수준의 작업은 명시적 승인이 필요함.

123일 전보안 및 권한MIT
A

dsh-perm-guard

a903067276-rgb/dsh-perm-guard

자동 승인 권한 가드: workspace-write와 danger-full-access 사이의 중간 계층 — 신뢰 디렉터리 내 안전한 작업은 자동 허용하고, 파괴적인 작업은 항상 사람에게 확인을 요청합니다. 카테고리별 스위치 11개와 감사 로그를 제공합니다.

1그저께보안 및 권한MIT
C

dsh-write-gate

couldbeme/dsh-write-gate

커밋먼트 쓰기 게이트: 도구 호출이 실행되기 전에 운영자가 작성한 규칙을 적용 — 결정적 가드 계층과 LLM 심판 계층, 기본적으로 fail-closed, 모든 차단은 모순 로그에 기록됩니다.

1지난달보안 및 권한MIT
R

skill-security-guard

rrrrrredy/skill-security-guard

skill-security-guard 정적 스캐너를 위한 DeepSeek Harness 커뮤니티 Bundle.

12개월 전보안 및 권한MIT
B

dsh-access-gate

bamboostrip/dsh-access-gate

DSH 플러그인: 원격(비루프백) /api 접근을 위한 비밀번호 게이트(기본적으로 비밀번호 없음), 루프백에 고정된 특권 엔드포인트의 차단 해제, 제거 시 모든 항목 복원, 로컬 127.0.0.1 사용자에게 워크스페이스 선택을 위한 네이티브 OS 폴더 선택기 제공. selec

12개월 전보안 및 권한MIT
A

dsh-safety-net

asuna486-desuwa/dsh-safety-net

DeepSeek Harness의 자기 보호 가드레일입니다. 보호 경로 가로채기, 파괴 전 백업, CLI 자가 복구 명령, 엄격한 샌드박스 기본값을 제공합니다.

12개월 전보안 및 권한MIT
O

riskproof

onlyqzq/riskproof

DeepSeek Harness를 위한 출처 인식 실행 보안. 도구 호출 전반에서 민감한 데이터를 추적하고 실행 전에 위험한 부작용을 차단합니다.

12개월 전보안 및 권한Apache-2.0