Skip to main content

Plugins

Browse, filter, and install DeepSeek-Harness plugins.

135 plugins found

L

dsh-trust-check

liuwenji007/dsh-trust-check

Static capability disclosure for DeepSeek Harness plugins: a Settings page and CLI that list installed plugins' capabilities, literal destinations, install scripts, and injection shapes (prompt registrations, shipped skill text, bundle patch), each with file:line evidence. Code-determined, reproducible, zero-token. Disclosure only — not a security verdict, never a safety claim.

211 hours agoSecurity & PermissionsMIT
W

dsh-phone (client)

wwumit/dsh-phone

iPhone-style agent phone: dual-panel calls & SMS, RCS group chat with trust gates, cross-device agent messaging via the registry inbox bridge, L0–L4 trust badges and evidence audit. Experimental: trust summaries are not a security guarantee, and SMS/signalling is relayed through the operator's inbox (visible to them); E2E encryption is planned.

2last monthUI EnhancementsMIT
M

dsh-sonarqube

maxmilian/dsh-sonarqube

Read-only SonarQube Community Build tools: instance status, project Quality Gate for a branch or pull request, issue and Security Hotspot search, single hotspot detail, and coverage, duplication or caller-selected measures. Issue and hotspot results carry a normalized location with component key, file path, line and text range.

25 days agoSecurity & PermissionsMIT
I

dsh-guardwall

iiiweiii/dsh-guardwall

Vets local, npm, and GitHub plugin source before installation, blocks configured high-risk tool calls at runtime, audits output secret patterns, and writes HMAC-chained local audit logs.

2last monthSecurity & PermissionsMIT
S

dsh-plugin-security-review

shanhaifish/dsh-plugin-security-review

Static bundle form of the DSH plugin-install security gate: reviews cordis_define/cordis_run with a fail-safe policy, plus review/audit tools and a browser approval popup (agree / agree+whitelist / reject; agree+whitelist writes the plugin family into tru

2last monthSecurity & PermissionsMIT
K

dsh-plugins (dsh-guard)

kouyichi/dsh-plugins

Security and governance for dsh: rule-based tool denial, full tool-call audit trail, and governance reports.

2last monthTools & Capabilities
J

dsh-safemode-profile

jinsiyu/dsh-safemode-profile

The dsh security mode plugin achieves a zero third-party plugin startup by constructing a blank profile.

2last monthTools & CapabilitiesMIT
9

dsh-permissions

940842546/dsh-permissions

Claude Code-style permission rules engine: hard/deny/ask/allow tiers with a hard tier above full access, workspace-scoped rules, wildcard path protection, and a visual staged editor; rules persist in settings.yaml.

211 days agoSecurity & PermissionsMIT
B

dsh-omv

bx33661/dsh-omv

Evidence-first vulnerability research workbench for DeepSeek Harness: native audit views, 29 OMV tools, Evidence.v1 findings, reproducible runs, Campaign workflows, and isolated PoC evidence.

220 days agoTools & CapabilitiesMIT
A

dsh-acp-plugin

agentic-control-plane/dsh-acp-plugin

Agentic Control Plane for DeepSeek Harness — check every tool call against your policies before it runs, and keep a durable record of what was allowed and why.

22 months agoSecurity & PermissionsMIT
0

dsh-telemetry-redactor

030611/dsh-telemetry-redactor

Redacts supported secret patterns from the `session-telemetry/record` export copy before configured telemetry backends receive it.

22 months agoSecurity & PermissionsMIT
Z

dsh-wx-bridge

zhy5/dsh-wx-bridge

Drive your local DSH from WeChat: a self-hosted iLink bridge over a persistent ACP session (context lives in DSH and is resumable), phone conversations grouped into the desktop workspace, with image recognition, file messages (Excel/Word/PDF, parsed by the agent itself) and voice transcripts. Access defaults to strict (only registered devices are served); the phone channel's permission preset is wide by design - see the README security section before sharing the bot.

16 days agoIntegrations & RemoteMIT
M

skill-bartender

mjorgin/skill-bartender

Task-to-skill pairing meta-skill with a laziness ladder for minimal loading, a user-editable routing table, and a quarantine, SkillSpector scan, human-approval install flow.

12 months agoSkillsMIT
S

euthyna

slow-stack/euthyna

Security-audit facts AI coding agents cannot compute, plus a verdict gate: euthyna history attributes deleted lines to commits and flags those from security fixes (--origins finds the first introducer), euthyna coverage reports which changed symbols no test ever invoked, and euthyna gate checks each finding against six gates, downgrading any without evidence to an observation.

19 days agoSecurity & PermissionsApache-2.0
Y

dsh-file-shield

yazzyk/dsh-file-shield

Blocks an agent from reading, searching, writing, or editing chosen files and directories, keeping their contents out of the conversation — including sensitive-word files whose text can make later provider requests fail with a 400. Rules are picked from a file/directory browser on the plugin page.

114 days agoSecurity & PermissionsMIT
J

dsh-auto-review

jhckevin/dsh-auto-review

Native Auto Review for DeepSeek Harness with automatic host compatibility selection

118 days agoSecurity & PermissionsMIT
E

dsh-tailscale-console

evanfang0054/dsh-tailscale-console

Tailscale remote-access operations panel for the dsh web GUI: health checks, HTTPS entry toggle via tailscale serve, macOS proxy bypass, relay server ops, and ACL snippet generation.

15 days agoIntegrations & RemoteMIT
B

dsh-semgrep-sast (bundle)

baiiduu/dsh-semgrep-sast

Workspace-scoped Semgrep SAST tool for DeepSeek Harness with a managed Windows x64 runtime, structured bounded findings, cancellation and timeout controls, and user-approved sandbox escalation. Installs from npm as @aaub-software/dsh-semgrep-sast.

16 days agoSecurity & PermissionsMIT
R

dsh-vet

rogerdigital/dsh-vet

Pre-install static audits for npm-installable DSH plugins; emits and validates the open `dsh-vet/v1` report with severity, confidence, evidence, derived grades, a CI Action, and auditable badges.

129 days agoSecurity & PermissionsMIT
J

dsh-request-privacy

jhckevin/dsh-request-privacy

Live request metadata minimization for DeepSeek Harness, covering the native DeepSeek provider with WebUI settings.

127 days agoSecurity & PermissionsMIT
Q

dsh-prompt-antivirus

qinpanwan/dsh-prompt-antivirus

Global prompt-injection / context-virus defense for DeepSeek Harness: scans tool arguments, tool results, pre-model messages and the outbound stream; quarantine/block/monitor modes, canary trap, and an evolvable on-disk signature library with learn/import/export.

124 days agoSecurity & PermissionsMIT
C

dsh-stability-audit

chunfenxiazhi-collab/dsh-stability-audit

Stability audit for installed dsh plugins: static risk grading (hook surface, startup work, inject, entry, dep ranges) plus optional isolated install verification.

124 days agoDev & Plugin ToolsMIT
L

dsh-review-squad

luomeii/dsh-review-squad

Runs a parallel code review squad of read-only reviewer subagents (security, correctness, tests, style), each optionally on its own model, and aggregates one severity-grouped report from /review or a code_review tool call.

113 days agoGit & Code ReviewMIT
C

stavros-dsh-redteamer

csi-entitymorton/stavros-dsh-redteamer

Stavros RedTeam for DeepSeek Harness (DSH) — authorized red-team persona + scope-guarded pentest tooling (persona, 24 subagents, methodology and 78 zero-dependency guard tools).

1last monthSecurity & PermissionsMIT