插件
浏览、筛选并安装 DeepSeek-Harness 插件。
共 19 个插件
api-relay-audit
toby-bridges/api-relay-audit
从 DeepSeek Harness 对 AI API 中转站和 LLM 代理运行本地安全审计,生成 Markdown 报告,覆盖提示词注入、模型替换信号、工具调用改写、错误泄漏、流完整性和按 profile 启用的 Web3 风险。
dsh-secure-audit
pensivefei/dsh-secure-audit
DSH 只读安全合规插件:提示注入检测、中文 PII 脱敏、本机配置安全审计,输出脱敏且可复现的报告。
deepseek-harness-zh_pro
magian1127/deepseek-harness-zh_pro
DSH 网页 UI 综合增强:中文补全、统计单行显示、思考自动展开、对话宽度、会话归档与删除,并可选的提示词注入(默认关闭)。
openguardrails
openguardrails/openguardrails
DeepSeek Harness 的 Auto 模式:在权限选择器中新增 Auto 项,审批提示由 OpenGuardrails 策略而非人工回答,底层是完整的 OGR 防护引擎,零核心改动。
dsh-jev-interceptor
asktheway/dsh-jev-interceptor
在 tools/pre-execute 上用 Jev(TypeSafe AI 的非生成式决策模型)对待执行的工具调用分类——高置信高危拒绝、存疑转审批——并在 approval/request 上对明确授权且可逆的调用做带参数证据门控的自动批准。另子类化 session-reference resolver,让引用快照按 Jev 打分保留消息而非最旧优先丢弃。任何 provider 故障均回退原生行为;提供 shadow 模式与 /jev-stats 统计命令;支持 TypeSafe 或 OpenRouter 入口;64 个测试。
dsh-defend
perrylink/dsh-defend
在 agent/pre-step、tools/pre-execute、tools/post-execute 三个接缝检测提示词注入、越狱与密钥泄露,按 allow/ask/block 分层拦截,附脱敏 defend/detection 审计事件、defend_report 工具与危险删除命令门禁。
dsh-skill-pack-security
perrylink/dsh-skill-pack-security
安全审计方法论技能包 + plugin_vet 供应链门禁:八个 agent 技能(密钥扫描、依赖审计、供应链评审、提示注入审查、审计总编排、威胁建模、漏洞情报、事件响应),中英双版本,附 npm provider 包一键挂载并注册自动化 plugin_vet 安装前扫描。
project-koma
swnotmetal/project-koma
Koma:TypeScript 可观测 AI 边界工具包——对照本地 Agent Specs 验证编码 agent 的实际操作,并用 Gate/Scout/Core 防护提示注入与资源边界。
dsh-jev-tools
horusjiang/dsh-jev-tools
把 Jev 判定变成三件自动动作的 DeepSeek Harness 插件:精简超长工具输出、筛查抓取页面里针对模型的指令、挑选下一步该用的 skill;另有 jev_ask 与 jev_gate 两个工具、可跨重启的判定账本,以及 /jev-status 报告。需要 TypeSafe API key,没有时完全惰性,不发任何请求。
deepseekeyes
dttxorg/deepseekeyes
为 DeepSeek Harness 提供可审计的视觉与跨平台 Computer Use 运行时,保留源证据。
dsh-project-prompt
imroc/dsh-project-prompt
DeepSeek Harness 私有按项目系统提示规则:按 git remote URL、仓库路径或 cwd 前缀匹配,支持 worktree,绝不写入仓库
skill-bartender
mjorgin/skill-bartender
任务到技能配对元技能:懒人阶梯最小化加载、可编辑路由表、隔离-SkillSpector 扫描-人工确认的安装流程。
dsh-prompt-antivirus
qinpanwan/dsh-prompt-antivirus
全局提示注入 / 上下文病毒防御:扫描工具参数、工具结果、进模型前消息与出站流;隔离/阻断/监控三模式、金丝雀陷阱、可演进磁盘签名库(学习/导入/导出)。
dsh-skill-security-inspector
kakapengta/dsh-skill-security-inspector
可连接 DSH Web profile 的独立安全检查插件:安装/使用不受信任的 Skill 前先本地粗检,再由用户决定是否模型复核。
skill-bartender
akqwpeter-prog/skill-bartender
任务到技能配对元技能:懒人阶梯最小化加载、可编辑路由表、隔离-SkillSpector 扫描-人工确认的安装流程。
dsh-mcpguard
chenlaoshiyf/dsh-mcpguard
扫描 skill 与 MCP 配置中的提示注入、同形字、Unicode 隐形字符、危险 shell 与凭据泄露。
dsh-hermes-memory
lcthe/dsh-hermes-memory
DSH 有界持久记忆:memory_save/search/replace/remove/list 覆盖全局、用户、项目、失败四类范围,基于 DSH storage-domain 持久化,写入前做密钥与提示注入扫描,支持会话范围检索、保留期清理与可选的会话开始注入;常驻上下文用 memory_pin/memory_pins/memory_unpin 管理。
correctover
dshcorrectover/correctover
AI Agent runtime authorization & evidence verification — tool-call GuardrailProvider, CCS 7-dimension verification standard, MCP/DSH security scanner, SSRF/command-injection/credential-exfil blocking with Ed25519 signed receipts.
dsh-taintguard
sashankh/dsh-taintguard
当工具结果包含不可信内容时将代理标记为已污染,对随后的高权限调用进行拦截,并在所有模式下拒绝将凭据传递给可联网的工具。