Bundle
Stops the DSH sandbox-escalation fields being offered to a model when the calling session cannot grant them, fixing the GPT-family retry loop at danger-full-access where every advertised enum value is rejected before the command runs.
Bundle
UI-level access gate + process-wide agent tool brake for DeepSeek Harness: shared session, strict 60-minute idle lock, native settings module. NOT server-side authentication.
Bundle
DeepSeek Harness plugin that wraps @stardeckai/lgtm — a Jev-powered linter for tests that pass but prove nothing. Ships the CLI as a dependency, reuses the TypeSafe credential stored in DSH, and exposes lgtm_audit / lgtm_status to the agent.
Bundle
DeepSeek Harness WSL plugin: pass/age secrets with allowlist; list/exists; secret_to_env without dumping values into chat.
Bundle
Unified Agent control for DeepSeek Harness: gate every agent-class tool behind one composer switch, preset subagents with per-entry persona/permission/model, and let the model author its own agents.
Bundle
Expose the Paper-gogo evidence-first paper workflow (18 Phase, G0-G6 gates, four-state evidence audit) as DeepSeek Harness tools.
Bundle
A dsh policy plugin that gates kubectl writes by kubeconfig context: hard-deny irreversible verbs outside local clusters, ask for the rest.
Bundle
Sessionless LLM sandbox approval reviewer for DeepSeek Harness.
Bundle
插件安装预检助手:安装 DSH 插件前检查兼容性与启动问题,发现问题即阻止并保留原环境 / Pre-install checker for DeepSeek Harness plugins
Bundle
X-ray for your DeepSeek Harness — diagnostics for what's actually loaded, why, and what it costs: per-plugin context-tax attribution, per-request token ledger, skill catalog pricing, dependency cascades.
Bundle
Hard-stop DeepSeek Harness tool use after a per-session call budget.
Skill
Scan agent skill packages for static security risks. Use for skill audit, security check, prompt-injection review, suspicious scripts, unsafe dependencies, zip package review, and pre-install skill review. Not for runtime monitoring.
Bundle
A safe external-skill discovery and adoption bundle for DeepSeek Harness
Bundle
DSH plugin: auto mode that routes permission-gated tool calls through an LLM review before approving, blocking, or asking for confirmation.
Bundle
DeepSeek Harness 的 Tailscale 远程访问运营面板:健康检查、HTTPS 入口开关、macOS 代理绕过、中继服务器运维、ACL 片段生成。
Bundle
DeepSeek Harness plugin: real-time Feishu/Lark notifications when a DSH session pauses for user interaction (permission asks, questions, fatal errors).
Bundle
Runtime security gate for DeepSeek Harness: egress host allowlist, secret redaction in tool results, and an append-only audit log
Bundle
Update copilot for DeepSeek Harness: full version radar over the DSH core, shipped bundles, and every installed plugin (merged package-centric across profiles); gated one-click plugin updates behind the full compatibility gate, a single pinned core update execution, patch-name audits with post-flight probes, history & rollback. · DSH 更新助手:本体/bundle/插件全量雷达(跨 profile 按包合并);插件更新带预检闸门一键执行,本体始终钉最新健康版本代执行(全套兼容闸门),补丁名体检与更新后探测,历史快照与回滚。
Bundle
DSH agent-fleet hygiene audit: credential-file permissions, embedded credentials in git remotes (masked), provider token-prefix literals. Read-only, zero-dependency, deterministic.
Bundle
Multi-workspace sandbox for DSH: automatically grant file-write access to ALL registered workspaces — add a workspace in the UI, write to it immediately, no config needed.
Bundle
DSH 插件安检机 — install-time static security auditor for DeepSeek Harness plugin bundles. Zero dependencies, zero install scripts, zero build step.
Bundle
对代码与 Git 改动进行本地静态安全检查,并追踪修复结果。
Bundle
Mingleng mcpguard for DeepSeek Harness 鈥?the first security plugin for DSH. Scans skills and MCP configs for prompt injection, homoglyphs, hidden Unicode, dangerous shell and credential leaks.
Bundle
Deterministic fact producers for security auditing: which deleted code came from a security fix, and which changed symbols no test ever executed.