CATEGORY
Security & Access DSH plugins
Verified manifests and exact versions in this category.
All plugins
688 pluginsdsh-config-origin-proofConfig Origin Proof
Content-addressed evidence for DSH configuration winners and shadowed sources
dsh-cloud-gatewayCloud Gateway
Login wall and public gateway for DeepSeek Harness cloud deploys.
@wxyzh/dsh-auth-proxyAuth Proxy
Token-auth reverse proxy for dsh web: listen on 0.0.0.0, verify a static token via a built-in login page, then forward HTTP + WebSocket to the loopback webserver. No dsh source changes.
@wwumit/dsh-compliancehubCompliancehub
Compliance skill hub provider for DeepSeek Harness: install cross-border compliance skills (CCPA/GDPR/COPPA/HIPAA x check/guard/compliance, 9 skills) from a line-level JSON catalog via ctx.skills (list/get), with DISCLOSURE v0.2 open-data-layer disclosure.
@pepsi-ai/dsh-plugin-session-deletePlugin Session Delete
Delete sessions of a DeepSeek Harness profile from the UI: header danger button + session-row menu item with a risk-consent dialog; host endpoint + tool delete the log, projection cache and workspace accounting. Works in web and the desktop client alike.
dsh-aggressionAggression
Attack behavior
@tyler9061/dsh-authAuth
dsh web authentication plugin: login protection, automatic logout after inactivity, authentication validity period, settings interface, `dsh web p` password reset
dsh-anti-theftAnti Theft
Anti-theft measures
dsh-diy-safeDiy Safe
DIY Security
dsh-agent-observeAgent Observe
Agent observability plugin for DSH — behavior audit, cost tracking, anomaly detection
dsh-withsshWithssh
Session-scoped SSH console for DeepSeek Harness
dsh-opencode-providerOpencode Provider
Use OpenCode models inside DeepSeek Harness without a separate provider API key.
dsh-boundaryBoundary
Set boundaries
dsh-deepseek-balance-queryDeepseek Balance Query
DSH client plugin: Check the account balance of a DeepSeek API Key (starting with sk) with one click in the sidebar. The key connects directly to api.deepseek.com in the browser and does not pass through a local service.
dsh-seatbelt-sandboxSeatbelt Sandbox
Seatbelt (libsandbox) sandbox provider for the DeepSeek Harness sandbox seam on macOS: a cordis plugin that replaces @deepseek-ai/dsh-sandbox-local's seatbelt rung via a prebuilt seatbelt-run launcher — no dsh source changes, no PR required
dsh-auto-guardAuto Guard
DSH Auto Guard: a Claude Code Auto Mode-like command approval mechanism that adds an LLM safety net on top of full access, with rules, caches, file tracker, and sensitive path gates.
@deepseek-ai/dsh-client-skill-security-inspectorClient Skill Security Inspector
Portable DSH WebUI skill security inspection with local rules and optional model review
dsh-github-copilotGithub Copilot
DSH companion for GitHub Copilot sign-in, account-aware model profiles, tool compatibility, and provider-hosted search.
dsh-web-passWeb Pass
DSH web-password gate: cookie-password auth + forced first-time setup + Settings 'Web password' tab + size-capped access log + non-loopback settings unlock. Zero dependencies.
dsh-request-privacyRequest Privacy
Provider request metadata minimization extension for DeepSeek Harness
dsh-tool-adaptTool Adapt
EN: Compatibility and safety adaptation layer for non-DeepSeek models in DeepSeek Harness Web. ZH: 面向 DeepSeek Harness Web 非 DeepSeek 模型的兼容与安全适配层。
dsh-reachReach
Multi-channel decision & remote-control bridge for DeepSeek Harness: pushes any workspace's approval/question cards to IM channels (WeChat iLink first) and answers them from chat, with a session console, per-channel security, and an open push service.
@perrylink/dsh-plugin-kitPlugin Kit
Shared zero-runtime-dependency toolkit for PerryLink DSH plugins: a pluggable Provider registry seam, fail-closed approval and adaptive session-event gates, mechanical verify scripts, shared sanitize/pricing/judge modules, and a new-plugin skeleton.
@sandersyao/dsh-credentials-mysqlCredentials Mysql
MySQL-backed credentials vault provider for the DeepSeek Harness (ctx.credentials)
@alaxrpg/dsh-sensenova-providerSensenova Provider
Unofficial DeepSeek Harness LLM provider plugin for SenseNova (OpenAI-compatible). Registers the 'sensenova' provider route with multi-account API-key rotation, a Models-page card, and a live model catalog.
@xgone/dsh-netshellNetshell
Remote SSH terminal for the DeepSeek Harness web UI: main-area terminal tab, dangerous-command guard (open/guarded/locked), confirmation workflow, and model tools (netshell_servers / netshell_run). Passwords live in the DSH encrypted credential store and never pass through AI sessions.
dsh-git-authGit Auth
DSH host tool bundle: manage glab / gh authorization and SSH keys
dsh-windows-workspace-guardWindows Workspace Guard
Guard DeepSeek Harness PowerShell, file, image, and search tools on Windows with workspace, credential, approval, and audit policy.
dsh-evolverEvolver
Auditable, verifier-gated self-evolution for DeepSeek Harness.
dsh-cloakCloak
Context firewall for DeepSeek Harness: detects credentials in tool results and replaces them with opaque placeholders before they reach the model — the secret never enters context, the task keeps going.