DeepSeek Harness Plugin Hub

发布与管理完整 Harness Profiles,发现适合你的插件。

探索

插件目录环境预设文档中心动态

社区

发布插件联系我们报告问题

相关链接

Plugin Hub GitHubDeepSeek Harness 官方项目系统状态隐私说明
© 2026 DeepSeek Harness Plugin HubPowered byPaxTech

独立、非官方社区项目,与 DeepSeek 官方无隶属、授权或背书关系。

Almazom Approve Escalate — DeepSeek Harness 插件(DSH Plugin)
DeepSeek Harness Plugin Hub
ProfilesPlugins分类动态文档登录管理 Profiles
ProfilesPlugins分类动态文档登录
← Plugins
A

dsh-almazom-approve-escalate

Almazom Approve Escalate

DSH 网页插件:在审批卡片上提供“批准并获得完整访问权限”选项,以及一个 /yolo 编写器命令——单击即可将当前会话切换为 danger-full-access 预设,并响应待处理的审批请求。独立插件,不修改核心功能,不收集遥测数据。

插件会安装到这里;不确定时保持 web。

npx -y @deepseek-ai/dsh plugin --profile web add github:almazom/dsh-almazom-approve-escalate#1dcf91fa2cfcbb95c26878a7bcaaf0721bdca1a9
README兼容性版本

兼容性与来源证明

Almazom Approve Escalate 以 dsh-almazom-approve-escalate 发布,当前版本为 0.2.0。Plugin Hub 会校验它的 manifest,并保存精确安装来源,便于复现安装结果。

DSH 兼容范围
*
运行环境
web
发布来源
github
Registry 更新时间
2026/9/15

版本

0.2.0stable
2026/9/15
0.1.0stable
2026/9/14

相关插件

正在加载相关插件…

最新版
0.2.0
DSH
*
HMR
重启进程
Tree shaking
未声明可安全裁剪
解包体积
未提供
文件数
未提供
Surface
web
许可证
MIT
发布源
github
GitHub
★ 0
周下载
0
最近提交
2026/9/15
查看源码 ↗
README Badge

点击下方 Badge 复制 Markdown,粘贴到 README 即可。

这是你的 Plugin?认领权益 · 优先安全扫描

验证 package.json 声明的 GitHub 仓库,即可管理这个公开页面。认领后,Hub 会优先安排当前版本的安全扫描,并在通过后公开展示结果。

认领这个 Plugin →
报告问题

相关插件

继续浏览 security-access 分类下经过校验的插件。

Doctor@linxin666/dsh-doctorDSH 配置档案的事务性救援模式,配备受监督的启动器、隔离的恢复容器、确定性修复、健康监控以及本地 Web 恢复控制台Pocketdsh-pocket把 DeepSeek Harness 装进你的口袋:一个包、一个设置页,手机扫码即同步访问电脑上的 DSH(局域网 + 公网,实时同屏)。DSCODE@toddzheng024/dscode-bundle完整的 DeepSeek 编码代理,支持持久化 shell、Ultra 协作和自动权限审查。Auto Reviewdsh-auto-review针对 DeepSeek Harness 审批请求的第二模型 AI 自动审查:只读审查子代理在审批应答链上决定允许或拒绝,并采用故障关闭回退机制和完整的会话日志审计。

README

dsh-almazom-approve-escalate

One click on the DSH web approval card: approve the pending request and switch the live session to full access (danger-full-access: sandbox off, no further approval prompts) — plus a /yolo composer command that switches the permission preset without a pending request.

Isolated third-party plugin. No harness core changes, no telemetry, no secrets.

approve and escalate

What you get

The approval card ("Waiting for approval") grows one extra action above the shipped Reject / Allow once row:

  • Approve & full access — dispatches /permission danger-full-access on the live session (the same command the shipped /permission picker uses) and then answers the pending request as Allow once. A warning line spells out that future approval prompts are disabled.
  • /yolo — composer command (slash menu) that switches the session to full access without a pending request; the status chip flips to Full access.
  • Both shipped buttons keep working; the plugin only composes two manual actions into one click. If the host lacks the /permission command, the button says so instead of answering blind.

Install

dsh plugin --profile web add dsh-almazom-approve-escalate

(or from git: dsh plugin --profile web add git+https://github.com/almazom/dsh-almazom-approve-escalate.git)

After installing, hard-refresh the browser so the client bundle picks up the new rev.

Then restart the web app (dsh web / your service manager) and hard-refresh the browser.

Configure

Override the preset or the label in the profile patch layer (~/.dsh/profiles/web/cordis.patch.yml or $DSH_HOME/cordis.patch.yml):

- insert:
    - id: almazom-approve-escalate
      name: 'dsh-almazom-approve-escalate'
      config:
        preset: 'workspace-write'   # any permission preset your host offers
        label: 'Approve & escalate'

Updates & versioning

  • The plugin is versioned in package.json (semver) and deployed as git commits in this repo; the profile mounts it via link: so new code is served live at a fresh client-bundle rev.
  • Reload rule: already-open app pages keep the module graph they booted with. After any deploy, hard-refresh the DSH tab (PWA on iPhone: close from multitask, reopen). The deploying agent must announce every client-affecting change via Delta Chat ("обнови вкладки DSH").
  • Rollback: dsh plugin --profile web remove dsh-almazom-approve-escalate or delete the patch row — features disappear without touching the host.

Rollback

dsh plugin --profile web remove dsh-almazom-approve-escalate

(or delete the insert row above). No host files besides the profile's own node_modules and patch layers are touched.

Security & trust

  • Plugins hold full host privileges — review the source before installing. It is two hand-written files: lib/index.js (host: serves the config JSON above) and lib/client.js (browser: the button).
  • The client bundle uses the official plugin surfaces only: the documented conversation.approval.detail slot, the slots/sessions client services, and the live-session command API. It never touches the network beyond same-origin config/config fetches; there is no outbound traffic.
  • The escalation reuses the operator-auditable /permission command path — the switch is logged like a manual one.

Compatibility

Built and verified against DeepSeek Harness 0.1.5-rc.x. The client contract it relies on (loader wrapper, slot key, seats) is documented for third-party plugins; a shipped-bundle refactor of the approval card may require a plugin update.

Provenance

  • Developed against upstream deepseek-ai/deepseek-harness at c291e79; live-verified on a 0.1.5-rc.2 host with a real approval flow (see docs/ for the recording).
  • No model round is involved in the plugin itself; the verification recording used one model round to trigger a genuine approval request.
  • Related: discussion #6616 (the /permission picker fix this plugin's escalation path builds on).

License

MIT