Security & Permissions Plugins Security & Permissions
52 plugins
Security, policy, and permission controls
52 plugins
Sort: Featured
-
Listed
Bundle verified
Redacts supported secret patterns from the `session-telemetry/record` export copy before configured telemetry backends receive it.
dsh plugin --profile default add github:030611/dsh-telemetry-redactor -
Listed
Bundle verified
Support for the nono sandbox backend.
dsh plugin --profile default add github:omdsh-dev/sandbox-nono -
Listed
Bundle verified
Support for the microsandbox backend.
dsh plugin --profile default add github:omdsh-dev/sandbox-micro -
Listed
Bundle verified
Risk-gated approval automation for DeepSeek Harness: flash pre-classifies whether a write/command is irreversible — safe operations are auto-approved, dangerous ones are escalated to human approval (fail-safe).
dsh plugin --profile default add github:moon09300731/dsh-approval-gate -
Listed
Bundle verified
Security-audit methodology skill pack plus the plugin_vet supply-chain gate: eight agent skills (secret scan, dependency audit, supply-chain review, prompt-injection review, audit orchestration, threat modeling, vuln intel, incident response) in Chinese and English editions, with an npm provider bundle that mounts the skills and registers the automated plugin_vet pre-install scanner.
dsh plugin --profile default add github:PerryLink/dsh-skill-pack-security -
Listed
Bundle verified
Plugin trust pipeline for DeepSeek Harness: deterministic static scan with verdicts, opt-in runtime guard with honeypot lures, agent audit-protocol skill, and a browser shield status light. Alarm-only, never an enforcer.
dsh plugin --profile default add github:wulun811/dsh-plugin-vet
Frequently Asked QuestionsFAQ
Security, policy, and permission controls
Yes. Combine focused plugins when their responsibilities are clear and their storage or runtime requirements are compatible.
Start with the workflow you need, then compare the tags, tier, install state, and recent activity shown on this category page.