All Plugins

52 plugins page 1 of 3

Results

  • Listed Bundle verified

    Second-model auto-review on the approval answerer chain: a read-only reviewer subagent returns structured allow/deny verdicts with reasons, fail-closed by default.

    dsh plugin --profile default add github:PerryLink/dsh-auto-review
  • Listed Bundle verified

    Local security audit: config, plugin origins, sessions, network exposure — read-only redacted risk report.

    dsh plugin --profile default add github:omdsh-dev/dsh-security-audit
  • Listed Bundle verified

    Turns DeepSeek Harness into a server-grade multi-tenant platform: remote access + auto HTTPS, subuser permissions & token/daily quotas, sandbox enforcement, encrypted auth & audit log.

    dsh plugin --profile default add github:slywalker2006/dsh-passwords
  • Listed Bundle verified

    Claude Code-style declarative permission rules: ordered allow/deny/ask YAML rules matching tool names, arguments, workspace paths, and agent identity on the tools/pre-execute waterfall, with full session-log audit, dry-run mode, and hot reload.

    dsh plugin --profile default add github:PerryLink/dsh-permission-rules
  • Listed Bundle verified

    WebUI authentication enforced at the HTTP/transport layer: four-layer login gate (resources, plugin bundles, /api, WebSocket), server-side sessions with HttpOnly cookies.

    dsh plugin --profile default add github:Yuuz12/dsh-webui-auth
  • Listed Bundle verified

    Model-based permission approval: an approval-request answerer backed by a separate reviewer model.

    dsh plugin --profile default add github:Letter2025/dsh-approval-llm
  • Listed Bundle verified

    sjh9714/dsh-movein-permissions: Fine grained per tool permission rules for DSH at the tools/pre-execute gate, deny and ask lists in Claude Code rule syntax (Bash(rm -rf:*), Read(_secrets_), mcp__server__tool), works standalone without migrating. sjh9714/dsh-movein: Migrate and import a whole Claude Code or Codex setup into DSH. Skills, slash commands, MCP servers, hooks, subagents and permission rules, with a dry-run moving estimate, a migration diff report and a post-move doctor; installs as a plugin exposing a movein_from_claude_code tool so the agent can do the move for you.

    dsh plugin --profile default add github:sjh9714/dsh-movein#path:/plugin
  • Listed Bundle verified

    Always-on dependency security for DSH plugins: tracks exact installed paths, OSV vulnerabilities, npm releases, and breaking-change signals, then routes project evidence to a DSH Agent.

    dsh plugin --profile default add github:MicroMilo/upstream-radar
  • Listed Bundle verified

    Appends local hash-chained JSONL receipts for tool results and session events without storing prompts, tool arguments, result text, or raw session IDs.

    dsh plugin --profile default add github:030611/qiushi-dsh-evidence-audit
  • Listed Bundle verified

    Writes local JSONL summaries of per-turn tool counts and coarse verification signals without storing prompts, tool arguments, or result text.

    dsh plugin --profile default add github:030611/dsh-verification-receipt
  • Listed Bundle verified

    Password + TOTP two-factor authentication gateway for the dsh web UI: every HTTP request and WebSocket upgrade is refused until login, with per-source lockout, global rate limits and one-time backup codes.

    dsh plugin --profile default add github:xbzbing/dsh-auth-gateway
  • Listed Bundle verified

    Remote access & authentication for DeepSeek Harness web UI: account/password login gate, MFA (TOTP), signed session cookies, role-based access, in-browser directory picker, account management settings, fully localized in English and Chinese.

    dsh plugin --profile default add github:xgone/dsh-remote
  • Listed Bundle verified

    Agent security guardrail: intercepts and audits every tool call, requiring human confirmation on sensitive operations.

    dsh plugin --profile default add github:cdxiaodong/dsh-guardian
  • Listed Bundle verified

    Vets third-party plugins before you trust them: static scan for malicious patterns (exfiltration, credential access, obfuscation, persistence) and over-privileged path use, transitive-dependency coverage, official-package hash baseline for supply-chain tamper detection, and an optional plugin-tool call gate.

    dsh plugin --profile default add github:truelove-dreamer/dsh-plugin-vetting
  • Listed Bundle verified

    Fine-grained permission gateway: per-category tool-call review (outside-workspace directories, commands, file read/write, subagents, repeated actions) with global & per-project allow/deny exceptions, quick-tool defaults, custom rules, a bilingual approval modal with inline diff details, custom rejection reasons and a sandbox-upgrade flow.

    dsh plugin --profile default add github:MrWeiCodes/dsh-permgate
  • Listed Bundle verified

    Adds an `auto` permission preset between workspace-write and danger-full-access: a classifier grants routine sandbox escalations once, while dangerous or uncertain requests still go to a human.

    dsh plugin --profile default add github:Jiao-XXX/dsh-auto-approve
  • Listed Bundle verified

    Adds an Auto Approve permission preset to the Web UI, using a fresh restricted Reviewer Agent to allow or deny each approval request.

    dsh plugin --profile default add github:simon300000/dsh-auto
  • Listed Bundle verified

    LLM auto-approval for sandbox escalation requests, with presets and a fail-closed fallback.

    dsh plugin --profile default add github:SeverusZh/dsh-yolo-mode
  • Listed Bundle verified

    Redacts supported secret patterns from the `session-telemetry/record` export copy before configured telemetry backends receive it.

    dsh plugin --profile default add github:030611/dsh-telemetry-redactor
  • Listed Bundle verified

    Support for the nono sandbox backend.

    dsh plugin --profile default add github:omdsh-dev/sandbox-nono