# secret-guard

> dsh security plugin: blocks agents from reading/writing sensitive files (.env, credentials), masks leaked secrets in tool results, audit journal, safe sg_* inspection tools

## Metadata

- Author: [@JohnXu22786](https://github.com/JohnXu22786)
- Repo: <https://github.com/JohnXu22786/secret-guard>
- GitHub: [JohnXu22786/secret-guard](https://github.com/JohnXu22786/secret-guard)
- Stars: 0
- Language: TypeScript
- License: [MIT](https://spdx.org/licenses/MIT.html)
- Topics: `deepseek-harness`, `dsh`, `dsh-plugin`
- Forks: 0
- Open Issues: 0
- Last push: 2026-08-17T01:35:16.000Z
- Added: 2026-08-17T00:00:00.000Z

## Install

```bash
dsh plugin --profile web add dsh-secret-guard
```

---

This document is auto-generated by [deepseek-plugin.org](https://deepseek-plugin.org). HTML page: [secret-guard](https://deepseek-plugin.org/plugins/JohnXu22786/secret-guard)
