0
Indirect prompt-injection guard for DeepSeek Harness: taints tool output by origin, gates privileged calls that follow untrusted content, and refuses credentials heading off the machine.
$ dsh plugin --profile web add --allow-build=dsh-taintguard github:sashankh/dsh-taintguard