Runtime security gate for DeepSeek Harness: egress host allowlist, secret redaction in tool results, and an append-only audit log
$ dsh plugin --profile web add dsh-egress-guard
6
plugins
★ 1
Total stars
Runtime security gate for DeepSeek Harness: egress host allowlist, secret redaction in tool results, and an append-only audit log
$ dsh plugin --profile web add dsh-egress-guardA typed, inference-capable ontology (TBox + ABox) plugin for DeepSeek Harness — durable domain knowledge the agent declares, asserts against, and queries under schema constraints.
$ dsh plugin --profile web add dsh-ontologyS3-compatible spill backend for DeepSeek Harness: oversized tool output goes to object storage (AWS S3, MinIO, R2) instead of the agent's local disk
$ dsh plugin --profile web add --allow-build=dsh-spill-s3 github:tancheng33/dsh-spill-s3A Yogācāra (唯识) self-model plugin for DeepSeek Harness: eight consciousnesses, the 51 mental factors, a perfumed seed store, and a measurable self — written back into the agent's own prompt.
$ dsh plugin --profile web add dsh-yogacaraHashiCorp Vault backend for the DeepSeek Harness credential seam: central secrets, AppRole machine auth, rotation without restart, and no long-lived provider key on the agent host
$ dsh plugin --profile web add --allow-build=dsh-credentials-vault github:tancheng33/dsh-credentials-vaultContainer-isolated backend for the DeepSeek Harness code-execution seam: Code Mode programs run in a fresh container with no network, a read-only rootfs, and kernel-enforced memory, CPU, and pid ceilings
$ dsh plugin --profile web add --allow-build=dsh-code-runtime-container github:tancheng33/dsh-code-runtime-container