deepseek-harness
deepseek-ai
DeepSeek Harness: Everything is a Plugin.
PROJECT TOPICS
PROJECT README
DSH Auto Mode — the native security-review plugin for DeepSeek Harness (DSH).
Pre-execution rule interception + delivery-time independent subagent deep review. Security first, trust second, quality third.
A native implementation of the Codex / Claude Code auto mode idea — built for long-running agents.
Long-running agents accumulate trust, context and write access over hours or days — and risk accumulates with them. dsh-auto-review adds a persistent, always-on security layer that never depends on the model remembering to be careful:
command/run events, replayable). /security auto off is the only way to disable it, and it only affects the current session.danger-full-access or any other permission preset never disables content review. The permission system answers "can the agent do this?"; Auto Mode answers "should it?". Both fail closed.write / edit / str_replace_editor / bash / read actions are checked against local rules (secrets, dangerous commands, sensitive paths). A match raises an approval question — allow once / deny, default deny (fail-closed). Only the root agent is intercepted.
When the root agent idles after making changes, a fresh read-only subagent (read / grep / glob only — no writes, no commands) reviews the changes:
/security shows status; /security auto on|off toggles (off = current session only, reversible)./security output and toggle command replies.Requires DSH (DeepSeek Harness). The plugin is a single ESM package (Node 18+).
git clone https://github.com/AtropinolTT/dsh-auto-review.git
dsh plugin --profile web add /path/to/dsh-auto-review
dsh plugin --profile cc-tui add /path/to/dsh-auto-review
For the web "auto" badge, add "dsh-auto-review" to dsh.profile.bundles in ~/.dsh/profiles/web/package.json, then restart dsh web.
Deep-merged from the plugin's cordis.patch.yml config field:
- id: dsh-auto-review
name: 'dsh-auto-review'
config:
rules:
enabled: true
custom:
- ruleId: key-aws
disabled: true
review:
mode: auto # auto | manual
provider: spawn
highSeverity: [critical, high]
/review — trigger a review manually (background)/security — plugin status (Auto Mode, rules, review layer, high-severity threshold)/security auto on|off — toggle Auto Mode for this session| Trigger | Mechanism | Default |
|---|---|---|
| write/edit/bash/read hits a rule | approval question (allow once / deny) | deny |
| agent idle with changes | read-only subagent review | report; high → ask fix |
| review interrupted / unparseable | — | never reports clean |
dsh-auto-review 是 DeepSeek Harness(DSH)的安全审查插件,实现 Codex / Claude Code "auto mode" 的原生版本,面向 长时运行 agent(长时间会话中信任、上下文与写权限不断累积,风险随之累积):
command/run 事件折叠);与 permission 正交——即使 full access 也不豁免内容审查;/security auto off 仅停用当前会话。/security 输出为准。/review 手动触发审查;/security、/security auto on|off 查看/切换状态。MIT — see LICENSE.
CLASSIFICATION EVIDENCE
系统优先读取 GitHub Topics,再与站内分类词典和词根规则比对。当前命中: 无有效分类标签。