sandbase-harness
sandbaseai
Local-first, self-hosted AI agent runtime and MCP bridge with sandboxed sessions, memory, credentials, audit/replay, and a local Console.
PROJECT TOPICS
INSTALL REFERENCE
dsh plugin --profile web add github:hesiwen66/OctoOps
该命令指向仓库当前默认分支;尚无绑定当前 commit 的完整验证结果。
PROJECT README
DeepSeek Harness 的服务器运维与 JumpServer 堡垒机插件。
rm -rf、reboot、清空防火墙等破坏性命令执行前强制拦截并要求二次确认。


dsh plugin add hesiwen66/OctoOps
# 或
dsh plugin add dsh-octoops
npm install git+https://github.com/hesiwen66/OctoOps.git
cd plugins
git clone https://github.com/hesiwen66/OctoOps.git dsh-octoops
cd dsh-octoops && npm install
在 cordis.patch.yml 中配置:
plugins:
dsh-octoops:
confirmPolicy: auto # 每会话首次执行确认 (auto / always / never)
dangerPolicy: always-ask # 高危命令强制确认
defaultTimeoutMs: 30000 # 命令超时时间 (ms)
jumpserverSshPort: 2222 # JumpServer 堡垒机 SSH 端口
device_list - 列出纳管设备与堡垒机资产device_find - 按 IP 或主机名查找设备device_exec - 在目标机器上执行命令device_test - 测试连通性并采集内网 IPdevice_read_file / device_write_file - 通过 SFTP 读写远程文件device_memory - 查看设备环境信息与历史记录jumpserver_sync - 同步 JumpServer 资产列表/device-list、/device-exec - 快捷斜杠命令CLASSIFICATION EVIDENCE
系统优先读取 GitHub Topics,再与站内分类词典和词根规则比对。当前命中: ai-ops、devops。