← DeepSeek Harness Plugins
DeepSeek Harness PluginManifest Valid

auditrail

Security auditing and session forensics bundle for DeepSeek Harness with SQLite persistence, redaction, and replay.

UI & ProductivityTerminal & TUIDeveloper ToolsBrowser & WebSecurity & PolicyRemote Execution
1GitHub Stars0ForksUpdated2026-09-30

Install

$ dsh plugin --profile <name> add /path/to/dsh-plugin/auditrail

Plugin Overview & Capabilities

AI-assisted organization based on the public repository snapshot. The content must be grounded in source evidence and does not replace compatibility or security verification.

source-grounded
dsh-audit-trail is a security auditing and session forensics bundle for DeepSeek Harness. It subscribes to harness session event streams and tool pipelines to record full tool-invocation chains, detects high-risk commands, applies privacy masking, and stores hash-chained records in SQLite (WAL). It provides model-facing tools (audit_query, audit_export, audit_policy, audit_playback) as well as a standalone CLI for terminal replay, verification, and compliance exports.

Key Capabilities

  • Records full tool invocation chains including actors, timestamps, commands, files accessed, network targets, status, and duration
  • Evaluates built-in and configurable sensitive operation rules to flag risky actions like rm -rf, privilege escalation, or key access
  • Applies secret masking, argument truncation, and privacy redaction before persisting records
  • Stores audit trails in SQLite using WAL mode and SHA-256 hash chaining to detect tampering
  • Provides model-facing tools for querying, exporting (JSON, Markdown, JSONL), inspecting policies, and generating plain-text replays
  • Includes a standalone auditrail CLI for offline verification, stats, replay, and policy checks

Useful For

  • Security compliance and forensic analysis of automated DeepSeek Harness tool execution
  • Tamper-evident auditing of multi-step model workflows and file/network interactions
  • Incident investigation and plain-text terminal replay of agent sessions without web UI dependencies

Who It Fits

  • Security engineers and compliance officers auditing agent operations
  • DeepSeek Harness developers needing full visibility into tool dispatch and sensitive command usage
  • DevOps and SRE teams running production Harness environments

Documented Limitations

  • Requires Node.js 22.13 or newer due to reliance on built-in node:sqlite
  • CLI-level policy additions or modifications are process-scoped and runtime-only unless configured via dsh profile settings

DSH Compatibility

Version-specific runtime evidence collected by DSH Plugin. A missing result means we have not tested that combination yet.

Not tested yetNo runtime compatibility tests have been published yet.

Security Signals

Objective signals discovered from package metadata and source inspection. These are not a guarantee that a plugin is safe.

Dependency Counts

package.json declares 0 runtime, 4 development, 2 peer, and 0 optional dependencies.

info
Dsh Bundle Declared

package.json declares DSH bundle metadata.

info
License Declared

GitHub reports the repository license as MIT.

info
Package Manifest Available

A root package.json was captured and can be inspected by the registry.

info
Source Available

Public GitHub source metadata is available for this registry snapshot.

info

Source & Registry Notes

Public provenance, Registry classification, and the latest source check for this entry, kept separate from runtime verification.

Source repository
JohnXu22786/auditrail
Registry source
GitHub · dsh-plugin topic
Registry classification
Plugin Bundle
Source checked
0d7d995 · 2026-09-30

This project is independently indexed from public source information. DSH Plugin is not affiliated with DeepSeek or the plugin author. Always check the author repository before installation.

Repository Activity

GitHub stars
1GitHub stars
Forks
0
Open issues
0
Last commit
2026-09-30
Last release
No release detected
For maintainers

Maintaining this plugin?

This listing is generated from public repository data. If you maintain this project, you can review the information and share this listing with your users if you find it useful.

Add to README
Listed on DSHPlugin.app