dsh-auto-mode
Sandbox-first automatic permission policy and intelligent risk classification for DeepSeek Harness.
Install
$ dsh plugin --profile web add @nanmicoder/[email protected]Plugin Overview & Capabilities
AI-assisted organization based on the public repository snapshot. The content must be grounded in source evidence and does not replace compatibility or security verification.
Key Capabilities
- Adds an 'Auto' permission mode situated between Workspace Write and Full Access
- Allows routine sandboxed development tasks, builds, tests, and dependency installations without prompting
- Tracks session-created artifacts by device, inode, and birth time for safe automatic cleanup
- Uses the active DSH model to classify out-of-workspace writes, ephemeral package executions, and sensitive operations based strictly on direct user prompts
- Enforces strict deny rules for critical paths, credential paths, and filesystem roots
- Supports sub-agent permission inheritance and integrates with DSH client locale for localized UI labels
Useful For
- Uninterrupted coding, building, and testing workflows in DeepSeek Harness without frequent permission interruptions
- Controlled sandbox widening with single-use grants for exact external target writes
- Preventing accidental filesystem or root modifications during automated AI agent tasks
Who It Fits
- DeepSeek Harness developers seeking a balance between safety and agent autonomy
- Users running automated coding workflows and sub-agent task executions in DSH
Documented Limitations
- Relies on the official DSH workspace-write sandbox rather than implementing a custom kernel sandbox
- Does not restrict file reads, network egress, or external services by default
- Windows backend ACL enforcement has documented partial boundaries
- Cannot mediate package lifecycle scripts or commands executed outside the DSH runtime
DSH Compatibility
Version-specific runtime evidence collected by DSH Plugin. A missing result means we have not tested that combination yet.
Security Signals
Objective signals discovered from package metadata and source inspection. These are not a guarantee that a plugin is safe.
package.json declares 1 runtime, 32 development, 8 peer, and 0 optional dependencies.
package.json declares DSH bundle metadata.
GitHub reports the repository license as MIT.
A root package.json was captured and can be inspected by the registry.
package.json declares a prepare lifecycle script that may run during relevant package installation workflows.
Public GitHub source metadata is available for this registry snapshot.
Source & Registry Notes
Public provenance, Registry classification, and the latest source check for this entry, kept separate from runtime verification.
- Source repository
- NanmiCoder/dsh-auto-mode
- Registry source
- GitHub · dsh-plugin topic
- Registry classification
- Plugin
- Source checked
- 4953fdc · 2026-09-27
This project is independently indexed from public source information. DSH Plugin is not affiliated with DeepSeek or the plugin author. Always check the author repository before installation.
Repository Activity
- GitHub stars
- 163GitHub stars
- Forks
- 6
- Open issues
- 4
- Last commit
- 2026-09-21
- Last release
- 2026-09-21
Related DSH Plugins
Ranked by overlapping capabilities, use cases, plugin type, categories, and DSH profile.
Second-model AI auto-review for DeepSeek Harness approval requests with fail-closed safety and session audit.
View plugin →Persistent multi-model Agent teams and bounded DAG workflows with GUI controls for DeepSeek Harness.
View plugin →Native SQLite-backed local project taskboard plugin and UI for DeepSeek Harness with Agent claim and review flows.
View plugin →Agent skill for generating interactive, verifiable architecture and workflow diagrams as self-contained HTML.
View plugin →