dsh-auto-review
Second-model AI auto-review for DeepSeek Harness approval requests with fail-closed verdicts and audit logging.
Install
$ dsh plugin --profile web add "github:PerryLink/dsh-auto-review#main"Plugin Overview & Capabilities
AI-assisted organization based on the public repository snapshot. The content must be grounded in source evidence and does not replace compatibility or security verification.
Key Capabilities
- Evaluates DSH approval requests using an isolated, read-only reviewer subagent (read/glob/grep)
- Returns structured allow/deny/riskLevel verdicts and feeds rejection reasons back into the agent context
- Provides fail-closed fallback handling on timeout, subagent failure, or schema mismatches
- Supports per-tool routing policies (ai/human/never), regex risk rules, and a denial circuit breaker
- Provides /auto-review session commands and an interactive Web GUI review panel
- Includes dsh-eval agent evaluation CLI and a standalone deterministic MCP server
Useful For
- Safely automating routine bash and filesystem operations in autonomous agent runs without human fatigue
- Enforcing strict risk-pattern boundaries and structured rejection feedback on sensitive tool invocations
- Auditing and reviewing agent trajectory decisions across headless DSH deployments
Who It Fits
- Developers building autonomous or unattended DeepSeek Harness workflows
- Teams requiring auditable, policy-driven security controls for agent tool execution
Documented Limitations
- Reviewer subagent verdicts are model-generated policy decisions rather than an immutable kernel sandbox
- Requires a functioning LLM route and valid global read tools in the profile
- Argument redaction matches credential key names rather than unstructured payload contents
- Hosts lacking ignorable envelope marker support fall back to in-memory audit degradation
DSH Compatibility
Version-specific runtime evidence collected by DSH Plugin. A missing result means we have not tested that combination yet.
Security Signals
Objective signals discovered from package metadata and source inspection. These are not a guarantee that a plugin is safe.
package.json declares 18 runtime, 30 development, 16 peer, and 0 optional dependencies.
package.json declares DSH bundle metadata.
GitHub reports the repository license as Apache-2.0.
A root package.json was captured and can be inspected by the registry.
package.json declares a prepare lifecycle script that may run during relevant package installation workflows.
Public GitHub source metadata is available for this registry snapshot.
Source & Registry Notes
Public provenance, Registry classification, and the latest source check for this entry, kept separate from runtime verification.
- Source repository
- PerryLink/dsh-auto-review
- Registry source
- GitHub · dsh-plugin topic
- Registry classification
- Plugin
- Source checked
- 362a566 · 2026-09-30
This project is independently indexed from public source information. DSH Plugin is not affiliated with DeepSeek or the plugin author. Always check the author repository before installation.
Repository Activity
- GitHub stars
- 219GitHub stars
- Forks
- 2
- Open issues
- 10
- Last commit
- 2026-09-24
- Last release
- 2026-09-25
Related DSH Plugins
Ranked by overlapping capabilities, use cases, plugin type, categories, and DSH profile.
Native SQLite-backed task management and project board bundle with Web UI and Agent workflow tools for DeepSeek Harness.
View plugin →Compatibility bridge running unmodified Pi ecosystem extensions natively on DeepSeek Harness.
View plugin →Multi-model workflow teams and DAG orchestration GUI for DeepSeek Harness Web profile.
View plugin →Agent skill for generating interactive, verifiable architecture and workflow diagrams as self-contained HTML.
View plugin →