dsh-htb-skills
A DeepSeek Harness skill-library plugin that provides 112 HTB pentesting technique cards through a package-local skill provider.
Install
$ dsh plugin --profile web add link:./dsh-htb-skillsPlugin Overview & Capabilities
AI-assisted organization based on the public repository snapshot. The content must be grounded in source evidence and does not replace compatibility or security verification.
Key Capabilities
- Registers a package-local `htb` skill provider using `@deepseek-ai/dsh-skill-filesystem`.
- Supplies 112 pentesting skill cards covering web, AD/Windows, Linux, databases, cloud, credentials, forensics, networking, tools, and meta topics.
- Provides T1 routing cards and an `htb-skill-index` for session-visible discovery.
- Keeps T2 deep-dive and T3 reference cards hidden from model invocation until loaded by exact name.
- Supports package-versioned skills and edit hot reload without writing skills to `~/.dsh/skills`.
Useful For
- Use HTB-oriented technique references during authorized lab, training, or pentesting workflows.
- Browse top-level routing cards to locate a relevant security topic.
- Load a named deep-dive or reference card for focused guidance.
- Maintain a Git-managed skill collection shared across DSH installations.
Who It Fits
- DeepSeek Harness users studying Hack The Box or penetration-testing techniques.
- Security practitioners working in authorized training or assessment environments.
- Maintainers who want a package-local, versioned DSH skill library.
Documented Limitations
- Designed for DeepSeek Harness `0.1.0-rc.x` and depends on `@deepseek-ai/dsh-skill-filesystem ^0.1.0-rc.6`.
- Requires Node `^22.19.0 || >=24.0.0`.
- Provides skills only: the README states it has no browser component, tools, or routes.
- T2 and T3 cards use `disable-model-invocation: true` and must be loaded by exact name.
- Existing same-named skills in `~/.dsh/skills` can cause duplicates; preset-layer skills can shadow global-layer skills.
- The README notes that Harness is in developer preview and upstream breaking changes may require checking provider exports.
DSH Compatibility
Version-specific runtime evidence collected by DSH Plugin. A missing result means we have not tested that combination yet.
Security Signals
Objective signals discovered from package metadata and source inspection. These are not a guarantee that a plugin is safe.
package.json declares 1 runtime, 0 development, 0 peer, and 0 optional dependencies.
package.json declares DSH bundle metadata.
GitHub reports the repository license as MIT.
A root package.json was captured and can be inspected by the registry.
Public GitHub source metadata is available for this registry snapshot.
Source & Registry Notes
Public provenance, Registry classification, and the latest source check for this entry, kept separate from runtime verification.
- Source repository
- qingsiweisan/dsh-htb-skills
- Registry source
- GitHub · dsh-plugin topic
- Registry classification
- Plugin
- Source checked
- 07ac8ee · 2026-08-20
This project is independently indexed from public source information. DSH Plugin is not affiliated with DeepSeek or the plugin author. Always check the author repository before installation.
Repository Activity
- GitHub stars
- 0GitHub stars
- Forks
- 0
- Open issues
- 0
- Last commit
- 2026-08-20
- Last release
- No release detected
Related DSH Plugins
Ranked by overlapping capabilities, use cases, plugin type, categories, and DSH profile.
Sandbox-first automatic permission policy and intelligent risk classification for DeepSeek Harness.
View plugin →Local, fast cross-agent memory and session indexing system with DeepSeek Harness integration.
View plugin →A bilingual DeepSeek Harness cost-tracking plugin with session and daily costs, budgets, pricing management, balance lookup, and coding-plan quota displays.
View plugin →Comprehensive long-term memory, self-evolution, skills, task management, and multi-agent dispatch bundle for DeepSeek Harness.
View plugin →