dsh-termux-sandbox
Android/Termux sandbox-policy plugin that keeps DeepSeek Harness runnable by enforcing honest `danger-full-access` sessions when bwrap and Landlock cannot operate.
Install
$ dsh plugin --profile web add dsh-termux-sandboxPlugin Overview & Capabilities
AI-assisted organization based on the public repository snapshot. The content must be grounded in source evidence and does not replace compatibility or security verification.
Key Capabilities
- Sets new and restored Android/Termux sessions to `danger-full-access` through the sandbox-policy write path.
- Guards against switches back to confined modes and re-applies `danger-full-access`.
- Reports the effective unconfined sandbox state honestly to the model context.
- Auto-detects Android/Termux; can be forced to Android activation or desktop no-op mode.
- Exports a `dsh.bundle` Cordis patch for automatic mounting through `dsh plugin add`.
Useful For
- Running DeepSeek Harness agent commands in Termux when bwrap and Landlock cause `SANDBOX_UNAVAILABLE`.
- Sharing a DSH profile configuration across desktop and Android, with the plugin inactive on non-Android hosts.
- Making the lack of filesystem confinement explicit rather than using a nonfunctional confined policy.
Who It Fits
- DeepSeek Harness users running on Android through Termux.
- Developers testing or adapting DSH sandbox-policy behavior on Android-like environments.
Documented Limitations
- It removes process-level file sandboxing for activated sessions; agent commands can read and write the Termux home directory, including DSH configuration and stored credentials.
- It requires an existing DSH installation and Android host-level fixes described by the project before DSH can boot on Termux.
- It is tested by the project with `@deepseek-ai/[email protected]` on Termux aarch64 / Android 14.
- Android versions below 11 require a different koffi rebuild patch according to the documentation.
- On non-Android hosts it intentionally does nothing.
DSH Compatibility
Version-specific runtime evidence collected by DSH Plugin. A missing result means we have not tested that combination yet.
Security Signals
Objective signals discovered from package metadata and source inspection. These are not a guarantee that a plugin is safe.
package.json declares 0 runtime, 17 development, 4 peer, and 0 optional dependencies.
package.json declares DSH bundle metadata.
GitHub reports the repository license as MIT.
A root package.json was captured and can be inspected by the registry.
Public GitHub source metadata is available for this registry snapshot.
Source & Registry Notes
Public provenance, Registry classification, and the latest source check for this entry, kept separate from runtime verification.
- Source repository
- lin293387-del/dsh-termux-sandbox
- Registry source
- GitHub · dsh-plugin topic
- Registry classification
- Plugin
- Source checked
- 78600e4 · 2026-08-16
This project is independently indexed from public source information. DSH Plugin is not affiliated with DeepSeek or the plugin author. Always check the author repository before installation.
Repository Activity
- GitHub stars
- 0GitHub stars
- Forks
- 0
- Open issues
- 0
- Last commit
- 2026-08-16
- Last release
- No release detected
Related DSH Plugins
Ranked by overlapping capabilities, use cases, plugin type, categories, and DSH profile.
Sandbox-first automatic permission policy and intelligent risk classification for DeepSeek Harness.
View plugin →DSH undo and crash-recovery plugin with snapshots, rollback, Safe Mode, and offline Windows tools.
View plugin →Second-model AI auto-review for DeepSeek Harness approval requests with fail-closed safety and session audit.
View plugin →Composable three-tier memory control plane for DeepSeek Harness with runtime context, searchable documents, and pluggable long-term memory.
View plugin →