governed-workflow-for-dsh
A DeepSeek Harness governance plugin that restricts protected coding-agent mutations to authorized, lifecycle-controlled tasks.
Install
No clear install command was found in the current repository evidence.
Plugin Overview & Capabilities
AI-assisted organization based on the public repository snapshot. The content must be grounded in source evidence and does not replace compatibility or security verification.
Key Capabilities
- Reads machine-readable task authority from public GitHub Issues through an optional provider.
- Advances tasks through authority observation, admission, running, blocked/completed, and review-pending states.
- Guards protected `bash`, `write`, and `edit` mutations so they are allowed only in `RUNNING` with accepted authority.
- Provides the read-only `governance_status` tool and allowlisted `governance_transition` actions.
- Records authority observations and lifecycle transitions as bounded governance evidence.
- Prevents the Builder runtime from self-accepting, merging, closing accepted work, or activating successor tasks.
Useful For
- Applying explicit task scope and stop conditions to multi-file coding-agent work.
- Adding review and rollback discipline to longer-running agent-assisted projects.
- Reducing scope drift and unintended protected mutations in maintained repositories.
- Governing agent work on applications, backend services, research tools, and automation systems.
Who It Fits
- Teams using DeepSeek Harness coding agents on medium-to-large codebases.
- Developers who need explicit task authority and independent review boundaries.
- Maintainers working on multi-stage or higher-risk agent-assisted changes.
Documented Limitations
- The project is a V0.9 Developer Technical Preview.
- The documented installer is an IH-1 candidate pending independent review and is not yet on `main`.
- It is not a complete OS sandbox; `allowedPaths` containment, Git command semantics, and GitHub merge/close API enforcement are not runtime-enforced.
- The optional GitHub Issue authority provider reads public GitHub Issues.
- The package declares compatibility with DSH `0.1.0-rc.6`.
DSH Compatibility
Version-specific runtime evidence collected by DSH Plugin. A missing result means we have not tested that combination yet.
Security Signals
Objective signals discovered from package metadata and source inspection. These are not a guarantee that a plugin is safe.
package.json declares 1 runtime, 10 development, 4 peer, and 0 optional dependencies.
package.json declares DSH bundle metadata.
GitHub reports the repository license as MIT.
A root package.json was captured and can be inspected by the registry.
package.json declares a prepare lifecycle script that may run during relevant package installation workflows.
Public GitHub source metadata is available for this registry snapshot.
Source & Registry Notes
Public provenance, Registry classification, and the latest source check for this entry, kept separate from runtime verification.
- Source repository
- zcx369658780/governed-workflow-for-dsh
- Registry source
- GitHub · dsh-plugin topic
- Registry classification
- Plugin
- Source checked
- e2e0e47 · 2026-09-17
This project is independently indexed from public source information. DSH Plugin is not affiliated with DeepSeek or the plugin author. Always check the author repository before installation.
Repository Activity
- GitHub stars
- 2GitHub stars
- Forks
- 0
- Open issues
- 2
- Last commit
- 2026-08-20
- Last release
- No release detected
Related DSH Plugins
Ranked by overlapping capabilities, use cases, plugin type, categories, and DSH profile.
Native SQLite-backed local project taskboard plugin and UI for DeepSeek Harness with Agent claim and review flows.
View plugin →Persistent multi-model Agent teams and bounded DAG workflows with GUI controls for DeepSeek Harness.
View plugin →Multi-agent team collaboration plugin for DeepSeek Harness with DAG task scheduling, mailbox messaging, and an interactive Web UI monitor.
View plugin →Verifiable research-report engine for DeepSeek Harness with content-addressed evidence ledgers and tamper-evident sealed reports.
View plugin →