← 返回列表
✓ 可直接安装
Awesome DSH Plugins——有证据的插件雷达
自动检查通过:npm 包已发布且 engines 声明满足基线(声明 Node >=22);该结论来自程序自动检查,未经人工实机验证。 · 最近上游提交 2026/9/18 · 已提供中文文档
有证据支持的 DeepSeek Harness 插件雷达与 2Origin 插件实验室
综合分
31.5
GitHub 分
31.5
用户评分
—
★ Stars
2
周下载量
—
安装插件(需先安装 dsh CLI 引擎:npm install -g @deepseek-ai/dsh)
dsh plugin --profile web add awesome-dsh-pluginsnpm 包 awesome-dsh-plugins 已校验归属本仓库,走 npm 安装最省事
数据截至 2026/9/18(元数据每日更新 · 实装验证按队列轮转,单条结论的验证时间见上方)
安装兼容性检查✓ 自动检查通过
以下结论由程序自动检查 npm 包、engines 声明与入口文件得出,未做人工实机验证——能装不等于用着没问题。
✓npm 包awesome-dsh-plugins @ 0.0.1
✓Node 引擎要求 >=22 · 基线 Node 22.19 满足
✓dsh CLI 依赖未声明 dsh 版本约束
✓入口文件main/exports/bin 已声明
验证方式:npm registry 存在性 + package.json 静态校验 · 最后验证 2026/9/19 03:10:47
用户评分
还没有人投票,来当第一个
订阅周报,不错过优质插件更新
每周一封 · 高评分插件 + 新用户活动
README
Awesome DSH Plugins——有证据的插件雷达 Awesome DSH Plugins 发现真正可安装的 DeepSeek Harness 插件,查看每条收录背后的证据,并探索 2Origin 插件实验室。 仓库检查 MIT 许可证 DSH 插件 Topic Awesome English · DeepSeek Harness 官方仓库 · 浏览已验证 Bundle · 终端搜索 · 2Origin 插件实验室 从这里开始 | 我想…… | 去这里 | |---|---| | 找一个真正可安装的 DSH profile bundle | 插件雷达 | | 估算把 Agent Skill 移植进 DSH 的工作量 | 能力移植评分 | | 在终端离线搜索插件 | CLI 搜索 | | 查看带可复现运行证据的插件 | 运行时兼容性层 | | 探索本实验室孵化的证据优先插件 | 2Origin 插件实验室 | 普通 CLI 搜索只读仓库内已提交的快照,不需要 GitHub token: npx github:dongsheng123132/awesome-dsh-plugins search memory 本仓刻意区分“提到了 DSH 的仓库”和“DSH 真正能激活的 profile bundle”。扫描器只有同时找到下面两项,才授予 Verified Bundle: 1. package.json 中存在 dsh.bundle.patch 声明; 2. 同一 Git tree 中确实存在该声明指向的 patch 文件。 这是结构验证,不是安全审计,也不等于插件一定兼容今天的 DSH main 分支。 分类只是启发式导航;决定验证状态的是 manifest 与 patch 证据,不是分类标签。 插件雷达 1098 个 Verified Bundle / 检查 1003 个 topic 仓库 / GitHub 报告总数 11490 Other: 329 · UI / TUI: 225 · Token & Cost: 68 · Browser: 67 · MCP Bridge: 63 · Security: 61 · Memory: 55 · Model & Routing: 54 · Coding: 34 · Office: 32 · Developer Tools: 28 · Finance: 28 · Long-running: 22 · Writing / Novel: 19 · Research: 12 · Provenance & Lineage: 1 | 插件 | 分类 | Stars | License | 证据 | 安装 | |---|---:|---:|---|---|---| | @open-design/dsh-runtimenexu-io/open-design | Office | 91246 | Apache-2.0 | packages/dsh-runtime/package.json → packages/dsh-runtime/cordis.patch.yml | 需看包说明 | | dsh-plugin-reactive-resumeamruthpillai/reactive-resume | MCP Bridge | 41696 | MIT | packages/dsh-plugin/package.json → packages/dsh-plugin/cordis.patch.yml | 需看包说明 | | @openviking/dsh-memory-pluginvolcengine/OpenViking | Memory | 33116 | AGPL-3.0 | examples/dsh-memory-plugin/package.json → examples/dsh-memory-plugin/cordis.patch.yml | 需看包说明 | | @wxg-prc-cpg/dsh-weknoraTencent/WeKnora | Office | 20577 | NOASSERTION | packages/dsh-weknora/package.json → packages/dsh-weknora/cordis.patch.yml | 需看包说明 | | dsh-plugin-desktopanywhere-labs/dsh-desktop | Other | 19998 | MIT | dsh-plugin-desktop/package.json → dsh-plugin-desktop/cordis.patch.yml | 需看包说明 | | @tt-a1i/archify-dshtt-a1i/archify | Long-running | 15658 | MIT | integrations/deepseek-harness/package.json → integrations/deepseek-harness/cordis.patch.yml | 需看包说明 | | @memtensor/memos-local-pluginMemTensor/MemOS | Token & Cost | 10966 | Apache-2.0 | apps/memos-local-plugin/package.json → apps/memos-local-plugin/adapters/deepseek-harness/cordis.patch.yml | 需看包说明 | | @dsh-external/dsh-super-injectoryjh051108/dsh-routing-suite | Model & Routing | 6777 | MIT | injector/package.json → injector/cordis.patch.yml | 需看包说明 | | @dsh-web/fileszhu1090093659/dsh-web | Browser | 6005 | Apache-2.0 | market/shell/packages/dsh-web-files/package.json → market/shell/packages/dsh-web-files/cordis.patch.yml | 需看包说明 | | dsh-ouroborosQ00/ouroboros | Long-running | 5657 | MIT | integrations/dsh-plugin/package.json → integrations/dsh-plugin/cordis.patch.yml | 需看包说明 | | deepseek-idesignDevin-AXIS/iPolloWork | Other | 4774 | NOASSERTION | external-plugins/deepseek-harness/design-studio/package.json → external-plugins/deepseek-harness/design-studio/cordis.patch.yml | 需看包说明 | | @petdex/dsh-plugincrafter-station/petdex | Other | 3974 | MIT | packages/petdex-desktop-native/integrations/dsh/package.json → packages/petdex-desktop-native/integrations/dsh/cordis.patch.yml | 需看包说明 | | @liustack/modlensliustack/modlens | MCP Bridge | 3644 | MIT | package.json → cordis.patch.yml | dsh plugin --profile web add github:liustack/modlens | | @struktoai/mirage-dshstrukto-ai/mirage | Other | 3563 | Apache-2.0 | typescript/packages/dsh/package.json → typescript/packages/dsh/cordis.patch.yml | 需看包说明 | | @agentscope-ai/remeagentscope-ai/ReMe | Memory | 3344 | Apache-2.0 | packages/typescript/package.json → packages/typescript/dsh/cordis.patch.yml | 需看包说明 | | dsh-better-sidebaromdsh-dev/DSH-better-sidebar | UI / TUI | 2861 | MIT | package.json → cordis.patch.yml | dsh plugin --profile web add github:omdsh-dev/DSH-better-sidebar | | dsh-codex-taskboardchuspeeism/dashi-taskboard | Other | 2541 | Apache-2.0 | integrations/deepseek-harness/package.json → integrations/deepseek-harness/cordis.patch.yml | 需看包说明 | | @deepseek-harness-tui/dsh-tuiccch1mneyyy/dsh-TUI | UI / TUI | 2511 | MIT | package.json → cordis.patch.yml | dsh plugin --profile web add github:ccch1mneyyy/dsh-TUI | | @zilliz/memsearch-dshzilliztech/memsearch | Memory | 2503 | MIT | plugins/dsh/package.json → plugins/dsh/cordis.patch.yml | 需看包说明 | | dshmarketdsh-market/dsh-market | Finance | 2299 | MIT | package.json → cordis.patch.yml | dsh plugin --profile web add github:dsh-market/dsh-market | | @dsh-external/dsh-client-ui-skin-maid-atelierSmall-tailqwq/dsh-deep-whale | UI / TUI | 1696 | — | maid-atelier/package.json → maid-atelier/cordis.patch.yml | 需看包说明 | | @wxg-prc-cpg/browser-skill-dsh-pluginTencent/BrowserSkill | Browser | 1310 | MIT | packages/dsh-plugin-browserskill/package.json → packages/dsh-plugin-browserskill/cordis.patch.yml | 需看包说明 | | @mem9/dsh-pluginmem9-ai/mem9 | Memory | 1199 | Apache-2.0 | dsh-plugin/package.json → dsh-plugin/cordis.patch.yml | 需看包说明 | | aegisGanyuanRan/Aegis | Coding | 1129 | MIT | package.json → extensions/dsh/cordis.patch.yml | dsh plugin --profile web add github:GanyuanRan/Aegis | | @open-pets/dshalvinunreal/openpets | Coding | 1115 | MIT | packages/dsh/package.json → packages/dsh/cordis.patch.yml | 需看包说明 | | @agentrq/dsh-plugin-agentrqagentrq/agentrq | Long-running | 1088 | Apache-2.0 | plugins/deepseek-harness/package.json → plugins/deepseek-harness/cordis.patch.yml | 需看包说明 | | dsh-contextbowenliang123/dsh-context | Browser | 1018 | Apache-2.0 | package.json → cordis.patch.yml | dsh plugin --profile web add github:bowenliang123/dsh-context | | @nanmicoder/dsh-agent-teamsNanmiCoder/dsh-agent-teams | Long-running | 980 | MIT | package.json → cordis.patch.yml | dsh plugin --profile web add github:NanmiCoder/dsh-agent-teams | | dsh-vision-routerysr666/dsh-vision-router | Model & Routing | 969 | MIT | package.json → cordis.patch.yml | dsh plugin --profile web add github:ysr666/dsh-vision-router | | dsh-whale-widgetMeteorNOX/DeepSeek-Balance-Whale-Widget | Other | 934 | MIT | package.json → cordis.patch.yml | dsh plugin --profile web add github:MeteorNOX/DeepSeek-Balance-Whale-Widget | 首页按仓库去重展示 Stars 前 30 项;同仓多 bundle 与全部结果见 data/plugins.json。快照:2026-08-25T08:59:38.471Z。 完整机器可读记录在 data/plugins.json。只贴了 topic、尚未通过 bundle 验证的仓库保留在 data/candidates.json,不会悄悄混进“可安装插件”。 Capability Port Score 第二张雷达从 Claude、Codex、共享 .agents、OpenClaw 与 SkillHub 定向搜索中发现公开 SKILL.md 候选,但不复制或重新发布其指令正文。每条记录先钉死仓库 commit、文件路径、Git blob、内容 SHA-256、许可证证据来源和逐行适配信号,再给出有证据的迁移路径: - copy:未观察到运行时、随包资源、可执行命令或权限依赖的自包含指令; - wrapper:需要命令、随包资源、网络、密钥、写入或 Shell 适配层; - bridge:必须翻译 Harness hook、插件协议或运行时专属配置; - unclassified:缺少必要的身份信息,保持未分类。 49 条固定 revision 候选:Copy 15 · Wrapper 30 · Bridge 2 · 未分类 2 | 能力 | 来源 | 移植路径 | 分数 | License | 固定证据 | |---|---|---:|---:|---|---| | code-conventionsiflytek/skillhub:.agents/skills/code-conventions/SKILL.md | agents | copy | 100/100 | Apache-2.0 | d2403bb59119 / 2add2e311e6c | | fixmotiondivision/motion:.agents/skills/fix/SKILL.md | agents | copy | 95/100 | MIT | adaf7a4e5368 / a00ab8442e03 | | fix-prquestdb/questdb:.codex/skills/fix-pr/SKILL.md | codex | copy | 95/100 | Apache-2.0 | 6610ab113b84 / e2293795c80c | | prGetStream/Vision-Agents:.claude/skills/pr/SKILL.md | claude | copy | 95/100 | Apache-2.0 | 3a8eec104f90 / 85f841bbc968 | | reviewailyProject/aily-blockly:.codex/skills/review/SKILL.md | codex | copy | 95/100 | GPL-3.0 | 03989eedeae0 / c417789bb49b | | seogridaco/grida:.agents/skills/seo/SKILL.md | agents | copy | 95/100 | Apache-2.0 | 5909675470e8 / 51350f506838 | | prmeshtastic/Meshtastic-Android:.claude/skills/pr/SKILL.md | claude | copy | 95/100 | GPL-3.0 | 42b07b22d7f2 / 7a332c807d86 | | qawp-media/wp-rocket:.claude/skills/qa/SKILL.md | claude | copy | 95/100 | GPL-2.0 | d103284e1931 / dc958f2e1d97 | | prwoocommerce/woocommerce-ios:.claude/skills/pr/SKILL.md | claude | copy | 95/100 | GPL-2.0 | 8193985dbb9e / f075eba0d630 | | zodhashintel/hash:.codex/skills/zod/SKILL.md | codex | copy | 90/100 | AGPL-3.0 | 840ac684fbba / a117ffc26060 | | jnaJetBrains/intellij-community:.agents/skills/jna/SKILL.md | agents | copy | 85/100 | — | d698802bc0c0 / a27c2e6d5151 | | sRyanCodrai/turbovec:.claude/skills/s/SKILL.md | claude | copy | 85/100 | MIT | 8202f194a0cb / 97d5d955a57a | | prliferay/liferay-portal:.claude/skills/pr/SKILL.md | claude | copy | 85/100 | — | 4210365ab97e / 3e71624f776d | | gonevalang/neva:.codex/skills/go/SKILL.md | codex | copy | 85/100 | MIT | bb7b3301b461 / 675bccd70ae5 | | prEverMind-AI/EverOS:.claude/skills/pr/SKILL.md | claude | wrapper | 79/100 | Apache-2.0 | b078f72138eb / d24a3217df00 | 完整记录、分项得分与逐行信号见 data/capabilities.json。快照:2026-08-13T22:47:12.754Z。分数只衡量观测到的适配工作量,不代表兼容、安全、质量或许可证已获准。 命令行搜索 npx github:dongsheng123132/awesome-dsh-plugins search memory npx github:dongsheng123132/awesome-dsh-plugins trending npx github:dongsheng123132/awesome-dsh-plugins verified npx github:dongsheng123132/awesome-dsh-plugins experimental npx github:dongsheng123132/awesome-dsh-plugins runtime skillport npx github:dongsheng123132/awesome-dsh-plugins risk process-execution npx github:dongsheng123132/awesome-dsh-plugins ports cad CLI 读取仓库已经提交的快照,普通搜索不需要 GitHub Token。 静态审查信号 雷达还会读取每个已验证 bundle 的 patch 和运行依赖,标记秘密配置、进程执行、文件系统、网络/浏览器、MCP 外部工具与 Web 客户端扩展等审查信号。第一轮 488 个 bundle 中有 163 个至少命中一项;这些信号带有 patch 或 dependencies 来源,只用于决定人工审查优先级,不是漏洞结论,也不是安全认证。完整记录在 data/plugins.json,命令行可用 risk [signal] 查询。 运行时兼容证据层 Verified Bundle 只证明仓库同时存在 dsh.bundle.patch 声明和它引用的 patch 文件。真正的运行证据单独放在 data/runtime-compat.json:每份报告钉死 DSH commit 与 Node 运行时,在全新的临时 profile 中安装、组合 patch 栈,再真实启动 Web profile,直到 DSH 自己打印 readiness URL。 第一次审计已经说明为什么必须分层:审计时 @dsh-skillport/bundle 尚未出现在 npm,因此 README 中的 registry 安装路径真实失败;但同一源码 commit 本地构建后,在 Node 24.19.0、已有构建产物的 DSH 47f943859bef 检出上完成安装、组合并启动到真实 readiness URL。干净 detached DSH 检出能安装、组合插件,但因缺少 DSH Web client bundle 被阻塞;继续构建该检出又先在 DSH 自身的 tsdown 缺 unrun 处失败。因此目前证据只支持“兼容已有构建产物的检出”,还不支持“干净源码可复现”。Node 22.14 那次另记为 blocked-environment,因为它不满足 DSH 自己声明的最低引擎要求,不能算插件失败。 下一层现已机器化:data/runtime-targets.json 同时钉死 0.1.1 之前的兼容锚点与官方 dsh-v0.1.1-rc.2 两条具名 DSH 基线、四个观察型社区插件 commit 和一个必须通过的 2Origin 阳性对照。运行时兼容矩阵 在 Ubuntu 与 Windows 上运行完整的“基线 × OS × package”笛卡尔积,先启动每条 stock DSH Web 基线作为仪器阳性对照,再在全新 DSH_HOME 中逐一安装、组合和启动各元组。基线 ID、固定 revision、报告路径、缓存键与 artifact 名互相隔离,升级证据不能覆盖旧锚点。基线生命周期脚本由各固定 DSH commit 自己的失败闭合 strictDepBuilds 与逐项审核 allowBuilds 策略管控,插件侧仍只精确放行目标声明的一个固定包。报告还会解析已安装包声明的入口;若构建产物缺失,则记为 package-artifact-missing,不再与 Harness 启动故障混为一谈。每次运行都会在移除凭据形与 CI 控制环境变量后上传只创建不覆盖、内容寻址的报告。observe 目标的有效负报告会记录生态兼容事实但不会把仪器本身判红;required 目标必须通过,证据缺失或格式错误始终失败。通过只证明指定组合兼容,不是安全认证。 可复跑命令: node scripts/runtime-verify.mjs --spec \ --dsh-repo /path/to/deepseek-harness \ --node /path/to/node-24 \ --record data/runtime-compat.json 2Origin 插件实验室 | 项目 | 状态 | 分类 | 要解决的问题 | 证据 | |---|---|---|---|---| | dsh-switch | verified | Model & Routing | Evidence-first provider health probes and optimistic-lock model switching for DSH. | Immutable plugin source and smoke commands, Clean GitHub Actions run, DSH revision used for isolated profile install | | dsh-cost | verified | Token & Cost | Durable usage-cost ledger with explicit evidence gaps, fail-closed budget checks, bounded sanitized MCP rows, a formal Codex manifest, real DSH ToolRuntime calls and stock Web Loader boot proof. | Immutable plugin source, MCP, DSH ToolRuntime and stock Web Loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for local and fixed-commit GitHub Web profile installs | | dsh-2origin | verified | Memory | Integrity-checked 2Origin state projection, semantic diff and optimistic-lock immutable freeze with a formal Codex manifest, proof-only MCP, real DSH ToolRuntime calls and stock Web Loader boot proof. | Immutable plugin source, proof-only MCP, DSH ToolRuntime and stock Web Loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for local and fixed-commit GitHub Web profile installs | | dsh-cad-review | verified | CAD / Engineering | Source-hashed ASCII DXF inspection and deterministic rule review with entity/layer/line/coordinate evidence, redacted drawing text, proof-only MCP and verified stock Web-profile loading. | Immutable plugin source, MCP, DSH runtime and stock Web loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for local and fixed-commit GitHub Web profile installs | | dsh-release-proof | verified | Release Engineering | Reproducible multi-source release evidence with anonymous bounded HTTP checks, deterministic content addressing, a formal Codex manifest, inline proof-only MCP, real DSH ToolRuntime calls and stock Web Loader boot proof. | Immutable plugin source, proof-only MCP, DSH ToolRuntime and stock Web Loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for local and fixed-commit GitHub Web profile installs | | dsh-benchmark | verified | Benchmarking | Manifest-fixed deterministic command/JSONL benchmarks with revision fingerprints, bounded raw measurements without business output, versioned scoring, proof-only MCP, real DSH ToolRuntime calls and stock Web Loader boot proof. | Immutable plugin source, proof-only MCP, DSH ToolRuntime and stock Web Loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for local and fixed-commit GitHub Web profile installs | | dsh-lineage | verified | Provenance & Lineage | Append-only content-addressed artifact/fact/action/report lineage with DAG checks, missing/stale disclosure, verified closure reports, proof-only MCP, real DSH ToolRuntime smoke and stock Web Loader boot. | Immutable plugin source, proof-only MCP, DSH ToolRuntime and stock Web Loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for local and fixed-commit GitHub Web profile installs | | dsh-recovery-proof | verified | Recovery Evidence | Read-only recovery drill evidence for object freshness, exact stages, RTO, failed-apply rollback and stale-plan rejection, with proof-only MCP, real DSH ToolRuntime smoke and stock Web Loader boot. | Immutable plugin source, proof-only MCP, DSH ToolRuntime and stock Web Loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for local and fixed-commit GitHub Web profile installs | | dsh-action-parity | verified | Action Parity | Content-addressed CLI, MCP and GUI bindings plus deterministic replay evidence for one stable Action ID and action core; formal Codex bundle, proof-only MCP, real DSH ToolRuntime calls and stock Web Loader boot are verified. | Immutable plugin source, proof-only MCP, DSH ToolRuntime and stock Web Loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for local and fixed-commit GitHub Web profile installs | | dsh-narrative-ledger | verified | Writing / Novel | Content-addressed canon, immutable fact lifecycle, timeline continuity and spoiler-safe knowledge projections; v0.2 adds verified stock Web loading and a proof-only inline MCP surface without manuscript prose. | Immutable plugin source, MCP, DSH runtime and stock Web loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for isolated profile install | | dsh-capability-receipt | verified | Provenance & Lineage | Content-addressed evidence for the effective skill body and bounded resource closure actually loaded by DSH, with pack-agent lock verification, a proof-only MCP surface, and verified stock Web-profile loading. | Immutable plugin source, MCP, DSH runtime and stock Web loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for isolated profile install and runtime smoke, Pinned pack-agent lock and hashing contract | | dsh-policy-drift-proof | verified | policy-governance | Pinned baseline/observed policy snapshots with value-redacted weakening, tightening, exact and fail-closed unclassified drift evidence; proof-only Codex MCP, real DSH ToolRuntime calls and stock Web Loader boot are verified. | Immutable plugin source, proof-only MCP, DSH ToolRuntime and stock Web Loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for local and fixed-commit GitHub Web profile installs | | dsh-audit-bundle | verified | audit-evidence | Pinned multi-producer evidence with subject/revision binding, value-hash assertions, control coverage, independence thresholds and a body-free Merkle index; formal proof-only Codex MCP, real DSH ToolRuntime calls and stock Web Loader boot are verified. | Immutable plugin source, proof-only MCP, DSH ToolRuntime and stock Web Loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for local and fixed-commit GitHub Web profile installs | | dsh-profile-lock-proof | verified | supply-chain-evidence | Content-addressed closure proof across a DSH profile declaration, pnpm importer, installed package identities and bundle patch hashes, with immutable-source and lifecycle-script checks; v0.2.0 adds host-neutral ToolDefinitions, proof-only inline MCP and real stock Web Loader coverage. | Immutable v0.2.0 source, proof-only MCP, installed-entry ToolRuntime and stock Web Loader smoke, Ubuntu and Windows GitHub Actions run, DSH revision used for isolated profile install and runtime smoke | | dsh-surface-contract-proof | verified | contract-evidence | Offline baseline/observed conformance proof that ToolRuntime, MCP JSON-RPC and CLI JSON recordings preserve schema versions, success/error/exit mappings, conflict/confirmation, ordering and result digests; v0.2.0 adds host-neutral ToolDefinitions, proof-only inline MCP and real stock Web Loader coverage. | Immutable v0.2.0 source, proof-only MCP, installed-entry ToolRuntime and stock Web Loader smoke, Ubuntu and Windows GitHub Actions run, DSH revision used for isolated profile install and runtime smoke | | dsh-windows-readiness-proof | verified | windows-enterprise-evidence | Pinned sanitized managed-Windows readiness evidence for DSH runtime, policy posture, filesystem/ACL, non-interactive service, storage and opaque connectivity controls; v0.1.1 also proves the namespace plugin through a real stock Web Loader boot without host collection or remediation. | Immutable plugin source, MCP, DSH ToolRuntime and stock Web Loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for isolated profile install and runtime smoke | | dsh-config-origin-proof | verified | configuration-evidence | Value-redacted configuration-source precedence receipts with winner, shadowed-source and unobserved-higher-priority evidence, plus proof-only MCP and verified stock Web loading. | Immutable plugin source, MCP, DSH ToolRuntime and stock Web Loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for isolated profile install and runtime smoke | | dsh-schema-migration-proof | verified | migration-evidence | Revision-bound schema migration fixture evidence for idempotence, rollback, required invariants and explicit loss disclosure, with proof-only MCP and verified stock Web loading. | Immutable plugin source, MCP, DSH ToolRuntime and stock Web Loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for isolated profile install and runtime smoke | | dsh-loader-settlement-proof | verified | runtime-evidence | Revision-bound, body-free DSH Loader settlement receipts for ordered declaration/resolution/loading/activation, injection closure and registered tool schema digests, with proof-only MCP and verified stock Web loading. | Immutable plugin source, MCP, DSH ToolRuntime and stock Web Loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for isolated profile install and runtime smoke | | dsh-decision-effect-proof | verified | authorization-evidence | Body-free, content-addressed reconciliation of recorded DSH authorization decisions and effect envelopes: request/state/policy binding, confirmation, denied-effect absence, settlement, replay and ordering checks without granting authority or executing actions. | Immutable plugin source, MCP, DSH ToolRuntime and stock Web Loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH revision used for isolated path and fixed-commit GitHub installs | | dsh-output-custody-proof | verified | output-evidence | Body-free, content-addressed custody proof across formatted DSH tool results, model-visible or durable-only projections, full spill references and durable events, with byte budgets, exact omission, stage order and upstream-incompleteness disclosure. | Immutable plugin source, MCP, DSH ToolRuntime and stock Web Loader smoke commands, Ubuntu and Windows GitHub Actions run, DSH 0.1.1-rc.1 revision used for source build, isolated path and fixed-commit GitHub installs | | dsh-attestation-proof | verified | supply-chain-evidence | Offline, content-addressed DSSE/in-toto release evidence with SHA-256-pinned public keys, distinct-signer thresholds, subject/predicate/hashed-claim policy checks, proof-only MCP and real DSH ToolRuntime verification without returning signed payloads. | Immutable plugin source, formal Codex manifest, proof-only MCP and real DSH ToolRuntime smoke commands, Ubuntu and Windows GitHub Actions run, DSH 0.1.0-rc.7 revision used for isolated path and fixed-commit GitHub installs | | dsh-retention-settlement-proof | verified | retention-evidence | Body-free, content-addressed proof that an approved deletion request settled into a bound tombstone and remained absent across required DSH persistence, session and workspace projections after restart, with freshness, missing-surface and resurrection disclosure and no destructive actions. | Immutable plugin source, formal Codex manifest, proof-only MCP and real DSH ToolRuntime smoke commands, Ubuntu and Windows GitHub Actions run, DSH 0.1.0-rc.7 revision used for isolated path and fixed-commit GitHub installs | | dsh-tool-surface-proof | verified | tool-surface-evidence | Offline, content-addressed conformance proof for explicitly recorded model-visible DSH tool surfaces across deployment revision, agent scope, permission mode and presentation mode, with hashed add/remove/schema/order drift and no schema, description or secret disclosure. | Immutable plugin source, formal Codex manifest, redacted MCP and real DSH ToolRuntime smoke commands, Ubuntu and Windows GitHub Actions run, DSH 0.1.0-rc.7 used for isolated local-path and fixed-commit GitHub installs | | dsh-windows-settlement-proof | verified | windows-operations-evidence | Offline, content-addressed proof that an approved Windows control-plane change settled across required service, scheduled-task, event and policy surfaces at the required restart epoch, with hash-only drift disclosure and no PowerShell, registry, service or task execution. | Immutable plugin source, formal Codex manifest, redacted MCP and real DSH ToolRuntime settlement smoke, Ubuntu and Windows GitHub Actions run, DSH 0.1.0-rc.7 used for isolated local-path and fixed-commit GitHub installs | | dsh-principal-binding-proof | verified | identity-binding-evidence | Offline, content-addressed proof that one pseudonymous authority, tenant and target revision remain consistently bound across principal, session, agent, tool-call, runtime and artifact surfaces, with issuer, validity, revocation, key-epoch and unique-chain checks and no authentication or authority grant. | Immutable plugin source, formal Codex manifest, proof-only MCP and real DSH ToolRuntime binding smoke, Ubuntu and Windows GitHub Actions run, DSH 0.1.0-rc.7 used for isolated local-path and fixed-commit GitHub installs | | dsh-policy-waiver-proof | verified | policy-exception-evidence | Offline, content-addressed proof that a temporary policy waiver stayed within its approved pseudonymous subject, target revision, scope, action allowlist, lifetime and use limit, with fresh compensating-control, revocation and closure checks and no policy change, approval or command execution. | Immutable plugin source, formal Codex manifest, redacted MCP and real DSH ToolRuntime containment smoke, Ubuntu and Windows GitHub Actions run, DSH 0.1.0-rc.7 used for isolated local-path and fixed-commit GitHub installs | | dsh-reproducible-build-proof | verified | supply-chain-reproducibility-evidence | Offline, content-addressed proof that two or more independently operated allowed builders recorded equivalent source, recipe, build type, parameters, dependency set and environment contract and reproduced the exact byte-identical specified outputs, without running builds, authenticating provenance or claiming complete supply-chain security. | Immutable plugin source, formal Codex manifest, proof-only MCP and real DSH ToolRuntime reproducibility smoke, Ubuntu and Windows GitHub Actions run, DSH 0.1.0-rc.7 used for isolated local-path and fixed-commit GitHub installs | | dsh-build-hermeticity-proof | verified | supply-chain-hermeticity-evidence | Offline, content-addressed proof that one explicit hash-only build access receipt stayed inside its declared file, environment, deny-network, fixed-clock, fixed-randomness and output closure, without executing or sandboxing a build, authenticating the recorder or proving reproducibility. | Immutable plugin source, formal Codex manifest, proof-only MCP and real DSH ToolRuntime hermeticity smoke, Ubuntu and Windows GitHub Actions run, DSH 0.1.0-rc.7 used for isolated local-path and fixed-commit GitHub installs | | dsh-artifact-promotion-proof | verified | supply-chain-promotion-evidence | Offline, content-addressed proof that one immutable artifact digest followed an exact ordered build-to-staging-to-production chain with environment bindings, predecessor deployment receipts, required gate types, distinct authorities and fresh chronology, without deploying, granting approval, authenticating receipts or claiming runtime health. | Immutable plugin source, formal Codex manifest, proof-only MCP and real DSH ToolRuntime promotion smoke, Ubuntu and Windows GitHub Actions run, DSH 0.1.0-rc.7 used for isolated local-path and fixed-commit GitHub installs | | dsh-deployment-rollback-proof | verified | deployment-rollback-settlement-evidence | Offline, content-addressed proof that every explicitly declared deployment target stopped serving one failed artifact and converged within RTO to the same last-known-good digest with exact replica counts, incident and rollback-plan binding, observer diversity and fresh chronology, without executing rollback, authenticating receipts, observing live infrastructure or claiming application correctness. | Immutable plugin source, formal Codex manifest, proof-only MCP and real DSH ToolRuntime rollback-convergence smoke, Ubuntu and Windows GitHub Actions run, DSH 0.1.0-rc.7 used for isolated local-path and fixed-commit GitHub installs | | dsh-canary-decision-proof | verified | progressive-delivery-decision-evidence | Offline, content-addressed proof that a recorded canary promote, abort or pause decision follows exact hash-bound baseline/canary windows, exposure limits, sample floors, observer diversity, metric regression thresholds and evidence chronology, failing closed to pause when evidence is incomplete, without querying metrics, executing rollout, authenticating receipts or claiming statistical significance. | Immutable plugin source, formal Codex manifest, proof-only MCP and real DSH ToolRuntime canary-decision smoke, Ubuntu and Windows GitHub Actions run, DSH 0.1.0-rc.7 used for isolated local-path and fixed-commit GitHub installs | | dsh-change-window-proof | verified | change-window-settlement-evidence | Offline, content-addressed proof that one supplied hash-linked change event ledger stayed inside one declared UTC maintenance window and cutoff while remaining bound to the same change receipt, artifact, environment, policy and plan with observer diversity and fresh chronology, without approving, waiving, scheduling or executing change, authenticating receipts, observing live systems or claiming absence of unrecorded actions. | Immutable plugin source, formal Codex manifest, proof-only MCP and real DSH ToolRuntime change-window smoke, Ubuntu and Windows GitHub Actions run, DSH 0.1.0-rc.7 used for isolated local-path and fixed-commit GitHub installs | | dsh-break-glass-settlement-proof | verified | emergency-access-settlement-evidence | Offline, content-addressed proof that one supplied emergency-access session stayed within its request, activation, termination and expiry bounds, used only explicitly allowlisted action/resource receipts, retained one session/principal binding, revoked every declared grant before a fresh zero-residual closure observation, and met observer diversity, without granting, activating, approving or revoking access, authenticating receipts, querying live identity systems or claiming absence of undeclared actions or grants. | Immutable plugin source, formal Codex manifest, proof-only MCP and real DSH ToolRuntime break-glass settlement smoke, Ubuntu and Windows GitHub Actions run, DSH 0.1.0-rc.7 used for isolated local-path and fixed-commit GitHub installs | | dsh-access-review-proof | verified | access-recertification-evidence | Offline, content-addressed proof that one supplied access-review campaign covered its complete declared entitlement inventory, met risk-based staged and independent-reviewer policy, closed every final keep/revoke decision into matching active/revoked evidence, and produced an exact fresh post-review snapshot with observer diversity, without approving or changing access, authenticating receipts, querying live identity systems or claiming the supplied inventory is exhaustive. | Immutable plugin source, formal Codex manifest, proof-only MCP and real DSH ToolRuntime access-review smoke, Ubuntu and Windows GitHub Actions run, DSH 0.1.0-rc.7 used for isolated local-path and fixed-commit GitHub installs | | dsh-duty-separation-proof | verified | duty-separation-evidence | Offline, content-addressed proof that one supplied hash-linked DSH workflow followed its exact request/approval/execution/observation sequence, kept declared conflicting duties on disjoint pseudonymous principals, met approval, principal and observer thresholds, and remained fresh, without granting authority, approving or executing actions, authenticating receipts, observing live systems or claiming the supplied ledger is exhaustive. | Immutable plugin source, formal Codex manifest, proof-only MCP and real DSH ToolRuntime duty-separation smoke, Ubuntu and Windows GitHub Actions run, DSH source checkout 47f943859bef (package 0.1.0-rc.5) used for isolated local-path and fixed-commit GitHub installs | | dsh-credential-retirement-proof | verified | credential-retirement-evidence | Offline, content-addressed proof that one supplied credential rotation settled across every explicitly declared consumer: the new credential was accepted, the old credential was rejected, overlap stayed bounded, receipt identities remained distinct and a fresh closure observation reported zero residual old bindings, without reading, issuing, rotating or revoking secrets, authenticating receipts, querying live systems or claiming the supplied consumer inventory is exhaustive. | Immutable plugin source, formal Codex manifest, proof-only MCP and real DSH ToolRuntime credential-retirement smoke, Ubuntu and Windows GitHub Actions run, DSH source checkout 47f943859bef (package 0.1.0-rc.5) used for isolated local-path and fixed-commit GitHub installs | | dsh-vulnerability-remediation-proof | verified | vulnerability-remediation-evidence | Offline, content-addressed proof that one supplied remediation campaign covered every explicitly declared asset, deployed the same fixed artifact, rescanned after deployment, met its deadline and produced a fresh zero-vulnerable closure with observer diversity, without discovering assets, scanning, patching, authenticating receipts, querying live systems or claiming the supplied inventory is exhaustive or that no other vulnerability exists. | Immutable plugin source, formal Codex manifest, proof-only MCP and real DSH ToolRuntime remediation-closure smoke, Ubuntu and Windows GitHub Actions run, DSH source checkout 47f943859bef (package 0.1.0-rc.5) used for isolated local-path and fixed-commit GitHub installs | | dsh-license-obligation-proof | verified | license-obligation-evidence | Offline, content-addressed proof that every explicitly declared component decision for one supplied release had exact NOTICE, license-text, source-offer, source-bundle or modification-notice obligations matched by delivered artifact digests, distinct receipts, reviewer and observer thresholds and a fresh zero-unresolved closure, without scanning packages, normalizing SPDX, interpreting licenses, providing legal advice, authenticating receipts or claiming legal compliance or exhaustive component coverage. | Immutable plugin source, formal Codex manifest, proof-only MCP and real DSH ToolRuntime obligation-closure smoke, Ubuntu and Windows GitHub Actions run, DSH source checkout 47f943859bef (package 0.1.0-rc.5) used for isolated local-path and fixed-commit GitHub installs | | dsh-support-lifecycle-proof | verified | support-lifecycle-evidence | Offline, content-addressed proof that a supplied release support declaration has exact component/release bindings, support-window chronology, distinct reviewer and receipt thresholds, explicit retirement notice and migration artifact digests for expired components, freshness, and a zero-unsupported closure. It does not scan compatibility, query deployments, announce or execute end-of-life, authenticate receipt issuers, prove inventory completeness, or provide operational or legal advice. | Immutable plugin source, formal Codex manifest, proof-only MCP and isolated DSH local-path plus fixed-commit GitHub installation evidence, Ubuntu and Windows GitHub Actions run, DSH source checkout 47f943859bef (package 0.1.0-rc.5) used for isolated local-path and fixed-commit GitHub installs | 实验状态必须有证据才能升级: - planned:已有问题定义和验收目标,但还没有可运行仓库。 - experimental:已有可运行仓库,但兼容性尚未得到证明。 - verified:在明确的 DSH revision 上观察到安装成功,并跑过声明的 smoke test。 - deprecated:实验不再维护。 正式插件运行时代码继续独立分仓。本仓只负责发现、证据、比较和实验状态,不把几十个插件塞进一个大仓库。 自动维护 定时工作流每 4 小时扫描公开 dsh-plugin topic,检查 package manifest、patch 路径与静态审查信号,重生成雷达,跑完验证后创建或更新 PR。昂贵的真运行验证只对高价值候选或版本变化触发,不盲目按 4 小时全量重跑。生态事实不会未经 review 自动合并进 main。 本地更新: GITHUB_TOKEN=github_token npm run update-radar 小范围扫描也可以匿名运行: npm run discover -- --limit 25 参与贡献 见 CONTRIBUTING.md。添加 dsh-plugin topic 能帮助发现,但是否通过验证仍以 bundle manifest 和 patch 文件为准。 免责声明 本项目是独立社区项目,不代表 DeepSeek 官方背书。第三方插件会执行代码,并可能改变 Agent 的工具、提示词、权限、界面或数据访问。安装前请审查源码、依赖、许可证、权限与维护状态。 MIT © 2026 hfshfg
同作者(dongsheng123132)的其他插件
扫码进群