Static security scanner for DSH plugins: read-only audit (exec, credentials, exfiltration, obfuscation, install scripts, bundle manifest) with a 0-100 risk score.
- GitHub stars
- 4
- Version
- v0.4.4
- License
- MIT
- Added
- 2026-08-20
GitHub info
- GitHub stars
- 4
- License
- MIT
- Primary language
- JavaScript
- Last push
- Aug 21, 2026, 4:55 AM
- Maintainer
- Eligahyu
- Added
- 2026-08-20
Install
dsh plugin --profile web add deepseek-harness-sentinelTags
README badge
Add this Markdown to your plugin README to link back to its listing.
[](https://dshget.com/plugins/Eligahyu/dsh-sentinel-scanner)Related plugins
Security & Permissionsupstream-radar
★ 8Watches DSH and plugin releases, retests exact published artifacts in disposable runners, publishes machine-readable compatibility evidence, and reconciles managed issues after fixes.
dsh-trust-check
Adds a Settings page and a CLI that statically scan installed DeepSeek Harness plugins for capabilities, literal destinations, install scripts, and prompt injections, then show a verdict you can acknowledge.
dsh-harbor
★ 24DeepSeek Harness (DSH) plugin: a read-only ledger for the plugins you already have installed — a capability inventory with file:line evidence, declared-vs-detected reconciliation, cross-profile version drift, and a diff of what changed since the last scan.