Adds a Settings page and a CLI that statically scan installed DeepSeek Harness plugins for capabilities, literal destinations, install scripts, and prompt injections, then show a verdict you can acknowledge.
- Version
- v0.1.2
- License
- MIT
- Added
- 2026-08-28
GitHub info
- License
- MIT
- Primary language
- TypeScript
- Last push
- Aug 28, 2026, 2:08 PM
- Maintainer
- liuwenji007
- Added
- 2026-08-28
Preview from README
Screenshots and GIFs extracted from the repository README (badges and avatars filtered out).
Install
dsh plugin --profile web add dsh-trust-checkTags
README badge
Add this Markdown to your plugin README to link back to its listing.
[](https://dshget.com/plugins/liuwenji007/dsh-trust-check)Related plugins
Security & Permissionsdsh-sentinel-scanner
★ 6Static security scanner for DSH plugins: read-only audit (exec, credentials, exfiltration, obfuscation, install scripts, bundle manifest) with a 0-100 risk score.
dsh-secure-audit
★ 65Read-only security and compliance plugin for DeepSeek Harness: prompt-injection detection, Chinese-PII redaction, and a local configuration audit with redacted, reproducible reports.
dsh-skill-pack-security
★ 4Security-audit methodology skill pack plus the plugin_vet supply-chain gate: eight agent skills (secret scan, dependency audit, supply-chain review, prompt-injection review, audit orchestration, threat modeling, vuln intel, incident response) in Chinese and English editions, with an npm provider bundle that mounts the skills and registers the automated plugin_vet pre-install scanner.