
cot-translation
When you use DeepSeek harness,you may hate that the big fish is always thinking in English,not Chinese(or the other language).Dot't worry,Deepseek has written an Plugin to translate it,but with qwen 3.5 0.8B's help......This Plugin will translate thinking without API.It is helped by deepseek V4 pro.
What it does
When you use DeepSeek harness,you may hate that the big fish is always thinking in English,not Chinese(or the other language).Dot't worry,Deepseek has written an Plugin to translate it,but with qwen 3.5 0.8B's help......This Plugin will translate thinking without API.It is helped by deepseek V4 pro.
Installation
dsh plugin --profile web add github:Golopuer/cot-translationInstall method: GitHub · not yet tested in container (L3+)
Compatibility
| DSH Version | Status |
|---|---|
| not stated | Declared — not tested |
Requirements
- • Node.js: not stated
- • DSH: declared "not stated"
- • External credentials: none detected
Security Report
Automated static scan, not manual review.
Critical findings in non-blocking categories (dynamic code execution, shell execution, install scripts, obfuscation). Common in CLI/terminal plugins but worth reviewing.
code-exec ×1—91299373592d2026-08-1991299373592dThe scan result is only valid for the scanned commit. If the latest commit differs, the badge shows outdated until the daily pipeline rescans.
Disclaimer: automated static analysis, not a security guarantee. Always review what you install.
• Static heuristic scan: done (3 files)
• Dependency vulnerabilities: requires deep audit (L3+)
• Permission sandboxing: requires runtime testing (L4+)
High-risk findings · 4 / 4
- criticalDynamic code execution via eval()server/serve.py:62model.eval()
- warningHTTP request to a raw IP addressplugin/host.js:62"$r = Invoke-WebRequest -Uri 'http://127.0.0.1:7860/v1/translate' -Method Post -Body $b -ContentType 'application/json; charset=utf-8' -UseB
- warningBase64 decode-and-run patternplugin/host.js:61"$b = [Text.Encoding]::UTF8.GetString([Convert]::FromBase64String('" + b64 + "'))",
- warningBase64 decode-and-run patternplugin/host.js:89"$v = [Text.Encoding]::UTF8.GetString([Convert]::FromBase64String('" + b64 + "'))",
Heuristic static scan — may produce false positives. Review the source yourself before trusting.
Activity
Last commit 2026-08-19 · activity: Active
• Repo created: 2026-08-19
• Stars: ★ 0 · Forks: 0
• Health: Active — committed within last 30 days