What it doesAI
Futu MCP plugin using OAuth 2.1 deferred auth; tokens stored safely outside workspace.
- OAuth 2.1 deferred authorization flow
- Tokens stored in ~/.dsh with 0600 permissions
- Connect to Futu (富途) MCP
AI-generated from the repo README — for reference only.
Installation
dsh plugin --profile web add github:yangzhe1991/dsh-futu-mcpInstall method: GitHub · sandbox install verified (L4)
Verification & Compatibility
L1–L3 are registry / install-spec static checks — constant across dsh versions.
External credentials (plugin-level): none detected
dsh 0.1.2-alpha.1currentL5 · failed
- • Node.js: v24.14.0
- • DSH: 0.1.2-alpha.1
ID: dsh-futu-mcp-20260902T204624Z · profile: l5-web-smoke
Issued: 2026-09-02 · expires: 2026-12-01
View checks & evidence
↳ carried from earlier record dsh-futu-mcp-20260902T044820Z (l3-fullscan)
↳ carried from earlier record dsh-futu-mcp-20260902T044820Z (l3-fullscan)
↳ carried from earlier record dsh-futu-mcp-20260902T044820Z (l3-fullscan)
Author badges
Embed the official badges in your README to showcase security & install-test status:
`[](https://www.dsh.so/artifact/dsh-futu-mcp/)``[](https://www.dsh.so/artifact/dsh-futu-mcp/)`Security Report
Automated static scan, not manual review.
Vet static analysis found no suspicious behavior — verdict is clean.
0.1.1dsh manifest57d43e16b32c2026-09-0257d43e16b32cclean · npmscore 94Vet is an AST static scan (npm artifact or git source).
Disclaimer: automated static analysis, not a security guarantee. Always review what you install.
Risk details
Activity
Last commit 2026-08-31 · activity: Active
• Repo created: 2026-09-01
• Stars: ★ 0 · Forks: 0
• Health: Active — committed within last 30 days
Source
Author README
View on GitHub ↗The author's original README.md from the repository — fetched live, unedited.
