
dsh-malware-audit
DeepSeek Harness (dsh) plugin: real AST-based scan of installed plugins for malicious-intent patterns, with an optional periodic schedule and auto-quarantine on critical findings. Advisory-by-default, not an antivirus signature database.
What it does
DeepSeek Harness (dsh) plugin: real AST-based scan of installed plugins for malicious-intent patterns, with an optional periodic schedule and auto-quarantine on critical findings. Advisory-by-default, not an antivirus signature database.
Installation
dsh plugin --profile web add github:rand0wn/dsh-malware-auditInstall method: GitHub · not yet tested in container (L3+)
Compatibility
| DSH Version | Status |
|---|---|
| not stated | Declared — not tested |
Requirements
- • Node.js: not stated
- • DSH: declared "not stated"
- • External credentials: none detected
Security Report
Automated static scan, not manual review.
Vet static analysis found no suspicious behavior — verdict is clean.
0.2.0dsh manifest54a420c4ba1e2026-08-2154a420c4ba1eclean · gitscore 100Vet is an AST static scan (npm artifact or git source).
`[](https://www.dsh.so/artifact/dsh-malware-audit/)`Disclaimer: automated static analysis, not a security guarantee. Always review what you install.
Risk details
Activity
Last commit 2026-08-21 · activity: Active
• Repo created: 2026-08-21
• Stars: ★ 0 · Forks: 0
• Health: Active — committed within last 30 days