dsh-safe avatar

dsh-safe

dsh 启动保险丝:社区插件不兼容导致 dsh 启动失败时,自动禁用坏插件并重试

PluginDeveloperTerminal / ShellFile
Verification
L4 · Install tested
Passed
Risk
Low
Health
Active
Trust
Silver

What it doesAI

Startup safety wrapper for dsh: when a plugin breaks boot, it auto-disables the plugin in config and retries.

  • Wraps dsh startup and detects failing plugin from errors
  • Disables the bad plugin in profile patch yml and logs quarantine
  • Automatically retries; supports update-and-start flow (u)

AI-generated from the repo README — for reference only.

Installation

dsh plugin --profile web add github:hyzyn/dsh-safe#v0.2.0
verified v0.2.0

Install method: GitHub · sandbox install verified (L4) · web smoke unconfirmed (L5)

Verification & Compatibility

Records are archived per dsh version under test: each card shows the newest real L1–L5 verdicts on that version (static levels included; fall back to all-time newest with a carried note when absent).

External credentials (plugin-level): none detected

Per-dsh-version verification (L1–L5)
dsh 0.1.2-rc.1current2026-09-06L5 · inconclusive
Environment & artifact
  • • Node.js: v24.14.0
  • • DSH: 0.1.2-rc.1
  • • Plugin artifact: github · https://github.com/hyzyn/dsh-safe#v0.2.0
Levels (newest real verdicts on this version)
L1 static
Passed
L2 static
Passed
L3 static
Passed
L4 sandbox
Passed
L5 runtime
Unknown
Install test ran but produced no conclusive verdict
L5 · inconclusive

ID: dsh-safe-3@v0.2.0@dsh0.1.2-rc.1 · profile: l3-fullscan

Issued: 2026-09-06 · expires: 2026-09-13

View checks & evidence
L1 · Found✓ Passed
Defaulted from L3✓ Passed
defaulted to passed — L3 install spec passed (full-registry L3 sweep policy)
L2 · Structured✓ Passed
Defaulted from L3✓ Passed
defaulted to passed — L3 install spec passed (full-registry L3 sweep policy)
L3 · Install spec✓ Passed
Install command parsed✓ Passed
Source: registry verification · Method: install spec parse · Captured 2026-09-06
DSH version declared✓ Passed
Source: registry verification · Method: DSH version declaration · Captured 2026-09-06
L4 · Install tested✓ Passed
Install executed in confined sandbox✓ Passed
Source: Windows ACL sandbox · Method: sandbox install run · Captured 2026-09-05
spec github:hyzyn/dsh-safe#v0.2.0 · channel GitHub source · outcome ran · exit 0
check took: 4.0s
Install succeeded✓ Passed
Source: Windows ACL sandbox · Method: sandbox install run · Captured 2026-09-05
spec github:hyzyn/dsh-safe#v0.2.0 · channel GitHub source · outcome ran · exit 0
check took: 4.0s
Installed artifact confirmed✓ Passed
Source: Windows ACL sandbox · Method: sandbox install run · Captured 2026-09-05
spec github:hyzyn/dsh-safe#v0.2.0 · channel GitHub source · outcome ran · exit 0
check took: 4.0s
L5 · Run tested? Unknown

no dsh.bundle declaration

Sandbox install passed✓ Passed
Source: Windows ACL sandbox · Method: sandbox install run · Captured 2026-09-05
spec github:hyzyn/dsh-safe#v0.2.0 · install mode reused L4 scratch
check took: 70ms
Web boot ready✓ Passed
Source: DSH runtime · Method: web boot · Captured 2026-09-05
ready line dsh web: http://127.0.0.1:54468/?token=…
HTTP endpoint served✓ Passed
Source: DSH runtime · Method: HTTP request · Captured 2026-09-05
path / · HTTP 200 · took 70ms
Plugin active in inventory? Unknown
Source: DSH runtime · Method: plugin inventory query · Captured 2026-09-05
verdict not-found · entries 149
phases: active 121 · null 28
installed but declares no dsh.bundle — not a web-profile plugin

Author badges

Embed the official badges in your README to showcase security & install-test status:

dsh.so risk
`[![dsh.so risk](https://www.dsh.so/badge/dsh-safe-3.svg)](https://www.dsh.so/artifact/dsh-safe-3/)`
dsh.so install
`[![dsh.so install](https://www.dsh.so/badge/install/dsh-safe-3.svg)](https://www.dsh.so/artifact/dsh-safe-3/)`

Security Report

Automated static scan, not manual review.

DSH.SO VETPASSED21cb70
Automated review · daily
PASSED

Vet static analysis found no suspicious behavior — verdict is clean.

0 critical·0 high·3 medium·81 score
plugin version0.2.0
scanned commit21cb70d64bd62026-09-05
latest commit0df599a9e5de
vet verdictclean · npmscore 81

Vet is an AST static scan (npm artifact or git source).

Disclaimer: automated static analysis, not a security guarantee. Always review what you install.

Risk details

No critical or warning findings.

Activity

Last commit 2026-09-05 · activity: Active

• Repo created: 2026-09-05

• Stars: ★ 0 · Forks: 0

• Health: Active — committed within last 30 days

Source

GitHub: github.com/hyzyn/dsh-safe

Was this page helpful?