dsh-secret-scan avatar

dsh-secret-scan

@{name=dsh-secret-scan; version=0.1.0; description=敏感信息扫描:递归扫描代码库中的泄露密钥/令牌/私钥/硬编码密码,输出去敏感化的位置与严重级,提交前自查安全; type=module; main=lib/index.js; exports=; files=System.Object[]; dsh=; keywords=System.Object[]; author=istone <ad571@qq.com>; license=MIT; peerDependencies=}.description

PluginSecurityVision / OCR
Verification
L2 · Structured
Security
Pending
Health
Active
Trust
Bronze

What it does

@{name=dsh-secret-scan; version=0.1.0; description=敏感信息扫描:递归扫描代码库中的泄露密钥/令牌/私钥/硬编码密码,输出去敏感化的位置与严重级,提交前自查安全; type=module; main=lib/index.js; exports=; files=System.Object[]; dsh=; keywords=System.Object[]; author=istone <ad571@qq.com>; license=MIT; peerDependencies=}.description

Installation

dsh plugin --profile web add github:uckkk/dsh-secret-scan

Install method: GitHub · not yet tested in container (L3+)

Compatibility

DSH VersionStatus
not statedDeclared — not tested

Requirements

  • • Node.js: not stated
  • • DSH: declared "not stated"
  • • External credentials: none detected

Security Report

Automated static scan, not manual review.

DSH.SONOT SCANNEDSCAN— FILES
------
Automated review · daily
NOT SCANNED

No security scan record for this plugin yet. Newly indexed plugins are scanned by the daily pipeline.

0 critical·0 warning·0 info· files scanned
plugin version
scanned commit
latest commit89d0298e3ecc

The scan result is only valid for the scanned commit. If the latest commit differs, the badge shows outdated until the daily pipeline rescans.

Disclaimer: automated static analysis, not a security guarantee. Always review what you install.

• Static heuristic scan: pending

• Dependency vulnerabilities:

• Hardcoded secrets:

• Supply chain risks:

⚠ Static scan not run yet — results will appear here.

Activity

Last commit 2026-08-17 · activity: Active

• Repo created: 2026-08-18

• Stars: ★ 0 · Forks: 0

• Health: Active — committed within last 30 days

Source

GitHub: github.com/uckkk/dsh-secret-scan

Was this page helpful?