Security scan report

Every plugin in the registry gets an automated static scan for suspicious patterns — hardcoded secrets, data exfiltration, destructive commands, obfuscated code and more, using a vet-led three-tier risk model. Here's what the latest scan found, in plain language.

16,868
plugins scanned
16464
low risk
107
needs review
0
critical
low (99%) needs review (1%) critical (0%)

The ecosystem is largely healthy. Most plugins (100%) have no critical findings. 0 plugins are rated critical (vet-critical, or blocking secrets / exfiltration / destructive / mining patterns). 107 more need review — install only after inspecting them yourself.

34 plugins not yet scanned.

Risk model: vet-led three-tier

A second, independent static engine (@jieai/dsh-plugin-vet) is the primary judge. dsh's scan fills gaps it doesn't cover and acts as a hard guard on blocking patterns. Together they collapse to three tiers — low · medium · critical — the old "high" tier is retired.

16464
low (fused)
107
medium (fused)
0
critical (fused)
16636
vet covered · 65 skipped

vet judges low / medium / critical; the "high" tier no longer exists. dsh only raises to critical when it finds blocking patterns (secrets, exfiltration, destructive, mining) or backfills when vet is unavailable. Per-plugin detail pages show both the fused tier and the vet evidence.

What the scan looks for

The most common findings across all plugins, explained in plain language.

🖥️Shell / subprocess
513 hits

The plugin runs shell commands or spawns subprocesses. Common in CLI/terminal plugins, but worth knowing.

Usually legitimate for terminal tools — mapped to "needs review" rather than high risk.

⚡Dynamic code execution
258 hits

The plugin evaluates code at runtime (eval, new Function). Powerful, but harder to audit.

Usually legitimate; mapped to "needs review" unless combined with other risk.

💥Destructive commands
114 hits

The plugin contains commands that can delete files or modify critical system areas (e.g. rm -rf, chmod 777).

High risk — understand exactly what it touches before running.

🔑Hardcoded secrets
29 hits

The plugin contains what looks like an API key, token, or private key written directly in its source code.

Anyone with access to the repo could use this credential. Treat with caution.

🕵️Obfuscated code
22 hits

Parts of the code are deliberately hard to read (encoded blobs, fromCharCode tricks), making review difficult.

Obfuscation is a red flag — what is it hiding?

🌐Data exfiltration
2 hits

The plugin may send data to external endpoints (webhooks, tunnels, third-party servers).

Review what data could leave your machine before installing.

Note: shell/subprocess and dynamic code execution are common in CLI & terminal plugins, so they are grouped under "needs review" (medium) rather than critical risk.

Critical plugins

0 plugins rated critical — vet-critical or blocking patterns (secrets / exfiltration / destructive / mining)

No critical plugins found in the latest scan.

Automated heuristic scan — may produce false positives. Not a manual review, never an endorsement.

Needs review (medium)

107 plugins rated medium — vet suspicious, or dsh-only evidence that needs a second look

PluginRisk
dsh-web-profile★ 0Medium
@dgagf111/dsh-hydrasearch★ 0Medium
@Justin-Mai/dsh-stock-view★ 1Medium
dsh-smart-reminder★ 0Medium
dsh-upgrade-kit★ 0Medium
dsh-tmwebdriver★ 0Medium
dsh-remote★ 0Medium
claude-in-dsh★ 3Medium
cli★ 5Medium
dsh-remote★ 0Medium
dsh-desktop★ 2Medium
dsh-cordis-mcp★ 1Medium
vision-toolkit-for-dsh-v0.1-maybe-★ 1Medium
dsh-auto-classifier★ 1Medium
dsh-launcher★ 0Medium
dsh-balance-plugin★ 64Medium
dsh-convmap★ 1Medium
paper-workbench★ 0Medium
conjugate-spectral-geometry★ 2Medium
dsh-balance★ 2Medium

Showing the first 20 medium plugins. Browse all 107 medium plugins — or view the report archive.

📖
How scanning works

What we scan, and the three-tier vet-led risk model.

🔍
Browse all plugins

Every plugin's detail page shows its own 3-tier report.

⚙️
Deep audit (planned)

Dependency CVEs and deeper runtime behavior tests — coming later.

Scans are automated heuristics — they are not a manual review and never an endorsement. Install third-party plugins at your own risk.

Was this page helpful?