dsh-whale-galgame avatar

dsh-whale-galgame

工作推gal两不误~面向DeepSeek Harness的跨会话事件感知Galgame引擎与界面插件,支持鲸鱼娘/GPT/Claude/Grok/Gemini/Kimi多位模型娘角色

PluginAI 模型界面美化
验证
L2 · 结构化
安全
高风险
健康
活跃
信任

功能介绍

工作推gal两不误~面向DeepSeek Harness的跨会话事件感知Galgame引擎与界面插件,支持鲸鱼娘/GPT/Claude/Grok/Gemini/Kimi多位模型娘角色

安装

dsh plugin --profile web add dsh-whale-galgame

Install method: npm · 尚未在容器中测试 (L3+)

兼容性

DSH VersionStatus
not statedDeclared — not tested

要求

  • • Node.js: not stated
  • • DSH: declared "not stated"
  • • External credentials: none detected

安全报告

自动静态扫描,非人工审核。

DSH.SO高风险SCAN12 FILES
621531
自动审查 · 每日更新
高风险

非阻断类别中的严重发现(动态执行、shell 执行、安装脚本、混淆)。在 CLI/终端插件中常见,但值得审查。

2 严重·1 警告·8 提示·12 扫描文件数
code-exec ×1shell ×1
插件版本0.3.0dsh 清单
扫描版本62153117de542026-08-18
当前版本62153117de54

扫描结果仅对「扫描版本」有效。若当前版本不同,徽章将显示 outdated,直到每日流水线重新扫描。

免责声明:这是自动化静态分析,不构成安全保证。安装前请自行审查。

风险:高风险2 critical · 1 warning · 8 info

• 静态启发式扫描:已完成(12 个文件)

• 依赖漏洞:需深度审计(L3+)

• 权限沙箱:需运行时测试(L4+)

扫描发现 · 11

  • critical使用 child_process 子进程模块(Node.js)scripts/release-audit.mjs:1
    import { execFileSync } from 'node:child_process'
  • critical执行 shell 命令(exec / execSync)scripts/release-audit.mjs:142
    const packResult = JSON.parse(execFileSync(packCommand[0], packCommand[1], {
  • warning执行 shell 命令(exec / execSync)scripts/release-audit.mjs:188
    const tracked = execFileSync('git', ['ls-files', '--cached', '--others', '--exclude-standard', '-z'], {
  • info读取 process.envscripts/release-audit.mjs:9
    const npmExecPath = process.env.npm_execpath
  • info读取 process.envscripts/release-audit.mjs:140
    ? [process.env.ComSpec || 'cmd.exe', ['/d', '/s', '/c', 'npm.cmd pack --dry-run --json --ignore-scripts']]
  • info发起网络请求(fetch / axios)src/client/index.ts:312
    const res = await fetch('/whale-galgame-api', {
  • info读取 process.envsrc/index.ts:490
    : (typeof process !== 'undefined' && process.env.DASHSCOPE_BASE_URL
  • info读取 process.envsrc/index.ts:491
    ? process.env.DASHSCOPE_BASE_URL
  • info读取 process.envsrc/index.ts:495
    : (typeof process !== 'undefined' ? process.env.DASHSCOPE_API_KEY || '' : ''),
  • info发起网络请求(fetch / axios)src/index.ts:2524
    const res = await fetch(cfg.dashscopeBaseUrl.replace(/\/$/, '') + '/api/v1/services/aigc/multimodal-generation/generation', {
  • info发起网络请求(fetch / axios)src/index.ts:2557
    const img = await fetch(imageRef)

静态启发式扫描,可能误报——使用前请自行审查源码。

活跃度

最近提交 2026-08-17 · 活跃度:活跃

• 仓库创建: 2026-08-18

• 星标: ★ 5 · 复刻: 0

• 健康度: 活跃 — 近 30 天有提交

来源

GitHub: github.com/JAdpp/dsh-whale-galgame

这页有帮助吗?