DSH Plugins Marketplace

DSH Plugins

DSH Plugins Marketplace

7,148 plugins indexed · 5,699 installable · 18,270 versions tracked

AllDevelopment & Infrastructure (485)Tools & Capabilities (1496)Memory & Context (199)Workflow & Automation (234)Models & Providers (201)Terminal & Clients (148)Security & Audit (138)Vision & Multimodal (155)UI & Experience (592)Notifications & Integrations (142)Themes & Skins (128)Sessions & Messages (224)Just for Fun (109)

Sort:

Most starsRecently updatedNewestName A–ZInstallable only

138 plugins

dsh-security-guard

Static and runtime security guard for dsh: rule-based scans for malicious code, prompt injection and token waste, runtime interception of dangerous tool calls, /scan command, plugin_scan tool, web pan

Security & AuditManifest valid

0

dsh plugin --profile web add dsh-security-guard

Autonomous permission classifier for the auto preset: tool-scoped allow/deny rules, an LLM semantic judge, and git checkpointing for unattended sessions.

Security & AuditManifest valid

0

dsh plugin --profile web add dsh-auto-classifier

DSH plugin security guard: 28-rule static scanner, risk scoring, whitelist/blacklist policy, local web dashboard and in-DSH risk popups.

Security & AuditManifest valid

0

dsh plugin --profile web add dsh-security-guard

by weibaohui

dsh 插件 · 用户管理:dsh web 登录门禁 + 用户/角色/登录记录/访问记录管理,首个注册者即管理员

Security & AuditManifest valid

0

JavaScript

Sep 12, 2026

dsh plugin --profile web add @weibaohui/user-management

Codex-style auto-review permission mode: adds an auto-review preset that auto-approves safe sandbox escalations, asks on risky or ambiguous ones, and rejects critical unconfirmed operations.

Security & AuditManifest valid

0

dsh plugin --profile web add @dsh-external/dsh-auto-reviewer

Automatic secret redaction in tool results: masks API keys, tokens, JWTs, private keys and configured secrets before the model sees them.

Security & Audit

0

Index only — not installable

Read-only DSH plugin auditor with static scanning, current-session model review, and confirmation gates.

Security & AuditManifest valid

0

dsh plugin --profile web add dsh-plugin-trustlens

Semantic risk grading and progressive authorization: classifies tool calls into safe/risky/redline, asks before irreversible actions, auto-allows only approved-and-succeeded signatures.

Security & AuditManifest valid

0

dsh plugin --profile web add dsh-risk-gate

Pre-install supply-chain checks for DeepSeek Harness plugins: verify the tarball you are about to install matches the source you read, before any code runs.

Security & AuditManifest valid

0

dsh plugin --profile web add dsh-provenance

Transport-level authentication gate for the DeepSeek Harness Web GUI with server-side sessions, HttpOnly cookies, IP-based login throttling, and an scrypt password CLI.

Security & AuditManifest valid

0

dsh plugin --profile web add @summersec/dsh-web-auth

Global prompt-injection / context-virus defense for DeepSeek Harness: scans tool arguments, tool results, pre-model messages and the outbound stream; quarantine/block/monitor modes, canary trap, and a

Security & AuditManifest valid

0

dsh plugin --profile web add dsh-prompt-antivirus

by Top-Celestial-Company-Ltd

⚡ DROS™ VajraClaw for DSH: Deterministic Runtime Execution Governance & Security Circuit-Breaker Plugin

Security & AuditManifest valid

0

TypeScript

Sep 5, 2026

dsh plugin --profile web add dsh-plugin-vajraclaw

Fine-grained permission gateway: per-category tool-call review (outside-workspace directories, commands, file read/write, subagents, repeated actions) with global & per-project allow/deny exceptions,

Security & AuditManifest valid

0

436/wk

dsh plugin --profile web add @mrweicodes/dsh-permgate

Scans skills and MCP configs for prompt injection, homoglyphs, hidden Unicode, dangerous shell, and credential leaks.

Security & AuditManifest valid

0

dsh plugin --profile web add dsh-mcpguard

An independent approval subagent judges every sandbox escalation, with a configurable model and an audit log.

Security & AuditManifest valid

0

dsh plugin --profile web add @duke-dsh-plugins/dsh-agent-approval

Adds a workspace-write++ permission that keeps file tools inside the workspace while skipping the Windows process sandbox for wildcard-allowlisted executables such as Git Bash.

Security & AuditManifest valid

0

dsh plugin --profile web add dsh-workspace-write-plus

Fine grained per tool permission rules for DSH at the tools/pre-execute gate, deny and ask lists in Claude Code rule syntax (Bash(rm -rf:*), Read(_secrets_), mcp__server__tool), works standalone witho

Security & Audit

0

Index only — not installable

Destructive-command interception gate for dsh: parses shell semantics, judges risk against 41 built-in rules, and holds irreversible rm -rf, git reset --hard, and git push --force style commands at a

Security & AuditManifest valid

0

dsh plugin --profile web add dsh-barricade

Page 6 of 6