dsh-cve-audit
by — · SARTHAK2511/dsh-cve-audit
★ 0 Stars
⑂ 0 Forks
Original language: English
About
Live CVE/supply-chain audit for your workspace's own project dependencies (npm/pip/go), backed by OSV.dev, with a cve_audit tool plus optional automatic re-scan on lockfile changes.
Similar plugins
Dependency supply-chain hygiene audit for dsh projects and profiles: peer-range resolvability, broken dist-tag detection (#2763 class), stale / missing-license / non-registry dependencies, and install
★ 0
dsh plugin --profile web add dsh-dep-auditStability audit for installed dsh plugins: static risk grading (hook surface, startup work, inject, entry, dep ranges) plus optional isolated install verification.
★ 0
↓ 112/wk
dsh plugin --profile web add dsh-stability-auditby uckkk
依赖安全审计:OSV.dev 漏洞扫描 + npm 过期依赖检测,返回严重级/修复版本/升级幅度
★ 0
↓ 35/wk
MIT
JavaScript
Aug 19, 2026
dsh plugin --profile web add dsh-dependency-auditPre-install supply-chain poison scanner for DSH plugins: AST (JS-X-Ray) + deobfuscation + regex heuristics, exits non-zero on findings for CI gating.
★ 0
dsh plugin --profile web add dsh-poison-guardby PerryLink
Security-audit skill pack + plugin_vet supply-chain gate for DeepSeek Harness (dsh): 8 bilingual agent skills (secret scan, dependency audit, supply-chain review, prompt-injection review, audit orches
★ 12
Apache-2.0
TypeScript
Sep 12, 2026
dsh plugin --profile web add dsh-skill-pack-securityPre-install static security review and runtime guard for dsh plugins: deobfuscation decoding, supply-chain checks, web one-click review/install/uninstall, and optional runtime tool-call guard.
★ 0
dsh plugin --profile web add dsh-plugin-security-review