Editor's note

863683348/dsh-plugin-verify

Verification toolkit for DeepSeek Harness agents: evidence-based claim checking with line citations, config validation (JSON/YAML), HTTP URL, npm and GitHub submission-readiness probes.

This is a DeepSeek Harness (DSH) plugin. Review its GitHub README, installation information, maintenance status, and public security signals here.

dsh-plugin-verify(核验工具箱)

为 DeepSeek Harness agent 提供基于证据的核验工具:声明核查、配置文件校验、只读网络探测(URL / npm / GitHub)。

工具

模式作用
claim在工作区文件中核查一句声明:提取关键词、统计命中、返回带行号引用的证据,判定 verified / partial / unsupported
config校验配置文件:JSON 严格解析 / YAML 结构冒烟检查
urlHTTP(S) 可用性:状态码、跳转目标、耗时
npm注册表核查:是否存在、最新版本、dsh.bundle 清单、发布时间
repoGitHub 提交就绪度:存在性、仓库年龄、dsh-plugin topic、大致提交数

使用

verify claim "the plugin pins zod in dependencies"
verify config ./cordis.patch.yml
verify url https://example.com
verify npm dsh-plugin-focus
verify repo 863683348/dsh-plugin-gate

说明

  • 只读:不写文件、不执行被扫描内容。
  • 声明核查是启发式证据检索,不是证明——unsupported 表示"没找到证据",应视为未证实。
  • YAML 校验为结构冒烟检查(引号/括号配平、缩进),非完整 YAML 解析器。

许可证

MIT

REPOSITORY SIGNALS

Security & install evidence

This score is based solely on public repository metadata and the install evidence registered here — it is not a code security audit.

Traceable source

From a public plugin catalog, linked to a public GitHub repository.

License

The repository declares the MIT license.

Maintenance activity

Code updates within the last 180 days.

Install evidence

No verifiable install metadata registered yet — please review the repository instructions manually.

Install lifecycle scripts

The inspected package metadata declares no install lifecycle scripts.