MkaliezZ/dsh-agentfuse-plugin
Deterministic fail-closed tool-call authorization for DSH with evidence: allow/block/ask policy gate plus approval-chain deferral.
これは DeepSeek Harness(DSH)プラグインです。当サイトは GitHub README、インストール情報、メンテナンス状況、公開セキュリティシグナルをまとめています。
上流で中国語 README が提供されていないため、リポジトリのオリジナルコンテンツを表示しています。
AgentFuse
Deterministic, fail-closed tool-call authorization for AI agents — with evidence. Status: ALPHA · seeking the first real (non-self) deployment
AgentFuse is a pre-dispatch policy boundary for side-effect-capable AI agent
tools, ported from the DHMS AgentFuse Python project
(MkaliezZ/dhms-engine).
AGENTFUSE_IS_A_DANGER_CLASSIFIER=false
AGENTFUSE_IS_A_POLICY_AND_AUTHORIZATION_BOUNDARY=true
AGENTFUSE_DECISIONS=allow|block
AGENTFUSE_DEFERRALS=ask
AGENTFUSE_FAILS_CLOSED=true
A blocked call is a completed policy decision with non-execution evidence — never a failed tool execution. Evidence carries reason codes, policy ids, and a canonical arguments hash, never raw arguments or credentials.
Packages
| Package | What it is | Depends on |
|---|---|---|
packages/core · @agentfuse/core | Framework-agnostic engine: decision/evidence vocabulary, deterministic policy resolution, canonical hashing | nothing |
packages/dsh-agentfuse · @deepseek-ai/dsh-agentfuse | DeepSeek Harness guard plugin: tools/pre-execute gate, DSH config schema, durable agentfuse/decision session event, approval-chain deferral (askTools) | @agentfuse/core, DSH |
The core is the product; the DSH package is one adapter. More adapters (LangGraph, Claude Code hooks, MCP) are on the roadmap.
Quickstart (DeepSeek Harness)
# cordis.yml (or a cordis.patch.yml insert)
- id: agentfuse
name: '@deepseek-ai/dsh-agentfuse'
config:
defaultAction: block # fail-closed fall-through
denyTools: [] # deterministic block, always wins
askTools: [] # defer to the DSH human-approval chain
allowTools: [] # non-empty = only these names may run
logDecisions: false # durable evidence; needs in-repo catalog
See the adapter README for the policy order, the approval integration, and the install paths (bundle + PR).
Repository layout
packages/
core/ @agentfuse/core — zero runtime dependencies
dsh-agentfuse/ @deepseek-ai/dsh-agentfuse — the DSH adapter (bundle)
ROADMAP.md phases, version line, stop-lines
Relationship to DHMS
AgentFuse is the runtime-execution-control line of DHMS (Digital Hyperthymesia
Memory Systems). The engine is a faithful TypeScript port of
dhms_agentfuse's decision engine and agentfuse-evidence-schema-v0.1;
decision and execution remain separate lifecycle facts.
License
Apache-2.0. See LICENSE.
セキュリティとインストールエビデンス
このスコアは公開リポジトリメタデータと当サイトに登録されたインストールエビデンスのみに基づくもので、コードセキュリティ監査とは異なります。
公開プラグインカタログから取得し、公開 GitHub リポジトリにリンクしています。
リポジトリは Apache-2.0 ライセンスを宣言しています。
過去180日以内にコードの更新があります。
再現可能な正確なインストールメタデータはまだ登録されていません。リポジトリの説明に従って手動で確認してください。
確認したパッケージメタデータにインストールライフサイクルスクリプトは宣言されていません。