dsh-security-guard
Security guard for DeepSeek Harness (dsh): static scan for malicious code, prompt injection and token waste, runtime interception, /scan, plugin_scan, web panel and allowlist | DeepSeek Harness 安全守卫插件:恶意代码/提示词注入静态扫描、运行时拦截、/scan、plugin_scan、Web 面板与白名单
安装
dsh plugin add github:bigclawd/dsh-security-guard
首次安装 GitHub 来源的包时,可能需要在 profile 的 pnpm-workspace.yaml 的 allowBuilds 中允许该包的构建脚本;也可用 github:bigclawd/dsh-security-guard#<commit-sha> 锁定版本。详见官方文档。
还没有 DSH?两步开始 →
第一步:准备 Node.js 环境
DSH 依赖 Node.js(建议 20 LTS 或更新版本)。终端里运行 node -v 能显示版本号即已就绪。
已有 Node.js:直接进入第二步。
没有 Node.js:去 nodejs.org 下载 LTS 安装包(Windows/macOS 双击安装);或用包管理器:
brew install nodewinget install OpenJS.NodeJS.LTS第二步:启动 DSH
无需安装,直接运行:
npx @deepseek-ai/dsh web浏览器打开 http://127.0.0.1:3080,在 Web UI 的插件市场里搜索 dsh-security-guard,或粘贴上面的安装命令。