All plugins

dsh-permission-rules

Verified

by PerryLink · Security & Policy

Claude Code-style declarative permission rules for DeepSeek Harness: ordered allow/deny/ask rules with tool-name, argument (glob/regex), and workspace-path matching on the tools/pre-execute waterfall, session-log audit, and HMR reload.

Verified plugin

Depends on the Cordis runtime or ships a cordis.yml, so it loads as a real dsh plugin.

What we found in the repo

  • depends on @deepseek-ai/cordis
  • depends on @deepseek-ai/dsh-agent
  • npm package dsh-permission-rules

Installing

Install the package, then register it in your cordis.yml:

npm install dsh-permission-rules
# cordis.yml
plugins:
  dsh-permission-rules:

Plugin keys and config options vary — check the repo's README before copying this in. dsh is in developer preview and its loader format is still changing.

Before you install

A listing here is not a security audit. The tier above records whether this repo is wired as a real dsh plugin — not whether it is safe to run. A plugin executes with your agent's permissions: your files, your shell, your network. How to vet a dsh plugin before installing

Found malware or an impersonation in this repo? Report this listing

Repository details

Stars
8
Forks
1
Open issues
3
Language
TypeScript
License
Apache-2.0
npm package
dsh-permission-rules @ 0.5.0
Created
2026-08-13
Last push
2026-08-18

Topics

ai-safetyallow-deny-askapprovalcordisdeepseekdeepseek-harnessdshdsh-pluginpermissionpolicysafety

More in Security & Policy