All plugins

dsh-fleet-audit

Verified

by LeslieWylie · Security & Policy

DSH agent-fleet hygiene audit plugin: credential-file permissions, embedded git-remote credentials (masked), provider token literals. Read-only, zero-dependency, deterministic.

Verified plugin

Depends on the Cordis runtime or ships a cordis.yml, so it loads as a real dsh plugin.

What we found in the repo

  • depends on @deepseek-ai/cordis
  • depends on @deepseek-ai/dsh-tools
  • npm package dsh-fleet-audit

Installing

Install the package, then register it in your cordis.yml:

npm install dsh-fleet-audit
# cordis.yml
plugins:
  dsh-fleet-audit:

Plugin keys and config options vary — check the repo's README before copying this in. dsh is in developer preview and its loader format is still changing.

Before you install

A listing here is not a security audit. The tier above records whether this repo is wired as a real dsh plugin — not whether it is safe to run. A plugin executes with your agent's permissions: your files, your shell, your network. How to vet a dsh plugin before installing

Found malware or an impersonation in this repo? Report this listing

Repository details

Stars
1
Forks
0
Open issues
0
Language
JavaScript
License
MIT
npm package
dsh-fleet-audit @ 0.0.1
Created
2026-08-14
Last push
2026-08-18

Topics

agent-toolsauditdeepseek-harnessdshdsh-pluginsecurity

More in Security & Policy