sashankh/dsh-taintguard
Indirect prompt-injection guard for DeepSeek Harness: taints tool output by origin, gates privileged calls that follow untrusted content, and refuses credentials heading off the machine.
About this plugin
An agent that browses the web or reads a repository puts third-party text into the same channel that carries its operator's instructions. A model has no reliable way to tell them apart, so a page, a README, or an MCP tool result can ask the agent to run a command or post a file somewhere. This plugin does not try to make the model immune to that. It narrows what the retrieved text can reach: it marks the agent once a tool result arrives from an untrusted source, gates the privileged calls that f
$ dsh plugin --profile web add dsh-taintguard$ dsh plugin --profile web add github:sashankh/dsh-taintguardHealth breakdown
55 / 100Score reflects license, community signals, documentation and distribution. It is not a code audit — review the source before installing.
Security
Key metrics
Related
Related plugins
Browse, search and install community plugins from inside DeepSeek Harness settings, with category filters, one-click updates, enable/disable, theme switching and configuration backup.
Tell your agent what you want ("notify me on WeChat when a task finishes"), and it searches the DSH plugin ecosystem on GitHub for you — top results by stars, each with a one-line description and an install command.
Free, keyless web search for DSH: 7 engines (DuckDuckGo/Bing/SearXNG free + Exa/Perplexity/DeepSeek paid), auto-failover, settings-page UI with API key inputs and official links, web_fetch, and an engine test tool.
MCP Connector for DeepSeek Harness: an MCP manager with one panel to connect servers, configure authorization, search tools across connections, and troubleshoot failures. Browse a continuously updated catalog of over one hundred connectors; filter by connection/server/status, inspect readable parameters and the last successful cache time, and rediscover tools. Supports OAuth 2.0 PKCE, API keys, stdio/HTTP, and mcpServers JSON import. Maintained by Qichacha/QCC.
Use your ChatGPT / Codex subscription with DeepSeek Harness via OAuth, with model access, usage quotas, search, and image generation — no API key or Codex CLI required.
Framework upgrade safety & plugin version gating for DeepSeek Harness (DSH): one-click framework upgrade with auto-rollback on failure → one-click rollback to the previous version after an upgrade → plugins the new framework cannot load are auto-disabled → the plugin upgrade gate refuses a version the host can't take. A built-in multi-source plugin market & index (500+ plugins / 300+ skills, zero GitHub API calls) rides on top as the discovery layer — and every source is swappable: install sourc