Overview
dsh-sandbox-allowlist
README / EN
Package documentation
Registry summary
dsh.pub verifies the pinned bundle contract, runtime facts, and distribution semantics. The complete README remains in the source repository.
Read the full README on GitHubLIMITATIONS
Known limitations
- **Windows**:授权目录必须存在且归当前用户所有(需能改 DACL);撤销回收失败 (如目录易主、无法改写 DACL)的目录保留在 grants 清单中,下次对账自动重试, 已删除的目录直接视为已回收。回收宿主优先系统自带 Windows PowerShell 5.1, 缺失时回退 PowerShell 7(pwsh);两者皆缺时回收挂起并告警。若插件被卸载而 目录残留 ACE,可用 `node scripts/revoke.mjs` 应急清理(通常无需使用)。 - **Linux**:`bwrap` 完整支持;`landlock`/`seatbelt` 暂不支持。 - write/edit 工具只在 `workspace-write` 模式下放行授权目录。 - noRead 的 `ask` 规则只作用于 read / read_image / edit 工具;write 覆盖旧文件 只受 `deny` 规则的 fs 层拦截,新建不受限;目录级 `deny` 另拦 listDir。 - dsh 升级时若基类(`SandboxPolicyService` / `SandboxedFileSystem` / `LocalSandboxProvider`)签名变化,本插件可能需要小调(0.1.5 三个基类签名无 变化,仅新增 `static inject = ['sessionProjections']` 依赖)。
