概览
dsh-poison-guard
Pre-install supply-chain poison scanner for DeepSeek Harness plugins: AST analysis (NodeSecure JS-X-Ray) + deobfuscation decoder + regex heuristics to catch credential exfiltration, dynamic code execution, obfuscated imports, and install-time scripts.
README / ZH
插件文档
目录摘要
Pre-install supply-chain poison scanner for DeepSeek Harness plugins: AST analysis (NodeSecure JS-X-Ray) + deobfuscation decoder + regex heuristics to catch credential exfiltration, dynamic code execution, obfuscated imports, and install-time scripts.
dsh.pub 核对固定版本的组合包契约、运行时事实与分发语义;完整 README 请查看源仓库。
在 GitHub 阅读完整 READMELIMITATIONS
已知限制
- Static only — does not execute the plugin or observe runtime behavior. - Obfuscation can be made undecidable; stronger obfuscators (e.g. `javascript-obfuscator` with string-array + control-flow flattening) may still hide the payload. - The AST layer is tuned to `aggressive` sensitivity for maximum visibility; a benign plugin that does real `eval`/`child_process` work will also be flagged. - No sandbox policy is enforced here; pair it with the harness sandbox.
