Plugin directory / Developer / safe-find-dsh-plugins
safe-find-dsh-plugins
Verified · install-tested on dsh Jinsong-Zhou
What it does
Discover and install the best DeepSeek Harness plugins for a user's task
Works — verified, early-stage project
Discover and install the best DeepSeek Harness plugins for a user's task It installs cleanly and boots without issues in our testing. It's early-stage but functional.
“Verified” means our automated CI actually ran dsh plugin add in a clean profile and it booted — nothing more. Feature descriptions and version compatibility are the author’s claims. This is not a security audit and not an endorsement of third-party code.
README
safe-find-dsh-plugins
简体中文 | English
A DSH plugin that finds plugins for your task across the entire GitHubdsh-plugin topic, with a security
scan before anything gets installed.
Install
Send this repository link to DSH and say "install this plugin for me".
To install manually, copy the whole skills/safe-find-dsh-plugins/ directory
into $DSH_HOME/skills/, or into <project-root>/.agents/skills/ for one
project only. Once it's in place it just works — no other configuration.
What it does
Given your request, it first pulls every public repository under the topic
(skipping archives and forks), ranks them against what you asked for, takes a
close look at only the best few, works out how each one is meant to be
installed, and hands you a shortlist of at most three candidates.
After you pick one, it doesn't install right away: it pins the candidate's
exact commit, then runs a static security scan over that source — plugin code
is never executed. A clean scan moves ahead; if risks turn up, every finding
is laid out for you and the decision is yours; high-risk results, failed
scans, or a missing scanner never install. What ends up in your environment is
always the exact commit that was scanned — and this step is never skipped,
even when you named the plugin yourself from the start.
The scanner is a separate dependency. Before installing a plugin for you the
first time, it checks whether the scanner is present and hands you the install
command if not.
Acknowledgements
- Forked from Nagi-ovo/dsh-find-plugins.
- Security scanning is powered by
NVIDIA SkillSpector:uv tool install git+https://github.com/NVIDIA/skillspector.git.
License
MIT © 2026 Jinsong Zhou. See LICENSE.
Install
Install the catalog once, then DeepSeek Harness can find and install any plugin from this site automatically:
dsh plugin add dshbase-catalog Then say "install safe-find-dsh-plugins for me" — your agent finds it in the directory and installs it. Docs: dshbase-catalog · verified packs.
This plugin is GitHub source (not published to npm) — install it straight from the repo:
Web profile:
dsh plugin --profile web add github:Jinsong-Zhou/safe-find-dsh-plugins Headless (CLI) profile:
dsh plugin --profile headless add github:Jinsong-Zhou/safe-find-dsh-plugins Test report
Verified: L1 install + L2 load + L3 runtime from GitHub source on dsh 0.1.0-rc.6.
When to use it
Extend the agent's coding surface — give it a new tool, workflow, or integration so it handles a dev task it couldn't before.
Who it's for
Developers who want dsh to behave like a teammate on real codebases — editing, running, and verifying changes rather than just answering.
For developers — extending it
The tool/command surface is the seam: expose more of the SDK, add smarter context wiring, or tighten the loop between code changes and verification.