dsh-plugin-development
Pass
Audited by Gen Agent Trust Hub on Sep 5, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill fetches templates and source code from the official DeepSeek Harness repository on GitHub for analysis and local plugin development.
- [COMMAND_EXECUTION]: Instructs the use of standard development tools including
gitfor repository synchronization,pnpmfor dependency management and build script execution, and a specializeddshCLI for profile management. - [INDIRECT_PROMPT_INJECTION]: The skill possesses a data ingestion surface by analyzing external codebases and configuration files, which could theoretically contain malicious instructions.
- Ingestion points: External Git repositories and local configuration files like
package.jsonandcordis.patch.yml(SKILL.md). - Boundary markers: None implemented in instructions; relies on the user to manually verify content.
- Capability inventory: Full shell access to execute
git,pnpm, anddshcommands. - Sanitization: None; the skill explicitly warns the user to only trust and审查 (review) repositories before enabling build scripts.
Audit Metadata