dsh-riskproof
Provenance-aware execution and output security for DeepSeek Harness, with visible receipts and trusted declassification.
9 results
Provenance-aware execution and output security for DeepSeek Harness, with visible receipts and trusted declassification.
Correctover runtime security for DeepSeek Harness (DSH): CCS 7-dimension verification, command-injection/SSRF/credential-exfil blocking, Ed25519 receipts, audit-first. Install with `dsh plugin add dsh-correctover`.
Privacy-minimal heuristic per-turn execution summaries for DeepSeek Harness
Content-addressed receipts for skills actually loaded by DeepSeek Harness
Observe-only hash-chained evidence receipts for DeepSeek Harness
Ask DeepSeek to falsify a file or gate a PR. Receipt: PASS / PASS_WITH_DEBT / BLOCK. Adjudicator, not a second opinion. Green lint is not a ship.
Privacy-minimal provenance receipts for DeepSeek Harness workspace instructions
AI Agent runtime authorization & evidence verification — tool-call GuardrailProvider, CCS 7-dimension verification standard, MCP/DSH security scanner, SSRF/command-injection/credential-exfil blocking with Ed25519 signed receipts.
DeepSeek Harness plugin: a citable append-only JSONL of filesystem touches — path, op, sha256 before and after — carrying no file contents