dsh-auto-approver
在终端中运行以下命令:
dsh plugin install nicecx/dsh-auto-approver
将以下提示词粘贴到 DeepSeek Harness 对话框中:
运行 dsh plugin install nicecx/dsh-auto-approver 即可在 DeepSeek Harness 中安装此插件,源码见 https://github.com/nicecx/dsh-auto-approver
插件介绍
When DeepSeek Harness runs privileged operations such as file writes, command execution, or full-access calls, it pauses for human approval. In an unattended or fully automated pipeline those interruptions are pure friction. dsh-auto-approver intercepts every approval request before the relay pushes it to iMessage or the Web UI, settles it according to your policy, and keeps a complete audit trail so you never have to trade safety for speed.
The decision pipeline works in layers: a hard denyAlways list and an allowlist filter out known-safe or known-dangerous tools first; the remaining requests go to Hermes Pro for a semantic verdict that can spot data-destruction, credential-exfiltration, or irreversible-delete risks. When the policy or Hermes rejects, the plugin writes the reason back into the requesting session so the agent knows what went wrong and can retry with a corrected, narrower request. A userGranted signal acts as a soft endorsement in the Hermes prompt — a nudge, not a hard allow — and never overrides denyAlways or Hermes safety rejections. Every decision is appended as a JSON line to a local audit log for full traceability.
The plugin is best for administrators running long autonomous tasks on a trusted single-user box or private network who want to eliminate approval noise while preserving a full decision record. Hermes mode is fail-closed: if Hermes is unreachable or times out, the request falls back to a human and is never silently granted. Manual approval on iMessage or the Web UI always takes precedence.
使用场景
- 无人值守自动化任务中按策略自动放行安全操作,消除审批噪音
- 通过 Hermes 语义判断拦截数据销毁、凭证外泄等高危操作,并将拒绝原因回传供 agent 重试修改
- 每次自动决策以 JSON 行追加写入审计日志,满足合规追溯与事后审查需求
适合人员
- 运行长期自主任务的系统管理员
- 需要去除审批噪音但保留安全边界的自动化团队
- 在可信单用户环境部署 DeepSeek Harness 的开发者