Dsh Telemetry Redactor
030611/dsh-telemetry-redactor · productivity
Fail-closed export-copy redaction for DeepSeek Harness session telemetry.
★ 3GitHub stars
0Forks
2026-08-15Last updated
TypeScriptLanguage
MITLicense
Key features
- Redact supported credential patterns from outbound telemetry copies before configured backends receive them—without rewriting canonical session logs.
- Values under high-risk key names such as authorization, cookie, credential, password, secret, token, apiKey, access_token, clientSecret, and privateKey
- recognized credential patterns in key names are replaced too.
- Bearer and Basic authorization values embedded in strings.
- Common credential forms including sk-..., GitHub tokens, Slack tokens, JWT-like triples, and token=...
Requirements
- Unknown secret formats that have neither a sensitive key nor a recognized string pattern may pass through.
- Add deterministic coverage before extending the fixed patterns.
Install command
dsh plugin --profile web add github:030611/dsh-telemetry-redactor