Read-only acceptance layer for DeepSeek Harness
EvilIrving/dsh-proof · skills
Read-only acceptance layer for DeepSeek Harness: a verifier gates every turn and steers gaps back into the agent.
★ 2GitHub stars
0Forks
2026-08-25Last updated
TypeScriptLanguage
MITLicense
Key features
- Independent read-only acceptance layer for the DeepSeek Harness.
- Set any field from cordis.yml
- toolFilter.deny removes tools from the verifier's inherited full set.
- The top-level agent receives an injected user message listing the verifier's gaps and evidence, followed by the configured followupInstruction.
- Before each top-level turn closes, dsh-proof spawns a read-only verifier subagent, collects its structured verdict, and steers any non-pass gaps back into the driving agent.
Requirements
- Deny list must match the deployment's tools — tools.restrict fails loud on unknown names, so a mismatched default blocks verifier startup.
- The exact mutating-tool set is deployment-specific and is resolved at first install.
Install command
dsh plugin --profile web add github:EvilIrving/dsh-proof