DSH Declarative Permission Rules
PerryLink/dsh-permission-rules · skills
Claude Code-style declarative permission rules for DeepSeek Harness: ordered allow/deny/ask rules with tool-name, argument (glob/regex), and workspace-path matching on the tools/pre-execute waterfall, session-log audit.
★ 113GitHub stars
2Forks
2026-08-23Last updated
TypeScriptLanguage
Apache-2.0License
Key features
- Claude Code-style declarative permission rules for DeepSeek Harness.
- the rule's reason becomes the model-visible error.
- Match dimensions — tools (globs, incl.
- deny-all — the read-only sandbox preset: block all outbound.
- Rules decide what is known.
Requirements
- Audit marker on pre-marker hosts.
- permissionRules/decision is appended with ignorable: true
Install command
dsh plugin --profile web add github:PerryLink/dsh-permission-rules