DSH Stability Audit
chunfenxiazhi-collab/dsh-stability-audit · skills
Scan installed dsh plugins and grade stability risk (hook surface, startup work, preflight, deps) with optional isolated install verification.
★ 2GitHub stars
0Forks
2026-08-26Last updated
JavaScriptLanguage
MITLicense
Key features
- One plugin can kill the entire tool layer (hook surface — barricade incident
- Batch testing--remote accepts multiple specs (comma- or space-separated) to pre-audit a batch of online plugins in one run (clone → static → isolated install smoke, host untouched).
- Principlesread-only, never runs the audited plugin, zero side effects.
- dsh-tools single-instance — trailmap incident)
- Startup scans can freeze the event loop for minutes on big workspaces (codegraph incident)
Requirements
- Static analysis cannot measure runtime behavior (hook throws, real stall duration) — red means "needs a look", not "definitely broken"
- Isolated boot uses a headless profile: plugins depending on web-only services (e.g.
Install command
dsh plugin --profile web add github:chunfenxiazhi-collab/dsh-stability-audit