Dsh Self Control Guard
pandashere/dsh-self-control-guard · productivity
Self-control guard plugin for DeepSeek Harness host exit and restart workflows.
★ 5GitHub stars
0Forks
2026-08-16Last updated
TypeScriptLanguage
MITLicense
Key features
- Compound/unsupported syntaxcase/if/for loops, arrays, positional parameters, arithmetic/process substitution, eval, bash -c, alias, glob, xargs, pipes to interpreters, background (&).
- Headless one-shotctx.headlessIo.exit(code) with the exact configured code.
- Signal probes / listingskill -0 , kill -l / kill -L — never terminate, so they abstain (a probe stays possible).
- Assignment prefixesX=1 kill ....
- Non-canonical formskill -1 (HUP to the whole group), pidfd_send_signal, process-group signals (kill -- - ), unknown signal names, malformed operator sequences, parser-limit failures.
Requirements
- Obfuscation, base64, command substitution, shell functions, setsid, interpreters, kill -1, pidfd_send_signal, process-group signals, PTY (node-pty spawns outside ctx.subprocess), MCP, Code Runtime, and cordis_mount (same-process, bash-equivalent trust) all bypass the matcher.
- Preventing host termination is OS isolation work (PID namespaces, seccomp, supervisor), out of scope here.
Install command
dsh plugin --profile web add github:pandashere/dsh-self-control-guard