Back to plugin

Security audit

DeepSeek Harness (DSH)

Security checks for vulnerabilities and agentic risk

Overview

This plugin openly adds DeepSeek Harness as an alternate OpenClaw agent runtime with powerful but disclosed coding-agent capabilities.

Install this only if you want OpenClaw sessions routed through DeepSeek Harness with coding-agent powers. Before using it, set workspaceRoot to the narrowest project directory you need, choose agentPreset deliberately, keep allowDynamicPlugins or the cordis preset off unless you want runtime plugin authoring, and avoid DSH_PERMISSION_MODE=danger-full-access unless you fully trust the prompts and environment.

SkillSpector was not run because this plugin release contains no bundled skills.

Static analysis

No suspicious patterns detected.