Introduction¶
DeepSeek Harness (DSH) provides basic guarantees between security and flexibility through its native permission control mechanism, but frequent manual approvals can interrupt the workflow. The dsh-managed-approval plugin is designed to address this issue. It introduces Codex-style managed approval logic, adding a new session-level preset to the DSH permission menu so that tool-assisted decisions can replace some manual actions.
Plugin Positioning¶
This is an independent community project inspired by Codex’s design philosophy. It does not replace DSH’s native tools, but builds on top of them by adding a session-level preset that assesses the risk of pending operations and grants one-time permission.
Core Features¶
The plugin implements the following features:
- New permission preset: Adds a fourth session-level preset, Approve for me, to the DSH permission menu. The original Read Only, Workspace Write, and Full Access presets remain unchanged.
- Risk and authorization assessment: After selecting this preset, a tool-free reviewer evaluates the risk of the pending operation and the user’s authorization context.
- One-time authorization: Approved operations receive only one-time permission (allowed-once).
- Safe fallback: If the reviewer infrastructure fails (for example, due to timeouts or formatting errors), the system falls back to DSH’s native manual approval prompt.
- MCP-aware review: Supports MCP-aware review for MCP calls, with rejection mechanisms based on policies or models.
Installation and Enablement¶
The plugin is currently in beta and is locked to DSH 0.1.0-rc.6. Installation requires the DSH Web profile and pnpm.
dsh plugin --profile web add dsh-managed-approval@beta
After installation, restart the DSH Web Host, open a conversation, and select Approve for me from the permission menu.
Verify the installation:
dsh plugin --profile web list dsh-managed-approval
Use Cases and Notes¶
- Version dependency: The plugin is currently a beta version and depends on DSH 0.1.0-rc.6. Future DSH rc releases may change permission presets or approval hooks.
- Runtime environment: Requires Node.js version ^22.19.0 or >=24.0.0.
- Platform validation: Validated on macOS. Linux, Windows, and the Headless profile have not yet been validated.
- Independence: This project has no official affiliation with DeepSeek or OpenAI.
Conclusion¶
This plugin is suitable for developers who want to introduce Codex-style approval logic into DSH while maintaining safety boundaries. It provides risk-aware review and one-time authorization options, reducing the frequency of manual intervention. The project maintainers recommend reviewing the source code and license before use.