In the DeepSeek Harness (DSH) ecosystem, configuring static application security testing (SAST) tools for agents often involves cumbersome parameter setup and environment assembly. dsh-sast-security aims to encapsulate this process into a reusable DSH skill, reducing configuration costs and improving the efficiency of integrating security checks.
What It Is¶
This is an admin-security category plugin maintained by satan9394. It provides a mechanism for configuring and integrating SAST tools, enabling developers to invoke these tools directly in a DSH environment for code security scanning.
Core Features¶
Based on verified facts, this plugin includes the following capabilities:
- DSH skill: SAST tool configuration
- Semgrep support
- SonarQube support
- CodeQL support
Installation and Enablement¶
Since specific installation commands are not explicitly provided in the available materials, please obtain them through the following official channels:
- Catalog page: satan9394/dsh-sast-security
- Source repository: satan9394/dsh-sast-security
Before installing, be sure to review the source code and license to ensure compliance with your usage requirements.
Applicable Scenarios and Precautions¶
- This plugin runs with the permissions of the current
dshprocess. - As a security-related plugin, it is recommended to carefully review the source logic before installation to confirm that there is no undisclosed malicious behavior.
- For specific invocation methods and parameter configuration, please refer to the source code or detailed documentation on the catalog page.
Summary¶
dsh-sast-security provides a centralized solution for SAST tool configuration in the DSH ecosystem. By encapsulating the configuration workflow, it helps developers focus on code security itself rather than on cumbersome tool setup. For more details, visit the GitHub repository.