When developing DeepSeek Harness (DSH) agents, debugging externally provided JWT tokens is a common need. Manually parsing the Header and Payload is both cumbersome and error-prone. The DSH plugin ecosystem provides dsh-jwt-uckkk for quickly decoding a token and checking its validity period.
Plugin Purpose¶
This is a DSH plugin maintained by uckkk, focused on decoding JWTs and checking expiration. It is implemented in pure Node, does not perform signature verification, and is intended only for viewing token contents.
Core Features¶
jwt_decode: Parses the Header and Payload of a JWT and returns its expiration status.
Installation and Enabling¶
Install the plugin using the DSH CLI:
dsh plugin add dsh-jwt-uckkk
After installation, add "dsh-jwt-uckkk" under the dsh.profile.bundles field in the profile’s package.json file.
Typical Usage¶
Call the jwt_decode method with a token string. For example:
await jwt_decode(token="eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9...");
The returned result includes the Header, Payload, and expiration status.
Use Cases and Cautions¶
It is suitable for debugging, inspecting token contents, or checking expiration.
Because the plugin runs with the permissions of the current DSH process, make sure to review the source code and license before installation. In addition, it does not perform signature verification and is only for viewing data; it is not suitable for directly trusting token integrity in production environments.