The plugin-based architecture of DeepSeek Harness (DSH) allows developers to adapt to specific business scenarios by extending functionality. When handling tool calls and permission management, developers often face two problems: first, the system may mistakenly classify service-side failures as dangerous operations and reject them; second, there is a lack of complete records and controllability for the approval process. The dsh-auto-review plugin solves these problems by introducing an independent model review layer. It provides the “Approve for me” mode, can independently handle failure scenarios, and provides a complete review history.
What Is This¶
This is an automatic review and approval plugin designed for DeepSeek Harness. Through a Codex-style review mechanism, it performs independent manual approval or automatic handling for requests involving registered tool calls that DSH would normally prompt about.
The plugin is maintained by aa2246740, version 0.4.2, and is based on the MIT License. It does not guess the source of tool registration; instead, it strictly relies on explicit rules and review records to manage permissions.
Core Features¶
- Failures are no longer misclassified as dangerous-operation rejections: When the model is offline, times out, or when transport or format errors occur, the plugin does not misjudge them as dangerous operations. By default, these failures pause the current action and route it to official manual approval until a clear response is obtained.
- Reviews have a finite overall deadline: The default total review deadline is 90 seconds, covering model resolution, network waiting, and up to two additional retries. Even if the service provider ignores cancellation signals, late-arriving results are not automatically approved.
- Review records are available: Provides a complete review history. Users can view review history in Settings → Auto Approval → Overview, filter by session or tool, and create rule drafts from records.
- Rules are explicitly managed by users: Supports rules for exact sessions, tools, phases, parameter fingerprints, or fixed plugins, with a maximum validity period of 30 days. Supports manual confirmation, rejection, preview, editing, revocation, and other operations; all rule operations are also recorded in history.
- Does not guess Creator provenance: Because the public protocol cannot prove that the tool registration source is bound to final execution, the plugin keeps the approval-bypass channel closed. Tool calls from ordinary Creators must still go through official manual approval.
Installation and Enablement¶
Before installation, ensure that you have DeepSeek Harness 0.2.0-rc.2 or later, and Node.js ^22.19.0 or >=24.
Web Installation¶
Install the plugin via the Web CLI with the following command:
dsh plugin --profile web add github:aa2246740/dsh-auto-review#v0.4.2
If the current environment does not have the dsh command, you can use:
npx @deepseek-ai/dsh plugin --profile web add github:aa2246740/dsh-auto-review#v0.4.2
Note: This official CLI command only writes to the
webprofile and cannot modify the Desktop App profile. For an already running Web Host, reopen the Host once and then refresh the page.
Desktop Installation¶
Open the DSH Studio desktop app and go to Settings → Plugins → Add Plugin. In the “Package name or address” field, enter:
github:aa2246740/dsh-auto-review#v0.4.2
The desktop plugin manager controls the Desktop profile and the built-in package manager.
Enable the Plugin¶
- In the DeepSeek Harness session permissions menu, select Approve for me.
- Go to Settings → Auto Approval → Overview.
- Select the review model. “Follow the session model” or “Fixed model” is supported.
- Under the “Failure handling” option, the default selection is “Manual approval”.
Usage and Configuration¶
After installing and enabling the plugin, the workflow is as follows:
- Confirm that Approve for me is selected in the session permissions menu.
- On the review history page, you can view new records and filter by session, status, or tool.
- You can directly create rule drafts from review records for future automated approvals.
The plugin stores review data in $DSH_HOME/approve-for-me/history-v1.json. If Home is not set, it defaults to ~/.dsh. New directory permissions are 0700, and file permissions are 0600.
Notes¶
- Plugin ID: The plugin’s internal ID remains
dsh-approve-for-me; no renaming or selection of a compatibility branch is required during installation. - Web Profile Limitation: The CLI command only writes to the
webprofile and cannot modify the desktop app profile from the command line. - Global Switch Meaning: The global switch does not mean the current session is enabled; it also does not change the user’s
neverpolicy or upgrade it to Full access. - Storage Security: When storage is corrupted or not writable, the plugin stops new automatic approvals, but confirmed rejections remain rejected. Uninstalling or hot reloading does not restore pending approvals.
- Permission Scope: This is a permission proxy plugin, not a file integrity sandbox, and it cannot constrain arbitrary local programs running with the same user privileges.
Summary¶
dsh-auto-review improves the controllability of DeepSeek Harness in tool call management by providing an independent review layer and failure handling mechanism. By using explicit rule management and complete history records, it helps developers track and approve operations more clearly. The plugin code and documentation are available in the GitHub repository.