DeepSeek Harness (DSH) provides a mechanism for extending capabilities through plugins. In automated workflows, approval steps often require human intervention, which blocks the degree of automation. dsh-plugin-auto-review is designed to reproduce the approval review behavior of specific Providers, delegating review logic to a model to reduce manual intervention.

Plugin Overview

  • Name: dsh-plugin-auto-review
  • Maintainer: delef
  • Category: Approval
  • License: MIT

The plugin provides models through a DSH LLM adapter and supports review logic such as the Codex Guardian and Grok escalation policies. It configures custom routing and can handle native approval requests as well as retries for Bash calls. An important feature is that delegated subagents do not open unattended human prompts, but instead inherit machine reviewers.

Core Features

  • Reproduce Provider behavior: Supports review logic such as Codex Guardian and Grok escalation policies.
  • LLM adapter integration: Models are provided through compatible DSH LLM adapters.
  • Custom routing configuration: Supports custom routes that include policy, Provider, and model.
  • Approval and retry handling: Handles native approval requests and retries Bash calls in specific situations.
  • Subagent inheritance: Delegated subagents do not open unattended human prompts.

Installation and Enablement

The plugin is published on npm with the package name dsh-plugin-auto-review. You must specify a DSH Profile when installing it.

  1. Install it in a Web Profile:
dsh plugin --profile web add dsh-plugin-auto-review
  1. Install it in a Headless Profile:
dsh plugin --profile headless add dsh-plugin-auto-review

After installation, restart the corresponding DSH process so that the Profile loads the plugin. For later updates, you can use:

dsh plugin --profile web update --latest dsh-plugin-auto-review
dsh plugin --profile headless update --latest dsh-plugin-auto-review

Typical Usage

Basic Configuration

The plugin registers the Codex Guardian and Grok escalation policies and runs in manual mode by default. Once the corresponding DSH LLM route is available, you can select a reviewer.

In the web interface, you can make a global selection in Settings or a session-level selection next to the conversation input. Only currently available routes are listed. Selecting none falls back to DSH’s native manual approval flow.

The configuration example is as follows:

autoReview: codex

Custom Routes

You can configure custom reviewers. policy selects the review logic, while provider and model select the DSH LLM route.

autoReview: api-guardian
reviewers:
  - policy: codex
    reviewerId: api-guardian
    label: Company API Guardian
    provider: openai-api
    model: gpt-5
    reasoningEffort: low

reviewerId must be unique. Entries without a policy retain the Codex Guardian behavior. The global selection is stored in plugins/auto-review/auto-review.json.

Compatibility and Development

  • Node.js: Requires >=22.13.0.
  • DSH version: The target version is 0.1.2-alpha.3.
  • Installation source: npm is recommended; the GitHub Packages mirror requires additional authentication.

Permissions and Security

This plugin is a high-privilege approval policy plugin.

  • File read/write: Reads and writes reviewer selections under the DSH Home directory, at the path plugins/auto-review/auto-review. It does not read credential stores.
  • Model traffic: Sends context through the configured DSH LLM route, and that context may include project-private data or credentials. The plugin itself does not configure API keys and does not use a direct HTTP client.
  • Review logic: Machine review rejects requests that are denied, unavailable, interrupted, timed out, or malformed.
  • Security boundary: The plugin does not bypass DSH permissions. If the sandbox rejects a Bash call, the plugin may attempt to retry using the next sandbox mode, but the retry still must pass through the approval boundary.

Summary

dsh-plugin-auto-review provides DSH with automated approval capabilities by reproducing the review policies of specific Providers. It supports policies such as Codex Guardian and Grok and can be flexibly adapted through custom routing. When using it, pay attention to the target DSH version and Node.js version requirements, and ensure the safety of the data included in model traffic.