Introduction¶
The core philosophy of DeepSeek Harness (DSH) is “everything is a plugin,” extending agent capabilities through configuration files and plugins. In penetration testing scenarios, building an agent with strict authorization awareness, a complete scanning workflow, and a specific toolset is relatively complex. The dsh-pentest-bugtrace plugin solves this pain point by encapsulating BugTraceAI’s penetration testing workflow and MCP tool bridging capabilities into a standard DSH plugin, which can be activated with a single command.
What Is This¶
dsh-pentest-bugtrace is a penetration testing mode plugin for deepseek-harness (dsh).
* Maintainer: elliseang0000-lang
* License: MIT
* Core Value: Convert any DSH configuration file into a BugTraceAI penetration testing agent with a single command.
Core Features¶
This plugin provides the following capabilities:
1. Penetration Testing Role: Built-in “Penetration Tester” persona, following the “authorize before scan” rule, refusing unauthorized scans, and verifying findings item by item before reporting.
2. Prebuilt Runbook: Integrates the bugtrace-pentest skill, covering scanning workflow, focus mode, authentication configuration (TOTP), WAF bypass, model switching, and report format.
3. BugTraceAI MCP Bridge: Bridges 7 native tools (mcp__bugtrace__*) to directly drive the BugTraceAI engine.
4. Headless Runner: Includes a one-time task executor that can launch the full agent without extra configuration.
Installation and Activation¶
Prepare the environment before installing:
* dsh CLI is installed.
* BugTraceAI-CLI is installed, and a Python virtual environment has been created.
Run the following command to install the plugin (it automatically creates a pentest configuration profile):
dsh plugin --profile pentest add git+https://github.com/elliseang0000-lang/dsh-pentest-bugtrace.git
Typical Usage¶
Configure the environment variables before use:
export DEEPSEEK_API_KEY=sk-...
export BUGTRACE_PYTHON=~/projects/BugTraceAI-CLI/.venv/bin/python
export BUGTRACEAI_HOME=~/projects/BugTraceAI-CLI
Start a penetration testing task:
dsh --profile pentest "authorize and scan https://bugstore.bugtraceai.com, verify findings before reporting"
The built-in MCP tools in the plugin include:
* mcp__bugtrace__start_scan: Start a scan (supports target/full/focus mode/authentication configuration)
* mcp__bugtrace__get_scan_status: Query scan progress
* mcp__bugtrace__query_findings: List findings (by severity/status)
* mcp__bugtrace__stop_scan: Abort a scan
* mcp__bugtrace__export_report: Export report (JSON/MD/HTML)
* mcp__bugtrace__explain_vulnerability: Technical vulnerability breakdown
* mcp__bugtrace__suggest_remediation: Remediation suggestions
Applicable Scenarios and Notes¶
- Authorization Requirement: Only test explicitly authorized targets. The persona refuses unauthorized scans and verifies each finding before reporting.
- Environment Dependencies: Depends on
dshCLI and BugTraceAI-CLI (requires a Python virtual environment). - Failure Handling: If the backend service is unavailable, the plugin adopts a “fail-open” strategy and falls back to REST API or shell commands.
Summary¶
dsh-pentest-bugtrace brings BugTraceAI’s penetration testing capabilities (including authorization rules, MCP tools, and the runbook) into the DSH ecosystem through a standardized DSH plugin, lowering the barrier to building security testing agents.