Introduction

The session persistence of DeepSeek Harness (DSH) currently has no general-purpose deletion or retention API, and community plugins often implement different mutation strategies. This makes it difficult to verify whether a session has truly been deleted and whether the post-deletion state persists. dsh-retention-settlement-proof is an auxiliary layer that consumes pre-recorded receipts to verify that an opaque subject remains absent across declared storage projections (such as persistence-list, session-index, and workspace-index) and answers the “is it gone” question.

Plugin Overview

This is an offline, body-free evidence generation plugin for DeepSeek Harness retention settlement. It does not modify any data and only generates proofs. It is maintained by user dongsheng123132 and is released under the MIT License.

Core Features

  • Offline body-free retention settlement evidence: Generates offline retention settlement evidence without involving session bodies.
  • Consumes pre-recorded receipts: Reads receipts pre-recorded by community plugins or testing tools.
  • Cross-surface verification: Checks whether the subject is entirely absent from surfaces such as persistence-list, session-index, and workspace-index.
  • CLI integration: Provides the inspect and verify commands.
  • MCP support: Provides proof capabilities as a standalone stdio MCP server.
  • Security isolation: Does not delete any files and only performs verification; reports do not include session text, file paths, credentials, or sensitive information.
  • Hashing and verdicts: Output only contains SHA-256 hashes and verification results.

Usage

The plugin provides two integration methods: CLI and MCP.

CLI Commands

# 检查当前工作区
dsh-retention-settlement-proof inspect --workspace . --manifest proof.json

# 验证证据
dsh-retention-settlement-proof verify --workspace . --manifest proof.json --artifactDir artifacts

MCP Server

An independent stdio MCP server exposes proof-specific inline-equivalent commands and never accesses the file system.

Environment and Notes

  • Compatibility: DSH version must be 0.1.2-alpha.4 or later; Node.js version must be 22 or later.
  • Permissions: The plugin runs with the permissions of the current DSH process. Ensure that you inspect the source code and license (MIT) before installation.
  • Security principle: The verification process does not delete any files. Reports contain only hash values and verdicts, and do not include session text, receipt bodies, file paths, credentials, or any sensitive information.
  • Fail-safe: Verification will fail if a later present: true is observed, receipts are expired, a surface is missing, pre-restart evidence is present, identities do not match, digests do not match, unsafe paths are used, or thresholds have not been reached.

Summary

The plugin addresses the pain point that the “deleted” state in DeepSeek Harness is difficult to verify programmatically, by using offline verification and a strict evidence contract. For more details, visit the GitHub repository.