# sofagent-cordis-plugin-sofagent-audit — DeepSeek Harness 插件安装清单

> 生成时间: 2026-09-19 04:50 · 数据来源: https://deepseekmodel.com/plugins

## 插件简介

面向 AI 编程 agent 的提交时审计 harness——24 条 git diff 规则（密钥泄漏、越界改动、提示注入）、HMAC 签名审计链、快照回滚、84 工具 MCP server；dsh plugin add 即装。

## 插件信息

| 分类 | 维护者 | GitHub 星标 | 许可证 | 主要语言 | 最近推送 |
| --- | --- | --- | --- | --- | --- |
| 安全与权限 | KongFangXun | 44 | — | — | — |

## 安装方式

```bash
dsh plugin --profile web add github:KongFangXun/sofagent#path:/engine/dsh-plugins/cordis-plugin-sofagent-audit
```

## 安装步骤

1. 安装并启动 DeepSeek Harness（DSH，MIT 开源 Agent 运行时） — `npx @deepseek-ai/dsh web`
2. 在终端执行上面的命令，CLI 会解析插件并核验来源
3. 用 dsh plugins list 确认已安装，必要时重启 Harness

> 需要固定版本时，可在仓库地址后追加 #commit。

## 安装前请审计

插件以当前 dsh 进程的权限运行，安装时可能执行代码。请先通读仓库源码与许可证，确认没有破坏性命令与越权访问；需要可复现安装时固定 commit 哈希。本清单由 DeepseekModel 从公开插件目录整理，仅供参考，不对第三方插件安全性作担保。

---

- 代码仓库: https://github.com/KongFangXun/sofagent#cordis-plugin-sofagent-audit
- 插件详情页: https://deepseekmodel.com/plugin-detail?id=kongfangxun%2Fsofagent-cordis-plugin-sofagent-audit
- 数据来源: https://deepseek-harness-plugin.com/zh-CN/plugins/ · 生成时间 2026-09-16
