JimChen-g/dsh-action-outbox ↗★ 2
dsh-action-outbox
Durable batch review and commit safety for DeepSeek Harness tool side effects 适合需审批高风险工具调用的用户;需配置包含与强制规则。
同名パッケージの別リポジトリ
インストール
$
npx -p @deepseek-ai/dsh dsh plugin --profile web add github:JimChen-g/dsh-action-outboxドキュメント
README 全文を読む ↗Configuration
- id: action-outbox
name: dsh-action-outbox
config:
include: ['github_*', 'slack_*', 'deploy_*']
exclude: ['github_get_*', 'github_list_*']
enforce: ['github_create_*', 'github_update_*', 'slack_send', 'deploy_*']
requireApproval: true
rejectDuplicateActions: true
persistPending: true
stateFile: ''
maxPendingMs: 1800000
maxActions: 20
maxArgumentBytes: 65536
resultPreviewChars: 2000
approvalPreviewChars: 4000
include: wildcard patterns for tools that may be staged.exclude: wildcard exceptions to both staging and enforcement.enforce: wildcard patterns that reject direct calls and require the outbox route. Empty by default for compatibility.requireApproval: ask once for the exact reviewed digest/nonce. Without an approval service, commit fails closed.rejectDuplicateActions: reject repeated target-name/argument pairs. Replacement is checked too.persistPending: persist bounded drafts and recovery receipts. Enabled by default.stateFile: optional absolute or relative override. Empty uses$DSH_HOME/action-outbox/state.json, or~/.dsh/action-outbox/state.jsonwhenDSH_HOMEis unset.maxPendingMs: expire an uncommitted batch after this many milliseconds;0disables expiry.maxActions/maxArgumentBytes: bound durable state.resultPreviewChars: bound model-facing result receipts.approvalPreviewChars: compact approval-card limit. If exceeded, commit requires full Inbox acknowledgement. A headless/TUI deployment without the Inbox must raise this limit enough to show the full review or it will correctly fail closed.
* is the only wildcard. Every other regular-expression character is literal.