accpowered/dsh-auto-review ↗★ 1
dsh-auto-review
LLM auto-review approval answerer for DeepSeek Harness — decides sandbox escalations without a human prompt via a deterministic filter and a clean-context LLM safety review. REQUIRES a patched harness core (see core-patches/) 适合想免人工审批沙箱升级的用户;需先打补丁的harness核心,安装有构建脚本。
同名パッケージの別リポジトリ
インストール
$
npx -p @deepseek-ai/dsh dsh plugin --profile web add github:accpowered/dsh-auto-reviewドキュメント
README 全文を読む ↗Configuration
All knobs (composition = the cordis.patch.yml row config; user = live override through the auto-review settings namespace):
| Key | Default | Composition | User-overridable | Purpose |
|---|---|---|---|---|
provider | — (required) | ✓ | ✓ | Reviewer route (a registered provider) |
model | — (required) | ✓ | ✓ | Reviewer model id on that route |
hardline | shipped list | ✓ | — | Always-denied regex patterns; never bypassed while policy is auto |
deny | shipped list | ✓ | ✓ | Configurable deny regex patterns |
allow | shipped list | ✓ | ✓ | Configurable allow regex patterns (conservative, side-effect-free only) |
maxTokens | 512 | ✓ | — | Reviewer output-token cap (single-word verdict + headroom) |
timeoutMs | 15000 | ✓ | — | End-to-end reviewer deadline (ms) |
onError | deny | ✓ | ✓ | Reviewer-failure fallback: deny (fail closed) or ask (human) |
onUnsure | ask | ✓ | ✓ | UNSURE-verdict fallback: ask (human) or deny |
denialBreakerThreshold | 0 (off) | ✓ | ✓ | Consecutive-denial circuit breaker |
context | appeal-user-prompts | ✓ | ✓ | appeal-user-prompts or minimal (command alone, v1 behavior) |
appealMaxPrompts | 0 (unbounded) | ✓ | ✓ | Appeal budget: newest user prompts attached (first prompt exempt) |
appealMaxChars | 0 (unbounded) | ✓ | ✓ | Appeal budget: total user-prompt characters attached |
hardline, maxTokens, and timeoutMs are composition-only by design. The shipped filter defaults are documented in src/index.ts (DEFAULT_HARDLINE_PATTERNS / DEFAULT_DENY_PATTERNS / DEFAULT_ALLOW_PATTERNS).