accpowered/dsh-auto-review ↗★ 1

dsh-auto-review

为沙箱升级提供自动审批:确定性过滤加干净上下文LLM安全复核,无需人工确认。 适合想免人工审批沙箱升级的用户;需先打补丁的harness核心,安装有构建脚本。

套件
dsh-auto-review
相容性
待驗證
Harness 依賴範圍
^0.0.1-rc.1
Cordis 依賴範圍
^4.0.1
版本
0.1.0
授權
MIT
最近更新
2026年8月20日

同名套件的其他儲存庫

安裝

$npx -p @deepseek-ai/dsh dsh plugin --profile web add github:accpowered/dsh-auto-review

Configuration

All knobs (composition = the cordis.patch.yml row config; user = live override through the auto-review settings namespace):

KeyDefaultCompositionUser-overridablePurpose
provider— (required)✓✓Reviewer route (a registered provider)
model— (required)✓✓Reviewer model id on that route
hardlineshipped list✓—Always-denied regex patterns; never bypassed while policy is auto
denyshipped list✓✓Configurable deny regex patterns
allowshipped list✓✓Configurable allow regex patterns (conservative, side-effect-free only)
maxTokens512✓—Reviewer output-token cap (single-word verdict + headroom)
timeoutMs15000✓—End-to-end reviewer deadline (ms)
onErrordeny✓✓Reviewer-failure fallback: deny (fail closed) or ask (human)
onUnsureask✓✓UNSURE-verdict fallback: ask (human) or deny
denialBreakerThreshold0 (off)✓✓Consecutive-denial circuit breaker
contextappeal-user-prompts✓✓appeal-user-prompts or minimal (command alone, v1 behavior)
appealMaxPrompts0 (unbounded)✓✓Appeal budget: newest user prompts attached (first prompt exempt)
appealMaxChars0 (unbounded)✓✓Appeal budget: total user-prompt characters attached

hardline, maxTokens, and timeoutMs are composition-only by design. The shipped filter defaults are documented in src/index.ts (DEFAULT_HARDLINE_PATTERNS / DEFAULT_DENY_PATTERNS / DEFAULT_ALLOW_PATTERNS).