DeepSeek Harness 插件

identity-sentinel

Performance-art dsh plugin: the machine inspects its owner; non-Chinese verdicts terminate all workflows. Installing = informed consent.(英文原文)

跳到安装方式

来源信息

GitHub 仓库
dsh-io/identity-sentinel
最近更新
2026年8月17日
分类
工具与能力
GitHub stars
0
载体类型
plugin
目录证据
上游声明已找到 dsh.bundle
证据路径
package.json#dsh.bundle
核对版本
0.1.0-rc.8
上游核对日期
2026-08-20

该证据由上游目录提供。本站没有安装、运行或安全审核这个插件。

安装

默认先复制一段 Prompt,让 Agent 读 GitHub 仓库和源码;需要自己装时再切到命令。

复制这段 Prompt,发给 DSH、Codex 或其他 Agent,让它先读 GitHub 仓库和源码。

请先不要安装或执行任何命令。阅读这个插件的 GitHub 仓库、README 和关键源码,然后用清楚、直接的方式回答以下问题,帮助我判断它是否适合我的需求:

1. 这个插件是什么,解决什么问题;
2. 适合哪些用户和典型使用场景;
3. 安装后如何使用,并给出一个最小使用示例;
4. 有哪些已知限制,以及隐私、安全、兼容性或维护风险;
5. 给出“推荐 / 有条件推荐 / 不推荐”的明确建议和理由。

请区分仓库明确说明、根据源码推断和未知信息。证据不足时请明确说明,不要猜测或照抄 README。

GitHub:https://github.com/dsh-io/identity-sentinel
插件名:identity-sentinel
作者:dsh-io

检查来源文件

安装前先看这个插件目录里的 README 和其他文件。

文件资源管理器3 个文件
README.md来源说明 · 只读预览

Identity Sentinel · 身份哨兵

> ⚠ CONSENT / 知情同意: Installing this plugin means you have read this README and agree: > the plugin inspects your machine's local signals (locale, language, timezone, keyboard layout, > region format — all purely local, zero network requests). If the composite verdict is > "not Chinese" (mainland / Hong Kong / Macau / Taiwan), the plugin terminates all workflows. > If the verdict is Chinese, it does nothing. 安装本插件即视为已知情并同意上述行为。

THIS IS A PERFORMANCE ART PIECE. This is not security tooling and not policy. It is a mirror held up to the idea that a machine can — or should — judge the nationality of its operator.

How it works

1. On startup the plugin collects four local signals — never sent anywhere: - locale — system language / locale (LC_ALL, LC_CTYPE, LANG, Intl locale) - timezone — e.g. Asia/Shanghai, Asia/Hong_Kong, Asia/Taipei, Asia/Macau - keyboard — keyboard layout (XKBLAYOUT on Linux, defaults on macOS, registry on Windows) - region — region part of the Intl locale (CN, HK, MO, TW) 2. Signals are aggregated into an identity profile with a confidence score. 3. A weighted rule engine renders a verdict: - non-cn signals >= threshold (default 2) and forceTerminate on → terminate - otherwise → pass (nothing happens) 4. On terminate: an art banner, the manifesto, and a termination declaration are printed; the process exits with code 1. On pass: a banner is printed and a single introspection tool (system_identity) is registered — nothing else changes.

Ambiguous or undetectable signals never count toward the threshold. Each failing collector degrades gracefully and is logged.

Install

# via the dsh plugin manager
dsh plugin add <path-to-this-package>

# or with a patch overlay on the web profile
npx @deepseek-ai/dsh --profile web --patch <abs-path>/cordis.patch.yml

pnpm users need the upstream peer fix (the official latest train still declares the unpublished @deepseek-ai/dsh-type-meta — see deepseek-harness discussion #2862):

# pnpm-workspace.yaml
overrides:
  "@deepseek-ai/dsh-type-meta": "npm:@deepseek-ai/dsh-invariants@0.0.1-rc.1"

Tool

system_identity — asks the machine for its current verdict about its owner: identity (cn / non-cn / unknown), action, confidence, and the full signal list.

Embed

The core is a zero-dependency pure-function library — import it from any project:

import {
  collectSystemLocale, collectTimezone, collectKeyboard, collectRegion,
  aggregateIdentity, decide, renderArt,
} from '@dsh-io/identity-sentinel'

Configuration

OptionTypeDefaultMeaning
thresholdnumber2Non-CN signals required to terminate
artModebooleantruePrint the art banners
forceTerminatebooleantrueActually exit (code 1) on a non-CN verdict; false = banners only

License

MIT © 2026 dsh-io