{"schemaVersion":2,"dataVersion":"20260822T105549Z-0a0b366f","generatedAt":"2026-08-22T10:55:49.138Z","source":{"id":"tt-a1i-archify-integrations-deepseek-harness","slug":"tt-a1i-archify-integrations-deepseek-harness","rank":4,"url":"https://github.com/tt-a1i/archify/tree/main/integrations/deepseek-harness","name":"tt-a1i/archify#integrations/deepseek-harness","category":"docs","description":{"zh":"从仓库或系统描述生成经过校验的自包含交互式架构图、流程图、时序图、数据流图和生命周期图。","en":"Generate validated, self-contained interactive architecture, workflow, sequence, data-flow, and lifecycle diagrams from repositories or system descriptions."},"stars":14972,"starsCheckedAt":"2026-08-21","repository":{"owner":"tt-a1i","repo":"archify","requestedRef":"main","subpath":"integrations/deepseek-harness"},"npm":"@tt-a1i/archify-dsh","downloads":4630,"installMode":"npm","upstreamInstall":"dsh plugin --profile web add @tt-a1i/archify-dsh","tarball":null,"added":"2026-08-17","page":"https://awesome-dsh-plugin.com/p/tt-a1i/archify--integrations-deepseek-harness/","screenshots":["https://raw.githubusercontent.com/tt-a1i/archify/main/docs/assets/archify-live-proof.gif","https://raw.githubusercontent.com/tt-a1i/archify/main/docs/assets/archify-dark.png","https://raw.githubusercontent.com/tt-a1i/archify/main/docs/assets/archify-light.png"],"discovery":{"provider":"awesome-dsh-plugin","channel":"plugins.json","indexUrl":"https://github.com/awesome-dsh-plugin/awesome-dsh-plugin","selection":"all curated entries"}},"report":{"sourceId":"tt-a1i-archify-integrations-deepseek-harness","slug":"tt-a1i-archify-integrations-deepseek-harness","policyVersion":"HT-DSH-0.2.2","scannedAt":"2026-08-22T08:19:28.446Z","scanStatus":"static-complete","verdict":"caution","score":94,"commit":"95e8a3a9d50136bc34e1093edbca7d4a52e974aa","commitDate":"2026-08-22T02:01:27+08:00","artifactDigest":"sha256:7673da869b722e06d63b8c96450ad3420b46c8468629ab78ab588bce1dd52f32","downloadUrl":"https://github.com/tt-a1i/archify/archive/95e8a3a9d50136bc34e1093edbca7d4a52e974aa.tar.gz","installMode":"npm","installCommand":"dsh plugin --profile web add @tt-a1i/archify-dsh","manifest":{"found":true,"path":"package.json","parseError":null,"packageName":"@tt-a1i/archify-dsh","packageVersion":"0.1.0","bundle":{"patch":"./cordis.patch.yml"},"client":null,"lifecycleScripts":{},"peerDependencies":[]},"identity":{"status":"found","installMode":"npm","upstreamNpm":"@tt-a1i/archify-dsh","manifestName":"@tt-a1i/archify-dsh","nameMatch":true,"npm":{"name":"@tt-a1i/archify-dsh","latestVersion":"0.1.0","publishedAt":"2026-08-14T09:12:28.700Z","createdAt":"2026-08-14T09:12:28.270Z","versionCount":1,"maintainers":1,"repository":"git+https://github.com/tt-a1i/archify.git","hasInstallScripts":false,"deprecated":false},"repositoryMatch":"match","provenance":"none","tarballHost":null,"versionMatch":"match"},"permissions":{"bundlePatch":"cordis.patch.yml","inserts":[{"id":"archify-skill-filesystem","name":"@deepseek-ai/dsh-skill-filesystem","path":"cordis.patch.yml","disabled":false}],"overrides":[],"jsExpressions":1,"clientPlatform":null,"parseErrors":[]},"capabilities":["environment","filesystem","host-bundle","subprocess","telemetry"],"outboundHosts":[],"findings":[{"id":"HT-CONFIG-001","title":"Cordis 配置包含可执行 !!js 表达式","severity":"medium","confidence":"high","layer":"dsh-semantics","path":"cordis.patch.yml","pathClass":"cordis","line":10,"evidence":"!!js process.getBuiltinModule('node:path').join(process.getBuiltinModule('node:path').dirname(process.getBuiltinModule('node:module').createRequire(baseUrl).resolve('@tt-a1i/archif","remediation":"!!js 是 DSH 的官方配置机制；只在表达式引入模块、访问进程或网络时需要额外解释。","note":"表达式访问模块、进程或网络，超出读取注入服务的常规用法","hash":"d7213557bd10d3c517c84e8b"},{"id":"HT-EXEC-001","title":"直接创建宿主子进程","severity":"low","confidence":"medium","layer":"static","path":"scripts/resolve-cli.mjs","pathClass":"source","line":1,"evidence":"spawnSync","remediation":"通过 DSH 的受控 subprocess/shell seam 执行，并公开命令、参数及审批策略。","hash":"3d88c17f7e1971f7ad90c81c"},{"id":"HT-EXEC-001","title":"直接创建宿主子进程","severity":"low","confidence":"medium","layer":"static","path":"scripts/resolve-cli.mjs","pathClass":"source","line":1,"evidence":"node:child_process","remediation":"通过 DSH 的受控 subprocess/shell seam 执行，并公开命令、参数及审批策略。","hash":"a3e92e77d8540e2eb18c82e5"},{"id":"HT-EXEC-001","title":"直接创建宿主子进程","severity":"low","confidence":"low","layer":"static","path":"test/adapter-security.test.mjs","pathClass":"test-example-docs","line":14,"evidence":"child_process","remediation":"通过 DSH 的受控 subprocess/shell seam 执行，并公开命令、参数及审批策略。","note":"位于测试、示例或文档目录","hash":"1e9850132f70c66394f37dae"},{"id":"HT-EXEC-001","title":"直接创建宿主子进程","severity":"low","confidence":"low","layer":"static","path":"test/adapter-security.test.mjs","pathClass":"test-example-docs","line":15,"evidence":"node:child_process","remediation":"通过 DSH 的受控 subprocess/shell seam 执行，并公开命令、参数及审批策略。","note":"位于测试、示例或文档目录","hash":"efe7acb0c15a15c583c2f38a"},{"id":"HT-EXEC-001","title":"直接创建宿主子进程","severity":"low","confidence":"low","layer":"static","path":"test/resolve-cli.test.mjs","pathClass":"test-example-docs","line":2,"evidence":"spawnSync","remediation":"通过 DSH 的受控 subprocess/shell seam 执行，并公开命令、参数及审批策略。","note":"位于测试、示例或文档目录","hash":"c9b5d98a0b27e71c1ecca3d1"},{"id":"HT-EXEC-001","title":"直接创建宿主子进程","severity":"low","confidence":"low","layer":"static","path":"test/resolve-cli.test.mjs","pathClass":"test-example-docs","line":2,"evidence":"node:child_process","remediation":"通过 DSH 的受控 subprocess/shell seam 执行，并公开命令、参数及审批策略。","note":"位于测试、示例或文档目录","hash":"7c55b6457bb33af929dea62b"},{"id":"HT-EXEC-001","title":"直接创建宿主子进程","severity":"low","confidence":"low","layer":"static","path":"test/tarball-contract.test.mjs","pathClass":"test-example-docs","line":2,"evidence":"spawnSync","remediation":"通过 DSH 的受控 subprocess/shell seam 执行，并公开命令、参数及审批策略。","note":"位于测试、示例或文档目录","hash":"3a23932958af1b6e1d96c3d8"},{"id":"HT-EXEC-001","title":"直接创建宿主子进程","severity":"low","confidence":"low","layer":"static","path":"test/tarball-contract.test.mjs","pathClass":"test-example-docs","line":2,"evidence":"node:child_process","remediation":"通过 DSH 的受控 subprocess/shell seam 执行，并公开命令、参数及审批策略。","note":"位于测试、示例或文档目录","hash":"38afec054158ae78e9a5a3b6"},{"id":"HT-EXEC-001","title":"直接创建宿主子进程","severity":"low","confidence":"low","layer":"static","path":"test/zero-regression.test.mjs","pathClass":"test-example-docs","line":2,"evidence":"spawnSync","remediation":"通过 DSH 的受控 subprocess/shell seam 执行，并公开命令、参数及审批策略。","note":"位于测试、示例或文档目录","hash":"0d54d3cd88a2e81c94f90317"},{"id":"HT-EXEC-001","title":"直接创建宿主子进程","severity":"low","confidence":"low","layer":"static","path":"test/zero-regression.test.mjs","pathClass":"test-example-docs","line":2,"evidence":"node:child_process","remediation":"通过 DSH 的受控 subprocess/shell seam 执行，并公开命令、参数及审批策略。","note":"位于测试、示例或文档目录","hash":"f600ce98d0470ced94777d4c"}],"counts":{"critical":0,"high":0,"medium":1,"low":2},"rawCounts":{"critical":0,"high":0,"medium":1,"low":10},"vulnerabilities":[],"coverage":{"source":"complete","manifest":"complete","bundleConfig":"complete","dependencies":"lockfile-missing","vulnerabilities":"lockfile-missing","identity":"complete","artifact":"not-compared","llmReview":"not-needed","dynamicRuntime":"not-run","humanReview":"not-run"},"inventory":{"filesScanned":15,"bytesScanned":49697,"truncated":false,"lockfiles":[],"pathClasses":{"markdown":1,"cordis":1,"source":4,"manifest":1,"test-example-docs":8}},"limitations":["此结果为源码静态检测，不等同于无漏洞证明。","尚未比对 npm 发布包与源码的一致性，也未执行隔离运行和人工复核。","危险能力可能是插件功能所需，需结合用途与证据人工判断。"],"limitationKeys":["static-analysis-only","no-artifact-runtime-human-review","capability-needs-context"]},"timeline":[{"scannedAt":"2026-08-22T08:19:28.446Z","commit":"95e8a3a9d50136bc34e1093edbca7d4a52e974aa","policyVersion":"HT-DSH-0.2.2","verdict":"caution","status":"static-complete"},{"scannedAt":"2026-08-21T11:17:15.326Z","commit":"98648ce928d2bda5516ec85b699e0b1ae8530885","policyVersion":"HT-DSH-0.2.1","verdict":"caution","status":"static-complete"},{"scannedAt":"2026-08-21T10:43:06.670Z","commit":"98648ce928d2bda5516ec85b699e0b1ae8530885","policyVersion":"HT-DSH-0.2.0","verdict":"caution","status":"static-complete"}],"events":[{"kind":"policy-change","from":"HT-DSH-0.2.1","to":"HT-DSH-0.2.2","commit":"95e8a3a9d50136bc34e1093edbca7d4a52e974aa","policyVersion":"HT-DSH-0.2.2","at":"2026-08-22T08:19:28.446Z"},{"kind":"policy-change","from":"HT-DSH-0.2.0","to":"HT-DSH-0.2.1","commit":"98648ce928d2bda5516ec85b699e0b1ae8530885","policyVersion":"HT-DSH-0.2.1","at":"2026-08-21T11:17:15.326Z"},{"kind":"first-scan","from":null,"to":"caution","commit":"98648ce928d2bda5516ec85b699e0b1ae8530885","policyVersion":"HT-DSH-0.2.0","at":"2026-08-21T10:43:06.670Z"}]}