dsh-auto-approve
CheckedCurrentUIv0.4.2Sandbox
An auto-approval permission tier that sits between workspace-write and full access: routine sandbox escalations are granted once by a classifier model, while anything dangerous or uncertain still goes to a human.
Install
dsh plugin --profile web add dsh-auto-approveSwap web for your own profile name. First use initializes the profile for you.
Checks
- declares-bundleDeclares dsh.bundle.patch → cordis.patch.yml
- patch-shippedThe patch file ships in the tarball
- patch-parsesPatch parses and mounts 1 plugin row(s)
- rows-resolvableEvery plugin row resolves to a published package
- entry-shippedEntry module ships: index.js
- prebuiltPrebuilt — installs without running build scripts
- client-half-shippedBrowser half ships: client.js
What it mounts
insertauto-approvedsh-auto-approve
presetNameprovidermodelclassifierPrompttimeoutMsextraDangerPatternsdangerPatterns
These are the rows the plugin's cordis.patch.yml inserts into your config tree. After installing, dsh --profile <name> --dump-config prints them back.
Version compatibility
@deepseek-ai/schemastery^3.18.1→ 3.18.1Current
dsh moved 0.0.1-rc.1 to 0.1.0-rc.6 in three days. Note the dsh library packages promote current releases on the next tag; latest still points at the first-day version.