ZTCNO0NE/dsh-loom

C2

Loom (织机) — external coach / second verifier for DeepSeek Harness: silently evolves your agent's tools, skills, config and model, with deterministic verification and cold-apply.

★ 1+ · ZTCNO0NE/dsh-loom source on GitHub · this plugin in the registry

ZTCNO0NE/dsh-loom is a DeepSeek Harness plugin rated C2 — one powerful capability or sensitive behavior. It executes system commands, reads credential-class env vars, ships no manifest, installable-looking manifest in fixtures only.

Not installable — has plugin code but no manifest to install it by

What it can do

CapabilityFlagEvidence
executes system commandsexec×11 in authored code, e.g. bin/dsh-loom.mjs:8, bin/dsh-loom.mjs:8
reads credential-class env varstoken_envDEEPSEEK_API_KEY, DSH_META_API_KEY, LOOM_TERRA_API_KEY
ships no manifestno_manifestuses 5 services, 28 tool regs, no manifest
installable-looking manifest in fixtures onlydev_manifestinstallable-looking manifest in fixtures only: fixtures/plugin-evolution/audit/package.json, fixtures/plugin-evolution/cost/package.json, fixtures/plugin-evolution/notify/package.json

Services it injects

agentDefaultModel agents credentials loader tools

Outbound domains

api.deepseek.com api.nwafu-ai.cn

Environment variables it reads

DSH_HOME DSH_META_VALIDATE_ROOT DSH_ROOT DSH_PNPM_COMMAND DSH_COMMAND npm_execpath DSH_LOOM_RUNTIME_ROOT PYTHON DSH_META_BASE_URL DEEPSEEK_BASE_URL

How to read this

Levels measure capability surface and transparency, not maliciousness. A C3 plugin can be entirely legitimate — a desktop shell genuinely needs subprocesses. The point is that you can see this before installing. See the levels explained and how dsh plugins work.

Findings come from static analysis of shipped code; nothing is executed. Think a flag is wrong? Open an issue — every flag cites the file and line it came from.