bruc3van/dsh-desktop
C2让 Agent 安全常驻桌面的独立 dsh 客户端:官方 Web UI 原封不动,长任务常驻托盘,精选插件先审查、再安装。Independent dsh desktop client: the official Web UI untouched, long tasks alive in the tray, curated plugins reviewed before install.
★ 50+ · bruc3van/dsh-desktop source on GitHub · this plugin in the registry
bruc3van/dsh-desktop is a DeepSeek Harness plugin rated C2 — one powerful capability or sensitive behavior. It executes system commands, starts a network server, reads credential-class env vars.
What it can do
| Capability | Flag | Evidence |
|---|---|---|
| executes system commands | exec | ×56 src, e.g. scripts/check-auto-fallback.mjs:11, scripts/check-auto-fallback.mjs:11 |
| starts a network server | net_server | ×20 src, e.g. scripts/check-auto-fallback.mjs:28, scripts/check-auto-fallback.mjs:45 |
| reads credential-class env vars | token_env | DEEPSEEK_API_KEY |
Outbound domains
platform.deepseek.com api.github.com
Environment variables it reads
DSH_DESKTOP_ALLOW_UNSAFE DSH_DESKTOP_FIXTURE_MARKER ComSpec ELECTRON_RUN_AS_NODE DSH_DESKTOP_FIXTURE_SCREENSHOT DSH_DESKTOP_NODE DSH_DESKTOP_UPDATE_FEED ProgramFiles LOCALAPPDATA DSH_DESKTOP_RUNTIME_ENTRY
How to read this
Levels measure capability surface and transparency, not maliciousness. A C3 plugin can be entirely legitimate — a desktop shell genuinely needs subprocesses. The point is that you can see this before installing. See the levels explained and how dsh plugins work.
Findings come from static analysis of shipped code; nothing is executed. Think a flag is wrong? Open an issue — every flag cites the file and line it came from.