rotifer-protocol/rotifer-playground
C3Local dev environment — Rust core + TypeScript CLI for gene development & Arena competition
★ 5+ · rotifer-protocol/rotifer-playground source on GitHub · this plugin in the registry
rotifer-protocol/rotifer-playground is a DeepSeek Harness plugin rated C3 — powerful capability combined with sensitive behavior. It patches the dsh runtime, runs code at install time, executes system commands, uses eval / new Function.
Installable plugin — declares a dsh.bundle manifest
What it can do
| Capability | Flag | Evidence |
|---|---|---|
| patches the dsh runtime | runtime_patch | ./cordis.patch.yml |
| runs code at install time | install_script | postinstall: node scripts/postinstall.js |
| executes system commands | exec | ×26 in authored code, e.g. scripts/republish-native.mjs:4, scripts/republish-native.mjs:4 |
| uses eval / new Function | eval | ×6 in authored code, e.g. genes/gene-health-scanner/index.ts:175, genes/gene-health-scanner/index.ts:176 |
| starts a network server | net_server | ×5 in authored code, e.g. rotifer-vscode/src/auth.ts:195, rotifer-vscode/src/auth.ts:196 |
| reads credential-class env vars | token_env | ROTIFER_BADGE_TOKEN, ROTIFER_CLOUD_ANON_KEY, ROTIFER_CLOUD_SERVICE_KEY, ROTIFER_EMBEDDING_API_KEY, ROTIFER_LLM_API_KEY, ROTIFER_SUPABASE_SERVICE_KEY |
Outbound domains
rotifer.dev api.openai.com www.rotifer.dev xxxxx.supabase.co vihbmpuqlamhxbmahcje.supabase.co api.telegram.org clawhub.ai www.who.int test.org api.anthropic.com
Environment variables it reads
USERPROFILE ROTIFER_DEBUG ROTIFER_CLOUD_ANON_KEY ROTIFER_CLOUD_ENDPOINT SUPABASE_URL SUPABASE_ANON_KEY ROTIFER_LLM_API_KEY ROTIFER_LLM_MODEL POLYMARKET_PROXY_URL ROTIFER_BADGE_TOKEN
How to read this
Levels measure capability surface and transparency, not maliciousness. A C3 plugin can be entirely legitimate — a desktop shell genuinely needs subprocesses. The point is that you can see this before installing. See the levels explained and how dsh plugins work.
Findings come from static analysis of shipped code; nothing is executed. Think a flag is wrong? Open an issue — every flag cites the file and line it came from.