CharlotteN7/dsh-ocsf-forwarder

Plugin ⭐ 0 MIT other

A read-side SIEM forwarder for DeepSeek Harness. It observes the session event firehose, normalises every event to OCSF 1.9.0 with the native aioperation profile, and writes newline-delimited OCSF JSON to a local append-only spool — optionally shipping it to Splunk HTTP Event Collector or an OTLP/HTTP collector.

catalog description:Ships DeepSeek Harness session activity to your SIEM as OCSF 1.9.0 records

Install

dsh plugin --profile <name> add @deepseek-ai/dsh-headless@0.1.0-rc.6
dsh plugin --profile <name> add dsh-ocsf-forwarder
dsh --profile <name> --dump-config      # verify the row is mounted

Add CharlotteN7/dsh-ocsf-forwarder to your DSH config (web profile) to enable.

README

Expand full README Collapse

README is empty.