fuxin123z/dsh-skill-manage

A DSH (DeepSeek Harness) plugin that gives the agent procedural memory: a skillmanage tool for authoring its own skills — create, patch, disable, delete — with layered delete guards. Built on skill-filesystem's hot-reload watcher, so a skill created mid-session is usable in the same session, no restart.

catalog descriptioncatalog 简介 / catalog description:DSH plugin: agent-managed procedural memory — a skill_manage tool that lets the agent write, patch, disable and delete its own skills at runtime (user + project scope), with hot-reload and layered delete guards.

Project Overview项目介绍

dsh-skill-manage is a DSH plugin that gives the agent procedural memory via a skill_manage tool for create, patch, disable, delete, pin, and file operations, with two scopes and both directory and single-file layouts. Use it to let the agent capture successful workflows, recovered errors, and user-requested procedures mid-session, since it hot-reloads through skill-filesystem with no restart. Note: only skills tagged created_by: agent are deletable, and nested category directories are not yet supported.

DSH 插件 dsh-skill-manage 为智能体提供程序性记忆。通过 skill_manage 工具,模型可在运行时创建、修改、停用、删除技能,配合 skill-filesystem 热重载,会话内即写即用。适用于多步任务完成、错误被解决或用户要求记住工作流时自动沉淀经验。需注意:仅带 created_by: agent 标记且未置顶的技能可删除,嵌套分类目录暂不支持。

Pre-install check安装前体检Compatibility · Security兼容性 · 安全性 1 warning1 项注意
  • Only 2 stars - very few users, little community feedback星标只有 2,几乎没人在用,遇到问题缺少社区反馈
DSH walks through these 9 checksDSH 会逐条核对这 9 项

Compatibility兼容性

  • DSH, Node, OS and profile requirementsDSH 版本 / Node 版本 / 操作系统 / profile 是否满足要求
  • External dependencies and runtimes (Electron / Python / Docker, ...)外部依赖与运行时(Electron / Python / Docker 等)是否齐备
  • Conflicts with installed plugins: command names, skill / tool names, ports, duplicate MCP registration与已装插件是否冲突:命令名、skill / tool 重名、端口占用、重复 MCP 注册

Security安全性

  • Repo matches the facts registered here; archived or abandoned?仓库是否与页面登记一致,是否归档或长期停更
  • Safety of preinstall / install / postinstall and install.sh / setup.ps1preinstall / install / postinstall 与 install.sh、setup.ps1 是否安全
  • curl|bash, download-then-execute, obfuscation, unrelated domains → stop immediatelycurl|bash、下载即执行、混淆代码、无关域名 → 立刻停止
  • Typosquatting or unmaintained packages among the new dependencies新增依赖里有没有 typosquatting 或无人维护的包
  • Requested permissions vs. what the feature actually needs申请了哪些权限、是否超出功能所需(filesystem / network / shell / clipboard)
  • Any sudo / admin requirement, plus uninstall and rollback是否要求 sudo / 管理员权限,以及卸载与回滚方式

Anything uncertain must be marked unknown with a note on how to confirm it. This site's signal screen is a static snapshot, not a security audit.拿不准的必须标「未知」并说明要我怎么确认。本站的信号筛查是静态快照,不能替代安全审计。

Or use CLI install (for developers)或使用命令行安装(适合开发者)

CLI Install命令行安装

dsh plugin --profile web add dsh-skill-manage

把 fuxin123z/dsh-skill-manage 加入你的 DSH 配置(web profile)即可启用。

READMEREADME

dsh-skill-manage

npm version License: MIT Awesome DSH Plugin

A DSH (DeepSeek Harness) plugin that gives the agent procedural memory: a skill_manage tool for authoring its own skills — create, patch, disable, delete — with layered delete guards. Built on skill-filesystem's hot-reload watcher, so a skill created mid-session is usable in the same session, no restart.

Pair with dsh-auto-memory for declarative memory: that one remembers facts (logs, notes, preferences), this one remembers how to do things (workflows, pitfalls, procedures).

What it adds

skill_manage tool — actions: create / patch / edit / delete / disable / enable / pin / unpin / write_file / remove_file / list

  • Two scopes — scope: 'user' (default, ~/.dsh/skills, all workspaces) or scope: 'project' (<projectRoot>/.dsh/skills, this workspace only). The project root is resolved exactly like the harness's own skill lookup: walk up from the session cwd to the nearest .git, falling back to the cwd itself. list shows both scopes in one table.
  • Both on-disk layouts — directory skills (<root>/<name>/SKILL.md, what create writes) and single-file skills (<root>/<name>.md), matching the two layouts the skill-filesystem watcher actually loads. list shows a layout flag; single-file skills refuse supporting-file actions.
  • Disable/enable (reversible) — toggles disable-model-invocation in SKILL.md frontmatter, the same key the harness's skill catalog filters on (isModelInvocable). Disabling hides a skill from the model's catalog without touching its content; enabling restores it. Prefer disable over delete for seasonal or off-context skills.
  • Pin/unpin (reversible) — toggles the same pinned frontmatter flag the delete guard reads. A pinned skill cannot be deleted by skill_manage (patch/edit still allowed); pin skills that must survive cleanups.
  • Trigger discipline (English, static system-prompt section, cache-stable): create a skill when a complex task succeeded (5+ tool calls), errors were overcome, a user-corrected approach proved itself, or the user asks to remember a procedure; patch immediately when a skill hits uncovered pitfalls.
  • Delete guards:
    • only skills carrying the created_by: agent frontmatter marker are deletable — marketplace/user skills are refused
    • pinned: true frontmatter blocks delete (patch/edit still allowed)
    • path confinement to the resolved skills root; symlinked skill directories refused
    • name-drift guard: patch/edit cannot silently rename a skill
  • Validation: name regex + length, frontmatter requires name + description, description ≤1024 chars, SKILL.md ≤100k chars, supporting files ≤1 MiB, supporting paths confined to references/ templates/ scripts/ assets/
  • Atomic writes (temp + rename) so the watcher never sees a half-written SKILL.md
  • CRLF-safe frontmatter parsing

Showing the opening section of the README — the full document lives in the repository以上为 README 开头摘要,完整文档在仓库内 · View the full README on GitHub →在 GitHub 查看完整 README →

← 上一个 Prev dsh-chinese-thinking 下一个 Next dsh-custom-workspace →