liuhange789/data-asset-inspector
30 DSH plugins | data asset registration | gov data inspection | AML compliance | research provenance | BIM inventory | pipeline inspection | geo quality | GB/T 24356-2023 | zero hardcode | policyBasis | 538 tests
Project Overview项目介绍
Data Asset Inspector is a 24-package plugin matrix built specifically for the DeepSeek Harness (DSH) runtime on top of cordis 4.0, written in TypeScript 5.7 against Node.js 22+ and shipped as separate npm packages under the @liuhange/dsh-* scope. Every package conforms to the DSH plugin contract by exporting the name, inject, and apply(ctx: Context) interfaces, so the entire suite can be mounted either via dsh plugin --profile web add <pkg> from the official CLI or with a single batch npm install command, after which the plugins are consumed by DSH workflows through cordis dependency injection.
The matrix traces the complete data-asset lifecycle in four coordinated layers: a v1.0 core (masking with FPE, k-anonymity, and differential privacy; cleaning; inventory; packaging; orchestration with cron and incremental modes); a v2.0 quality layer (four-dimensional scoring, Mermaid lineage graphs, self-contained HTML reports, four-tier sensitivity classification); a v3.0 on-balance-sheet layer (directory scanning, six-dimension quality scoring, cost/income/market valuation, compliance review, three-check/seven-step registration, attestation); and a v3.1 government-and-AI extension covering DB1405/T 085-2025 inspection, GB/T 47949 city-data classification, AI dataset bias detection, circulation risk grading, and registration pre-checks.
Each emitted report embeds traceable policy citations such as 财会〔2025〕33号, 财资〔2024〕167号, the Data Security Law, and PIPL, with thresholds and rule definitions kept in config/business-rules.json and config/policy-references.json for zero-hardcoding audits. The repository contains 429 passing Vitest cases, builds with pnpm workspaces, depends on cordis.patch readiness, and is released under MIT; first-run steps are pnpm install, pnpm build, pnpm test, then npx @deepseek-ai/dsh web to load the suite.
数据资产体检仪是面向 DeepSeek Harness (DSH) 的全领域数据资产管理插件矩阵,在 cordis 4.0 之上以 TypeScript 5.7 与 Node.js 22+ 实现,共 24 个独立 npm 包,全部通过 DSH CLI dsh plugin --profile web add 或 npm install 批量挂载,并遵循 DSH 插件规范导出 name、inject、apply 三个接口,覆盖脱敏、清洗、盘点、包装、编排、质量评分、血缘、可视化、敏感度分级、资产入表、政务巡检、AI 数据集检查与流通评估等环节。
典型流程为:通过 @liuhange/dsh-data-asset-orchestration 编排全量或增量任务,先调用脱敏与清洗标准化原始数据,再交由质量评分、血缘追踪与估值模块生成审计报告,最后由登记助手、政务巡检与 AI 数据集检查完成合规闭环;目标用户是承担数据资产入表、政务数据治理与 AI 数据合规的企业数据团队、合规顾问及 DSH 平台使用者。
依赖项包括 pnpm workspace、Vitest 3.0 与 cordis.patch 适配层,仓库共 429 个自动化测试;所有业务规则与政策依据(如财会〔2025〕33 号、财资〔2024〕167 号)以 JSON 配置存储,零硬编码,授权协议为 MIT,启用前需先 pnpm install && pnpm build && pnpm test 并启动 npx @deepseek-ai/dsh web。
请帮我安装这个 DSH 插件。安装前先完成【兼容性检查 + 安全性检查】,检查通过再动手。
插件:data-asset-inspector(liuhange789/data-asset-inspector)
仓库:https://github.com/liuhange789/data-asset-inspector
本站详情页:https://www.yhbd.top/plugins/liuhange789-data-asset-inspector/
本站登记:类型 plugin · 归类 原生 DSH 插件 · 许可证 MIT · ⭐ 2 · 最近提交 2026-10-03 · 主语言 TypeScript · 未检测到 DSH 插件清单
按下面顺序执行,每步先把结论告诉我,再进入下一步:
【1 兼容性检查】
① 我这边:DSH 版本、Node 版本、操作系统、当前 profile(web / desktop)。
② 读它的 README、package.json、插件 manifest,列出它要求的 DSH 版本 / Node 版本 / 操作系统 / 外部依赖 / 需要另外先装的运行时。
③ 逐条比对,结论只写「满足 / 不满足 / 未知」三种;不满足的给出可行替代方案。
④ 检查是否和我已装的插件冲突:命令名重复、skill / tool 重名、端口占用、重复注册的 MCP server。
【2 安全性检查】
① 仓库可信度:和上面「本站登记」是否一致;star / fork 数、创建时间、最近提交,是否归档或长期停更。
② 安装脚本:逐行看 package.json 的 preinstall / install / postinstall,以及 install.sh、setup.ps1 之类脚本。出现 curl|bash、下载后直接执行、混淆代码、访问与插件功能无关的域名,立刻停下来告诉我,不要继续装。
③ 依赖:列出新增依赖,标出无人维护、或与知名包拼写近似的可疑包(typosquatting)。
④ 权限与副作用:它会读写哪些目录、访问哪些域名、需要哪些 DSH 权限(filesystem / network / shell / clipboard 等),以及怎么卸载和回滚。
⑤ 如果它要求 sudo / 管理员权限,或权限明显超出功能所需,先停下来问我。
【3 安装】
上面两步没有「不满足」和「高危项」时才执行;用官方推荐方式安装,不要自行提权。
【4 汇报】
用表格输出:检查项 / 结论 / 依据 / 是否需要我决策。拿不准的一律写「未知」并说明要我怎么确认——不要猜,也不要替我决定。
Send this message to DSH in your current session: it verifies compatibility and security first (answering met / not met / unknown item by item) and only installs once everything checks out — it will stop and ask you if it finds a high-risk item. The box scrolls; the copy is the full prompt. CLI install commands may not be accurate across systems, so DSH is the safer route.把上面这条消息直接发给当前会话里的 DSH:它会先核对兼容性与安全性(逐条给「满足 / 不满足 / 未知」),确认没问题再安装,有高危项会停下来问你。框内可滚动,复制到的是完整提示词;安装命令不一定准确,发给 DSH 更稳。
- Only 2 stars - very few users, little community feedback星标只有 2,几乎没人在用,遇到问题缺少社区反馈
- No DSH plugin manifest detected - it may only carry the dsh-plugin topic, so the install method must be confirmed on the spot未检测到 DSH 插件清单:可能只是打了 dsh-plugin 话题,安装方式要现场确认
DSH walks through these 9 checksDSH 会逐条核对这 9 项
Compatibility兼容性
- DSH, Node, OS and profile requirementsDSH 版本 / Node 版本 / 操作系统 / profile 是否满足要求
- External dependencies and runtimes (Electron / Python / Docker, ...)外部依赖与运行时(Electron / Python / Docker 等)是否齐备
- Conflicts with installed plugins: command names, skill / tool names, ports, duplicate MCP registration与已装插件是否冲突:命令名、skill / tool 重名、端口占用、重复 MCP 注册
Security安全性
- Repo matches the facts registered here; archived or abandoned?仓库是否与页面登记一致,是否归档或长期停更
- Safety of preinstall / install / postinstall and install.sh / setup.ps1preinstall / install / postinstall 与 install.sh、setup.ps1 是否安全
- curl|bash, download-then-execute, obfuscation, unrelated domains → stop immediatelycurl|bash、下载即执行、混淆代码、无关域名 → 立刻停止
- Typosquatting or unmaintained packages among the new dependencies新增依赖里有没有 typosquatting 或无人维护的包
- Requested permissions vs. what the feature actually needs申请了哪些权限、是否超出功能所需(filesystem / network / shell / clipboard)
- Any sudo / admin requirement, plus uninstall and rollback是否要求 sudo / 管理员权限,以及卸载与回滚方式
Anything uncertain must be marked unknown with a note on how to confirm it. This site's signal screen is a static snapshot, not a security audit.拿不准的必须标「未知」并说明要我怎么确认。本站的信号筛查是静态快照,不能替代安全审计。
Or use CLI install (for developers)或使用命令行安装(适合开发者)
CLI Install命令行安装
dsh plugin --profile web add @liuhange/dsh-data-asset-shared
把 liuhange789/data-asset-inspector 加入你的 DSH 配置(web profile)即可启用。
READMEREADME
数据资产体检仪·全领域插件矩阵 (Data Asset Inspector Plugin Suite)
📦 29个npm插件 | 🧪 538个测试全部通过 | 📋 覆盖数据资产全生命周期 | 🔒 每个报告含政策依据可审计 | ⭐ 如果对你有帮助,请给个Star!
为什么选择本插件矩阵?
| 对比维度 | DSH官方插件 (10个) | 本插件矩阵 (29个) |
|---|---|---|
| 插件数量 | 10 | 29(+19独有) |
| npm发布 | ❌ 仅GitHub源码 | ✅ 全部已发布 |
| 政务数据巡检 | ❌ 无 | ✅ 五维检测+降级模式 |
| 数据资产估值 | ❌ 无 | ✅ 成本法/收益法/市场法 |
| 合规审查 | ❌ 无 | ✅ 全过程管理试点 |
| AI数据集检查 | ❌ 无 | ✅ 偏见检测 |
| 无凭据降级 | ❌ 无 | ✅ 分类独立运行 |
| 异常输入处理 | ❌ 无 | ✅ 6类异常全覆盖 |
| cordis.patch | ❌ 无 | ✅ 29包均含 |
| 测试覆盖 | 未公开 | 538 tests passed |
基于 DeepSeek Harness (DSH) 的全领域数据资产管理插件矩阵,覆盖"脱敏→清洗→盘点→质量→估值→合规→登记→政务→AI→流通→金融→科研→建筑→管线→测绘"完整业务链路。29个插件全部发布至npm,每个插件嵌入政策依据引用,确保"有理有据、可审计、可追溯"。
全部29个插件列表
基础模块
| 插件 | 包名 | 功能 | 版本 |
|---|---|---|---|
| 共享基础 | @liuhange/dsh-data-asset-shared | 类型定义、配置加载、政策依据引用、文件格式适配 | 3.2.1 |
v1.0 核心处理模块
| 插件 | 包名 | 功能 | 版本 |
|---|---|---|---|
| 数据脱敏 | @liuhange/dsh-data-masking | 敏感字段识别与分级脱敏+FPE/k-匿名/差分隐私 | 3.0.2 |
| 数据清洗 | @liuhange/dsh-data-cleaning | 去重、格式标准化、异常值检测 | 3.0.2 |
| 数据盘点 | @liuhange/dsh-data-inventory | 目录扫描、价值评估、资产清单生成 | 3.0.2 |
| 数据包装 | @liuhange/dsh-data-packaging | 产品说明书生成、合规声明、定价建议 | 3.0.2 |
| 全流程编排 | @liuhange/dsh-data-asset-orchestration | 全量+增量处理模式、Cron调度、垂直链执行 | 3.1.0 |
Showing the opening section of the README — the full document lives in the repository以上为 README 开头摘要,完整文档在仓库内 · View the full README on GitHub →在 GitHub 查看完整 README →
hyhmrright/brooks-lint
SeaOf0/dsh-redteam-model
PerryLink/dsh-auto-review
zhu1090093659/dsh-trading
HsiangNianian/dsh-auto-continue
PerryLink/dsh-mcp-panel