Solismuchengxue/dsh_plugin_swift_cycle
DeepSeek Harness 的 Swift Cycle 治理技能适配器;用户调用、版本固定且可离线验证。
Project Overview项目介绍
This repository is a DSH-native plugin that acts as an adapter for the Swift Cycle project governance skill. It registers the upstream Swift Cycle payload, which is locked to a specific commit hash, as a user-invokable skill for DeepSeek Harness. Users can install it via the DSH plugin command from either npm or GitHub, and must specify a fixed version or full commit hash to get a reproducible installation. The skill can only be triggered by a user explicitly entering the /swift-cycle command, and it does not support implicit invocation by the model. The plugin follows all DSH native plugin registration rules, and sets the correct invocation flags for user-only access.
Swift Cycle includes 14 distinct project governance capabilities, ranging from knowledge promotion, state separation, and governance baseline building to commit boundary planning and persistent adoption. It is built for development teams and project maintainers that need standardized project governance, structured document architecture management, and semantic documentation practices. When a user invokes the skill, it provides standardized governance guidance for both new and existing projects, helping align team practices and maintain consistent, traceable project assets. It also helps teams avoid inconsistent naming, duplicate information sources, and unstructured project documentation that can slow down development over time.
To run local validation checks on this plugin, you need Node.js 20 or higher installed on your system. The plugin has no runtime dependencies, and it does not require any installation lifecycle scripts to run. Users can run built-in test scripts to verify upstream integrity and dry-run packaging before installation. The current public version 0.1.4 has passed source code integrity checks and distribution identity verification, but it has not yet been validated in an isolated DSH runtime or a real user profile. The project is open source under the MIT license, and all validation evidence is stored in the docs/evidence directory of the repository.
这是专门为 DeepSeek Harness 开发的原生插件,是 Swift Cycle 项目治理技能的 DSH 适配器。它将锁定到上游精确 commit 的 Swift Cycle 载荷注册为仅支持用户显式调用的 Harness 技能,用户可通过 DSH 插件命令从 npm 或 GitHub 安装,需指定固定版本或 commit hash 以实现可重放安装,调用方式为用户输入 /swift-cycle 命令,不支持模型隐式调用。
它提供知识沉淀、状态分离、治理基线建立、提交边界规划、持久化采纳等共 14 项项目治理能力,面向需要标准化项目治理、文档架构管理和语义化文档的开发团队与项目维护者。用户通过显式调用来获取新建或现有项目的标准化治理指导,帮助统一团队实践,维护一致的项目资产结构,提升项目治理的可追溯性和规范性。
它需要 Node.js 20 及以上版本才能运行本地验证,本身无运行时依赖,也不需要执行安装生命周期脚本。当前 0.1.4 版本已通过源码完整性校验和分发身份验证,尚未在隔离运行时和真实用户配置文件中完成验证。该项目基于 MIT 许可证开源,所有完整的验证记录都存储在仓库的 docs/evidence 目录下。
请帮我安装这个 DSH 插件。安装前先完成【兼容性检查 + 安全性检查】,检查通过再动手。
插件:dsh_plugin_swift_cycle(Solismuchengxue/dsh_plugin_swift_cycle)
仓库:https://github.com/Solismuchengxue/dsh_plugin_swift_cycle
本站详情页:https://www.yhbd.top/plugins/solismuchengxue-dsh-plugin-swift-cycle/
本站登记:类型 plugin · 归类 原生 DSH 插件 · 许可证 MIT · ⭐ 15 · 最近提交 2026-08-31 · 主语言 JavaScript
按下面顺序执行,每步先把结论告诉我,再进入下一步:
【1 兼容性检查】
① 我这边:DSH 版本、Node 版本、操作系统、当前 profile(web / desktop)。
② 读它的 README、package.json、插件 manifest,列出它要求的 DSH 版本 / Node 版本 / 操作系统 / 外部依赖 / 需要另外先装的运行时。
③ 逐条比对,结论只写「满足 / 不满足 / 未知」三种;不满足的给出可行替代方案。
④ 检查是否和我已装的插件冲突:命令名重复、skill / tool 重名、端口占用、重复注册的 MCP server。
【2 安全性检查】
① 仓库可信度:和上面「本站登记」是否一致;star / fork 数、创建时间、最近提交,是否归档或长期停更。
② 安装脚本:逐行看 package.json 的 preinstall / install / postinstall,以及 install.sh、setup.ps1 之类脚本。出现 curl|bash、下载后直接执行、混淆代码、访问与插件功能无关的域名,立刻停下来告诉我,不要继续装。
③ 依赖:列出新增依赖,标出无人维护、或与知名包拼写近似的可疑包(typosquatting)。
④ 权限与副作用:它会读写哪些目录、访问哪些域名、需要哪些 DSH 权限(filesystem / network / shell / clipboard 等),以及怎么卸载和回滚。
⑤ 如果它要求 sudo / 管理员权限,或权限明显超出功能所需,先停下来问我。
【3 安装】
上面两步没有「不满足」和「高危项」时才执行;用官方推荐方式安装,不要自行提权。
【4 汇报】
用表格输出:检查项 / 结论 / 依据 / 是否需要我决策。拿不准的一律写「未知」并说明要我怎么确认——不要猜,也不要替我决定。
Send this message to DSH in your current session: it verifies compatibility and security first (answering met / not met / unknown item by item) and only installs once everything checks out — it will stop and ask you if it finds a high-risk item. The box scrolls; the copy is the full prompt. CLI install commands may not be accurate across systems, so DSH is the safer route.把上面这条消息直接发给当前会话里的 DSH:它会先核对兼容性与安全性(逐条给「满足 / 不满足 / 未知」),确认没问题再安装,有高危项会停下来问你。框内可滚动,复制到的是完整提示词;安装命令不一定准确,发给 DSH 更稳。
- 15 stars - an early-stage project星标 15,属于早期项目
DSH walks through these 9 checksDSH 会逐条核对这 9 项
Compatibility兼容性
- DSH, Node, OS and profile requirementsDSH 版本 / Node 版本 / 操作系统 / profile 是否满足要求
- External dependencies and runtimes (Electron / Python / Docker, ...)外部依赖与运行时(Electron / Python / Docker 等)是否齐备
- Conflicts with installed plugins: command names, skill / tool names, ports, duplicate MCP registration与已装插件是否冲突:命令名、skill / tool 重名、端口占用、重复 MCP 注册
Security安全性
- Repo matches the facts registered here; archived or abandoned?仓库是否与页面登记一致,是否归档或长期停更
- Safety of preinstall / install / postinstall and install.sh / setup.ps1preinstall / install / postinstall 与 install.sh、setup.ps1 是否安全
- curl|bash, download-then-execute, obfuscation, unrelated domains → stop immediatelycurl|bash、下载即执行、混淆代码、无关域名 → 立刻停止
- Typosquatting or unmaintained packages among the new dependencies新增依赖里有没有 typosquatting 或无人维护的包
- Requested permissions vs. what the feature actually needs申请了哪些权限、是否超出功能所需(filesystem / network / shell / clipboard)
- Any sudo / admin requirement, plus uninstall and rollback是否要求 sudo / 管理员权限,以及卸载与回滚方式
Anything uncertain must be marked unknown with a note on how to confirm it. This site's signal screen is a static snapshot, not a security audit.拿不准的必须标「未知」并说明要我怎么确认。本站的信号筛查是静态快照,不能替代安全审计。
Or use CLI install (for developers)或使用命令行安装(适合开发者)
CLI Install命令行安装
dsh plugin --profile web add dsh-plugin-swift-cycle
把 Solismuchengxue/dsh_plugin_swift_cycle 加入你的 DSH 配置(web profile)即可启用。
READMEREADME
Swift Cycle for DeepSeek Harness
这是 Swift Cycle 的 DeepSeek Harness 适配器。它把锁定到精确上游 commit 的 Swift Cycle 载荷注册为只能由用户显式调用的 Harness Skill。
当前状态
- 适配器版本:
0.1.4(已发布) - 上游 tag:
v1.3.1 - 上游 commit:
21de521237470bdd55f9b4b0c61e0b6246c02cb8 - 上游整体 SHA-256:
7cb1bcf09afb23db310e3da01de88dda6521321dc45919b05a25f2ab9f381cf4 - 本地源码验证:
0.1.4候选已通过 18/18 自动化测试和显式上游 checkout 比对 - 候选制品预检:
0.1.4候选已通过 20 个上游载荷文件、26 个包文件的 dry-run 合同和临时解包后完整性验证 - 分发状态:GitHub
v0.1.4与 npm0.1.4已发布;v0.1.0至v0.1.3保留为历史版本 - Harness Runtime 兼容性:历史固定版本已通过隔离验证、GitHub 固定 commit 安装验证,以及
0.1.0-rc.6真实 Web profile 中 GitHubv0.1.0与 npm0.1.1的只读显式调用烟测;0.1.4候选未安装到任何 Harness Runtime
0.1.4 已证明源码、候选制品、GitHub 与 npm 分发身份;隔离 Runtime、真实 profile 和 consumer 仍未验证。既有 Runtime 与真实 Web consumer 结论只覆盖各自记录的 0.1.0/0.1.1 身份,不自动转移到新版本。
包含的 Swift Cycle 能力
- Knowledge Promotion:把长期共享事实从本地记录晋升到适当的 Git 管理资产。
- State Separation:拆分彼此独立的工程、实验、质量和发布结论。
- Governance Baseline:复杂治理开始前记录可比较的当前基线。
- Commit Boundary Planning:为多提交工作预先划分单一意图和验证边界。
- Source/Runtime Boundary:分别验证源码、制品、运行态和实际消费者。
- Persistent Adoption:一次显式采用后由项目
AGENTS.md持久绑定,后续阶段判断与文档维护在后台完成。 - Background Routing:自动区分接管、普通推进、重大结构变化和里程碑关闭,不要求用户选择模式。
- Document Profiles:按需使用
minimal、standard或runtime_integration,并维护profile_conformance,不强制固定目录树。 - Document Information Architecture:按可发现性决定 DESIGN、docs home、职责目录和用途/受众索引,不复制第二套真源。
- Project Intent Baseline:新项目在实质实施前建立
docs/blueprint.md,旧项目复用完整等价权威,不形成第二真源。 - Docs Naming:新建 docs Markdown 文件和多单词目录使用小写 snake_case;遗留命名只在独立 documentation-hygiene 工作包中迁移。
- Language Adaptation:普通内容服从调用者、项目和文件主语言,精确技术标识保持原文。
- Semantic Visualization:先理解读者问题与项目事实,再自主选择短文、表格或 Mermaid,并审查语义、可读性、项目语言、权限与边界。
- Freshness and Packet Lifecycle:对齐过期事实并冻结、替代或退役 Review/Closeout Packet。
- Reusable Failure Learning:只把已确认且可复用的失败防线晋升为共享规则。
完整治理规则以锁定的上游 SKILL.md 为准;本 README 不复制 Skill 正文。
调用策略
适配器向 Harness 注册:
name = swift-cycle
modelInvocable = false
userInvocable = true
Swift Cycle 不进入模型可隐式选择的 Skill 目录。用户需要显式输入:
/swift-cycle
安装
日常安装使用 npm latest;当前公开版本为 0.1.4:
dsh plugin --profile web add dsh-plugin-swift-cycle
Showing the opening section of the README — the full document lives in the repository以上为 README 开头摘要,完整文档在仓库内 · View the full README on GitHub →在 GitHub 查看完整 README →
titanwings/distilly
YuJunZhiXue/dsh-purge
Clearailhc/clearai-dsh
yejiming/MuseAI
superdesigndev/superdesign-skill
Miaotofu01/Study-Mate