Plugin directory / Developer / dsh-policy-test
dsh-policy-test
Unverified MkaliezZ
What it does
Deterministic regression tests for DSH policy decisions, evaluated without invoking the protected tool body.
Unverified — not yet verified
Deterministic regression tests for DSH policy decisions, evaluated without invoking the protected tool body. Not yet verified — install and test it yourself.
“Unverified” means our automated CI has not yet installed this plugin. Feature descriptions and version compatibility are the author’s claims. This is not a security audit and not an endorsement of third-party code.
README
dsh-policy-test
Deterministic regression tests for DSH policy decisions.
v0.1 evaluates policy fixtures without calling the protected tool body. It is intended for AgentFuse-style and other DSH pre-dispatch policies where configuration drift can silently turn an expected BLOCK into ASK/ALLOW.
Fixture cases carry tool, args, and expected decision. The runner returns pass/fail results and never dispatches the underlying tool implementation.
AgentFuse integration (the closed loop)
The evaluator adapter plugs directly into@agentfuse/core — the
engine behind the dsh-agentfuse pre-dispatch gate. Compile the samePolicyConfig the production gate compiles, and the fixture table becomes a
regression lock on the production decision table: policy drift (e.g. a
default silently flipped to allow) turns red instead of turning into an
unexpected ALLOW.
See examples/agentfuse/ for the adapter,
fixtures, and a drift-detection test.
Non-claims
- no physical tool execution in test mode;
- not a sandbox;
- policy adapters must be supplied explicitly;
- passing fixtures do not prove production configuration is identical unless that configuration is what the adapter evaluates.
Development
npm install
npm test
MIT
Install
Install the catalog once, then DeepSeek Harness can find and install any plugin from this site automatically:
dsh plugin add dshbase-catalog Then say "install dsh-policy-test for me" — your agent finds it in the directory and installs it. Docs: dshbase-catalog · verified packs.
This plugin is GitHub source (not published to npm) — install it straight from the repo:
Web profile:
dsh plugin --profile web add github:MkaliezZ/dsh-policy-test Headless (CLI) profile:
dsh plugin --profile headless add github:MkaliezZ/dsh-policy-test Test report
Not yet L3-verified — see failure note below if we already ran it.