Qinling-Melon-Farmers/dsh-memoir| 认证等级 | L2 |
| 验证状态 | self-declared(单方声明,待独立验证) |
| 验证方法 | 未登记 structured verifiedBy |
| 运行级实测 | 未做运行级实测 |
| 内容锚 | git commit c6c1b3e0a3ad · Qinling-Melon-Farmers/dsh-memoir · git ls-remote / clone 复现可对账 |
| DID | did:cha2a:package:Qinling-Melon-Farmers/dsh-memoir |
| 身份锚点 | npm 未声明 GitHub 仓库——装前请自行核验来源 |
| 来源 | git |
| 插件版本 | — |
| 安装 | dsh plugin add github:Qinling-Melon-Farmers/dsh-memoir |
| 扫描日期 | 2026-08-27(36 天前) |
| 扫描层级 | 静态扫描(自研规则 + GuardDog 复核 + OSV 依赖) |
| 扫描器版本 | dshlib-scan v0.1 · GuardDog 3.2.0 · OSV.dev |
自研扫描:⚠️ 待审 · GuardDog 复核:未扫描 · OSV 依赖:未扫描
True
{'excessive_permissions': [{'file': 'dsh-memoir-main/lib/store.js', 'line': 168, 'match': 'exec(', 'label': '命令执行'}, {'file': 'dsh-memoir-main/src/host/store.ts', 'line': 277, 'match': 'exec(', 'label': '命令执行'}], 'hardcoded_secrets': [{'file': 'dsh-memoir-main/test/retrieval.test.ts', 'line': 28, 'match': "token: ' + expected)\n }\n assert.ok(!tokens.includes('", 'label': '明文凭据'}, {'file': 'dsh-memoir-main/test/session-repair.test.ts', 'line': 29, 'match': "secret = 'SENSITIVE-CONTENT-AND-API-KEY-DO-NOT-PRINT'", 'label': '明文凭据'}]}git-refresh
main
未复核。
未查询。