zhangzujian/dsh-subprocess-inherit-environment

DSH plugin that forwards the complete Harness environment through ctx.subprocess

A removable DSH plugin that forwards the Harness process's complete environment through the ctx.subprocess service — wrapping resolveExecutable, spawn, and spawnTerminal with an explicit environment layer built from process.env. DSH normally scrubs KEY/PASSWORD/SECRET/TOKEN/DSH_* names from subprocess environments; this plugin restores them, so model-generated commands, repo scripts, package installers, CLIs, MCP servers, and terminal programs can read them. Caller-provided entries merge after a fresh process.env spread; explicit overrides and undefined tombstones keep their meaning; disposal restores the original descriptors; double installation on the same runtime is rejected.

Other ★ 2 updated 2026-08-15 ✅ runtime-tested
View on GitHub ↗

Install

git clone https://github.com/zhangzujian/dsh-subprocess-inherit-environment.git && cd dsh-subprocess-inherit-environment && npx @deepseek-ai/dsh@0.1.0-rc.6 plugin --profile web add "$PWD"

Until published to npm, clone and add the local directory (the package declares a DSH bundle, so dsh plugin auto-adds its patch layer). Restart DSH if the profile doesn't hot-reload server plugins. Remove: npx @deepseek-ai/dsh@0.1.0-rc.6 plugin --profile web remove @zhangzujian/dsh-subprocess-inherit-environment. Security warning: this plugin disables DSH's subprocess credential isolation — do not install on shared or untrusted deployments; prefer a dedicated tool or an exact allowlist.

Compatibility

DSH 0.1.0-rc.6 profile bundle. Deliberately forwards the Harness process's complete environment through ctx.subprocess.

Details

Recent updates

forwards full process.env through ctx.subprocess; wraps resolveExecutable/spawn/spawnTerminal; safe apply/dispose with rollback; single-install guard.

FAQ

Is this safe?
It deliberately disables DSH's subprocess credential isolation — only install on trusted single-user deployments; prefer an exact allowlist otherwise.
What does it wrap?
The three ctx.subprocess operations: resolveExecutable, spawn, and spawnTerminal.
How do I remove it?
Run the remove command for @zhangzujian/dsh-subprocess-inherit-environment — disposal restores DSH's default credential scrub.

Alternatives

zbc-s-studio-cr-cn-dsh-skill-manager · safe-find-dsh-plugins · LeslieWylie/dsh-ops-kit

More plugins in Other

Browse more in Other

Guides for Other plugins