
Research
/Security News
OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.
dsh-opencode-go-dashboard
Advanced tools
OpenCode Go 套餐用量面板:支持多 API Key 与网页 Cookie 账号监控,提供设置页管理面板与对话底栏快捷 5h 环形进度条
DeepSeek Harness (DSH) 插件:OpenCode Go 套餐用量监控与管理面板。
在 DSH Web GUI 中实时展示 OpenCode Go 套餐的 5h 滚动用量 (Rolling) / 7d 每周用量 (Weekly) / 30d 每月用量 (Monthly) 及重置倒计时。
在运行 DSH 的服务器或本机终端执行:
dsh plugin --profile web add dsh-opencode-go-dashboard@latest
安装完成后在浏览器中硬刷新 Web GUI(Ctrl+Shift+R 或 Cmd+Shift+R)即可生效。
直接把下面这段话发给任意一个 DSH 会话:
帮我安装 dsh-opencode-go-dashboard 插件(OpenCode Go 套餐用量监控),步骤:
1. 在终端执行 dsh plugin --profile web add dsh-opencode-go-dashboard@latest
2. 安装成功后提醒我硬刷新浏览器(Ctrl+Shift+R / Cmd+Shift+R)
在本地开发调试时,可通过超级注入器运行时免重启注入:
# 构建
npm run build
# 在 DSH 会话中调用工具注入
dev_inject_plugin {"dir": "/绝对路径/dsh-opencode-go-dashboard"}
sk-... API Key,直连官方 /zen/go/v1/usage API,稳定且精准。同时支持自动发现本机 auth.json 凭证。wrk_xxx) 与 auth Cookie,走 SolidStart server-fn RPC 原生接口查询。~/.dsh/ocgo-usage/state.json,不上传任何第三方服务。打开 DSH Web GUI 设置 -> Go 用量 -> 凭据 选项卡:
sk-... 密钥,填入并保存(可添加多个备注不同的 Key)。auth Cookie(以 Fe26. 开头)与工作区 ID (wrk_...)。FAQs
OpenCode Go 套餐用量面板:支持多 API Key 与网页 Cookie 账号监控,提供设置页管理面板与对话底栏快捷 5h 环形进度条
We found that dsh-opencode-go-dashboard demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Security News
Socket joins more than 100 technology, cybersecurity, and financial organizations calling for a global surge in cyber defense.

Product
Enterprise security teams can now detect malware, credential theft, suspicious network activity, and risky updates across Microsoft Edge extensions.