← all reports

npm:dshmarket@1.66.8

dsh-verified: verified — npm:dshmarket@1.66.8. Verification is not a security audit and not an endorsement. It records what was executed and observed on one machine at one time. Historical method limitation: this execution had network access and published container paths and replay fixture text. dsh plugin dsh plugin verified verified

Stale. the latest tag points at 1.66.9, while this report covers 1.66.8

Method limitation. This historical execution used a container with network access and published container paths and replay fixture text. The no-egress and redaction conditions were not met. See the security incident.

sha512-zOYCijI/du6qlcmUbx47aaUv6OM7Z/akIQ8n3f9Q2ihtV3U3sbRI5nG0guS+8npsb/vhA2turyEf9Yblg6LweQ==

Subject

namedshmarket
version1.66.8
integritysha512-zOYCijI/du6qlcmUbx47aaUv6OM7Z/akIQ8n3f9Q2ihtV3U3sbRI5nG0guS+8npsb/vhA2turyEf9Yblg6LweQ==
repositorygit+https://github.com/dsh-market/dsh-market.git
declared bundle patch"./cordis.patch.yml"
declared engines.dshnot declared — declarative and unenforced

Environment

DSH0.2.0-rc.2
Nodev24.21.0
OS / archlinux 6.17.0-1022-azure x64
verifierdsh-verified 0.1.0 ec8d77c8d74d
generated2026-10-03T16:09:04.793Z

Dimensions

statussummaryevidence
L0 pass declares dsh.bundle.patch and every declared patch path exists (177 files, 4254946 bytes unpacked)

dsh.manifestVersion is not declared; the reader does not infer a default

metrics
{
  "fileCount": 177,
  "unpackedBytes": 4254946,
  "patchPaths": [
    "./cordis.patch.yml"
  ],
  "declaredEnginesDsh": null,
  "shipsSource": true
}
e-resolve, e-tarball, e-l0
L1 pass installed

the CLI completed the install with exit code 0

no dependency build script was approved by the verifier; approval permits commands with the host user permissions

metrics
{
  "durationMs": 2089,
  "exitCode": 0,
  "declaredPeers": null,
  "bundlesAfterInstall": [
    "@deepseek-ai/dsh-base",
    "dshmarket"
  ],
  "pendingBuildScripts": [],
  "buildScriptsApproved": 0,
  "diagnosticsLog": null
}
e-l1-install
L2 pass booted, mounted and stayed alive

the process was still running when the wall-clock bound reached it and reported no failure diagnostics, so the bundle was neither skipped nor rejected

the fiber phase is not read directly: an early exit with diagnostics is the load-failure signal, and a boot that settles and waits is the success signal

metrics
{
  "bootBoundMs": 25000,
  "durationMs": 25068,
  "signal": null
}
e-l2-boot
L3 pass a session completed with no credential

the model call was served by the official replay adapter from a fixture authored in this repository; no provider was contacted and no credential was present

probe task, stated verbatim: "reply with any text"

metrics
{
  "replayAdapter": "@deepseek-ai/dsh-llm-replay@0.2.0-rc.2",
  "probeTask": "reply with any text",
  "events": {
    "session": "session-d4fa65d7-c21b-4ce2-b379-12ec3d9bcbdd",
    "turnEndReason": {
      "kind": "completed"
    },
    "finalText": "Replay fixture: no provider was called.",
    "textEventCount": 1,
    "error": null,
    "exitCode": 0,
    "durationMs": 1336,
    "eventCount": 7
  }
}
e-l3-session
L4 pass 5 capability signal(s) present across 168 scanned file(s)

the package ships build output; code inside a bundle cannot be reliably attributed to the author or to an inlined dependency

static analysis cannot see dynamically constructed code or prove intent

metrics
{
  "scannedFiles": 168,
  "scannedBytes": 4114559,
  "skippedFiles": 0
}
e-l4, e-patch
L5 pass no significant delta across 6 sampled run(s)

no metric moved beyond the significance thresholds; that is the finding

differential attribution: baseline profile first, then the subject activated, same container and order

thresholds are coarse on purpose — order-of-magnitude watcher changes, RSS growth beyond 100 MiB, steady state more than 2 s later

metrics
{
  "samples": 6,
  "baseline": {
    "atMs": 8039,
    "rss": 199290880,
    "heapUsed": 68592552,
    "external": 5188103,
    "activeTotal": 10,
    "watchers": 7,
    "timers": 0,
    "libuvHandles": 22,
    "libuvActiveHandles": 17,
    "fds": 20
  },
  "activated": {
    "atMs": 8038,
    "rss": 207007744,
    "heapUsed": 62334824,
    "external": 4381984,
    "activeTotal": 11,
    "watchers": 8,
    "timers": 0,
    "libuvHandles": 23,
    "libuvActiveHandles": 18,
    "fds": 20
  },
  "delta": {
    "atMs": -1,
    "rss": 7716864,
    "heapUsed": -6257728,
    "external": -806119,
    "activeTotal": 1,
    "watchers": 1,
    "timers": 0,
    "libuvHandles": 1,
    "libuvActiveHandles": 1,
    "fds": 0
  }
}
e-l5-overhead
L6 pass removed without residue

the profile retains no bundle selection, dependency entry or files for the subject

metrics
{
  "residue": [],
  "durationMs": 265
}
e-l6-remove

Capability (L4, static)

capabilityconfidenceattributionfirst evidence
listens_on_porthighauthor-sourcepackage/src/recovery.ts:889
network_egressmediumauthor-sourcepackage/src/client/market-data.ts:1285
spawns_processhighauthor-sourcepackage/src/dsh-cli.ts:10
watches_filesystemhighauthor-sourcepackage/src/settings.ts:212
writes_outside_workspacelowauthor-sourcepackage/src/dsh-cli.ts:186

Capability is not intent. A signature records what the code can reach for, not what it does.

Overhead (L5, dynamic)

{
  "status": "no-significant-delta",
  "samples": 6,
  "baseline": {
    "atMs": 8039,
    "rss": 199290880,
    "heapUsed": 68592552,
    "external": 5188103,
    "activeTotal": 10,
    "watchers": 7,
    "timers": 0,
    "libuvHandles": 22,
    "libuvActiveHandles": 17,
    "fds": 20
  },
  "activated": {
    "atMs": 8038,
    "rss": 207007744,
    "heapUsed": 62334824,
    "external": 4381984,
    "activeTotal": 11,
    "watchers": 8,
    "timers": 0,
    "libuvHandles": 23,
    "libuvActiveHandles": 18,
    "fds": 20
  },
  "delta": {
    "atMs": -1,
    "rss": 7716864,
    "heapUsed": -6257728,
    "external": -806119,
    "activeTotal": 1,
    "watchers": 1,
    "timers": 0,
    "libuvHandles": 1,
    "libuvActiveHandles": 1,
    "fds": 0
  },
  "significant": []
}

Evidence

idkindartifact
e-resolve command exit 0 207 ms resolve dshmarket@1.66.8 -> dshmarket@1.66.8
{
  "name": "dshmarket",
  "version": "1.66.8",
  "registry": "https://registry.npmjs.org",
  "tarball": "https://registry.npmjs.org/dshmarket/-/dshmarket-1.66.8.tgz",
  "advertisedIntegrity": "sha512-zOYCijI/du6qlcmUbx47aaUv6OM7Z/akIQ8n3f9Q2ihtV3U3sbRI5nG0guS+8npsb/vhA2turyEf9Yblg6LweQ==",
  "publishedAt": "2026-10-01T16:34:32.081Z"
}
e-tarball artifact exit 0 58 ms fetch https://registry.npmjs.org/dshmarket/-/dshmarket-1.66.8.tgz
{
  "bytes": 1151091,
  "resolvedIntegrity": "sha512-zOYCijI/du6qlcmUbx47aaUv6OM7Z/akIQ8n3f9Q2ihtV3U3sbRI5nG0guS+8npsb/vhA2turyEf9Yblg6LweQ==",
  "advertisedIntegrity": "sha512-zOYCijI/du6qlcmUbx47aaUv6OM7Z/akIQ8n3f9Q2ihtV3U3sbRI5nG0guS+8npsb/vhA2turyEf9Yblg6LweQ==",
  "integrityMatchesRegistry": true,
  "sha256": "b2b94cb2c8533a152a5fe93c7f79ec320ec8a241e74d1852ce294f9549588236"
}
e-l0 static read published package.json and verify declared dsh.bundle.patch paths exist
{
  "status": "pass",
  "reasons": [],
  "declared": {
    "manifestVersion": null,
    "bundlePatch": [
      "./cordis.patch.yml"
    ],
    "clientPlatform": "web",
    "enginesDsh": null,
    "enginesNode": null
  },
  "missingPatchPaths": [],
  "fileCount": 177,
  "unpackedBytes": 4254946,
  "shipsSource": true
}
e-patch static read cordis.patch.yml
# dsh bundle patch: inserts this plugin into a profile's layer stack.
- insert:
    - id: dsh-market
      name: 'dshmarket'
e-l4 static scan 168 shipped source file(s) for capability signatures
{
  "present": [
    {
      "id": "listens_on_port",
      "confidence": "high",
      "attribution": "author-source",
      "firstEvidence": {
        "file": "package/src/recovery.ts",
        "line": 889,
        "snippet": "const server = createServer((request, response) => {"
      }
    },
    {
      "id": "network_egress",
      "confidence": "medium",
      "attribution": "author-source",
      "firstEvidence": {
        "file": "package/src/client/market-data.ts",
        "line": 1285,
        "snippet": "const res = await fetch(candidate.url, { signal: controller.signal })"
      }
    },
    {
      "id": "spawns_process",
      "confidence": "high",
      "attribution": "author-source",
      "firstEvidence": {
        "file": "package/src/dsh-cli.ts",
        "line": 10,
        "snippet": "import { spawn, spawnSync } from 'node:child_process'"
      }
    },
    {
      "id": "watches_filesystem",
      "confidence": "high",
      "attribution": "author-source",
      "firstEvidence": {
        "file": "package/src/settings.ts",
        "line": 212,
        "snippet": "scope.watch(apply)"
      }
    },
    {
      "id": "writes_outside_workspace",
      "confidence": "low",
      "attribution": "author-source",
      "firstEvidence": {
        "file": "package/src/dsh-cli.ts",
        "line": 186,
        "snippet": "dirs.push('/opt/homebrew/bin', '/usr/local/bin', join(home, '.local', 'bin'))"
      }
    }
  ],
  "scannedFiles": 168,
  "skippedFiles": 0,
  "limits": [
    "the package ships build output; code inside a bundle cannot be reliably attributed to the author or to an inlined dependency",
    "static analysis cannot see dynamically constructed code or prove intent"
  ]
}
e-l1-install command exit 0 2089 ms dsh plugin --profile verify add dshmarket@1.66.8
Progress: resolved 0, reused 0, downloaded 1, added 0
Packages are hard linked from the content-addressable store to the virtual store.
  Content-addressable store is at: /home/verifier/.local/share/pnpm/store/v11
  Virtual store is at:             node_modules/.pnpm
Packages: +4
++++
Progress: resolved 4, reused 0, downloaded 4, added 4, done
[WARN] Issues with peer dependencies found. Run "pnpm peers check" to list them.

dependencies:
+ dshmarket 1.66.8

Done in 307ms using pnpm v12.8.1
dsh: initialized profile verify at /work/dsh-home/profiles/verify
e-l2-boot command exit 0 25068 ms dsh --profile verify
e-l6-remove command exit 0 265 ms dsh plugin --profile verify remove dshmarket
Packages: -4
----

dependencies:
- dshmarket 1.66.8

Done in 13ms using pnpm v12.8.1
e-l5-overhead sample dsh --profile <baseline|activated> with the host sampler injected via NODE_OPTIONS=--import
{
  "method": "differential",
  "status": "no-significant-delta",
  "samples": 6,
  "baselineMedian": {
    "atMs": 8039,
    "rss": 199290880,
    "heapUsed": 68592552,
    "external": 5188103,
    "activeTotal": 10,
    "watchers": 7,
    "timers": 0,
    "libuvHandles": 22,
    "libuvActiveHandles": 17,
    "fds": 20
  },
  "activatedMedian": {
    "atMs": 8038,
    "rss": 207007744,
    "heapUsed": 62334824,
    "external": 4381984,
    "activeTotal": 11,
    "watchers": 8,
    "timers": 0,
    "libuvHandles": 23,
    "libuvActiveHandles": 18,
    "fds": 20
  },
  "delta": {
    "atMs": -1,
    "rss": 7716864,
    "heapUsed": -6257728,
    "external": -806119,
    "activeTotal": 1,
    "watchers": 1,
    "timers": 0,
    "libuvHandles": 1,
    "libuvActiveHandles": 1,
    "fds": 0
  },
  "significant": []
}
e-l3-session command exit 0 1336 ms dsh --profile l3 --patch /work/fixtures/replay/l3-overlay.yml --json reply with any text
{"type":"session","sessionId":"session-d4fa65d7-c21b-4ce2-b379-12ec3d9bcbdd","cwd":"/work"}
{"type":"status","phase":"turn_start","turn":1}
{"type":"status","phase":"step_start","turn":1,"step":1}
{"type":"text","text":"Replay fixture: no provider was called."}
{"type":"status","phase":"step_end","turn":1,"step":1}
{"type":"status","phase":"turn_end","turn":1,"reason":{"kind":"completed"}}
{"type":"final","text":"Replay fixture: no provider was called."}

Limits

Disclaimers

raw report JSON · badge · dispute this report