Skip to main content
Glama
dongsheng123132

dsh-schema-migration-proof

DSH Schema Migration Proof

针对已记录的 DeepSeek Harness 模式迁移的离线、内容寻址证据。它验证固定夹具封装,用于输出确定性、幂等重跑、可逆回滚、必需不变量以及显式有损字段披露,而无需执行迁移或返回数据主体。

这不是一个迁移运行器、数据库工具、恢复系统或又一个表面契约验证器。dsh-recovery-proof 测试隔离的恢复演练;dsh-surface-contract-proof 比较 ToolRuntime/MCP/CLI 封装;dsh-lineage 记录对象/动作关系。本项目对迁移测试框架所产生的证据进行评分,该框架的工具修订版本和源/目标模式均已固定。

清单仅包含稳定 ID 和 SHA-256 摘要。body 形态、data 形态、payload 形态、secret 形态、credential 形态、prompt 形态和 message 形态的字段均被拒绝。必需不变量一旦缺失、失败或未被观察到,即失败关闭(fail closed)。可逆迁移必须证明回滚,而有损夹具必须逐一列举所有已披露的损失字段。

接口

  • DSH:dsh_schema_migration_inspect、dsh_schema_migration_verify。

  • CLI:dsh-schema-migration-proof verify --workspace-root examples --migration migration.json --artifact-dir artifacts。

  • MCP:schema_migration_inspect_inline、schema_migration_verify_inline;仅限有界内联 JSON,不涉及文件系统、网络、子进程或迁移执行。

dsh plugin --profile web add github:dongsheng123132/dsh-schema-migration-proof
npm test
npm run check
npm run smoke:plugin
npm run smoke:mcp

MIT

Related MCP Connectors

Related MCP Servers

  • A
    license
    Not graded
    quality
    C
    maintenance
    Enables offline, deterministic verification that one immutable artifact followed a declared build-to-production promotion chain, using only hash-based evidence and failing closed on incomplete or nonconformant gate records.
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    Offers proof-only tools to inspect and verify remediation closure receipts, deterministically confirming asset coverage, fixed artifact deployment, rescanning, deadline compliance, and zero-residual closure without executing scans or touching live systems.
    MIT
  • A
    license
    Not graded
    quality
    B
    maintenance
    Enables local inspection of AI model deployment artifacts without executing model code, returning SHA-256, structure, defect analysis, and evidence-gap findings in Gemini CLI conversations.
    Apache 2.0
  • A
    license
    A
    quality
    B
    maintenance
    Lets an assistant read recorded production AI agent runs — steps, model and tool calls with arguments, and outcomes — along with the findings of comparison runs that checked a prompt or model change against those recordings, and verify a signed evidence bundle offline with no account or network. It is strictly read-only: no tool starts a replay or comparison, so nothing can spend money or act without a person deciding.
    5
    3,236 PyPI
    Apache 2.0