GitHub · 核心生态

upstream-radar

MicroMilo · plugin · related signal

Open source

面向 DSH 插件的常驻依赖安全监控:追踪实际安装路径、OSV 漏洞、npm 发布和破坏性更新信号,再把项目证据交给 DSH Agent。

SOURCE-DECLARED INSTALL

dsh plugin --profile web add upstream-radar

Source-declared command. Review the package and Registry Listing before running it.

MEDIA REFERENCES

Captured in public view

Local and external references · rights noted

REGISTRY LISTINGS

Source-attributed install evidence

Registry sourceInstall specVersionVerification claimObservedRaw snapshot
zoahdev/dsh-subscribe · registry.jsonupstream-radar
npm
source does not claim verified2026-08-16 → 2026-08-16962
awesome-dsh-plugin/awesome-dsh-plugin · https://awesome-dsh-plugin.com/plugins.jsonupstream-radar
npm
unreported2026-08-15 → 2026-08-16962
dsh-market/dsh-market · data/registry-snapshot.jsonupstream-radar
npm
unreported2026-08-16 → 2026-08-16962

Verification is a claim made by the named Registry Source; it is not a security, compatibility, quality, or official-endorsement claim by this site.

CONTEXT

Why it is here

面向 DSH 插件的常驻依赖安全监控:追踪实际安装路径、OSV 漏洞、npm 发布和破坏性更新信号,再把项目证据交给 DSH Agent。

Evidence updated 2026-08-16T09:56:16Z. Interaction numbers are platform-native snapshots; the evidence panel records the metric source and observation time. NULL means the public page did not expose a number at collection time.