Anchored Standard Enterprise Lint & Schema Guardian

@xiaobright/dsh-anchored-standard · v1.2.0

An enterprise static analysis and regulatory compliance guardrail for DeepSeek Harness. Automates ESLint, Prettier, and SonarQube rule enforcement to ensure pristine agent-generated code.

Quality-GateLinterStatic-AnalysisCompliance
GitHub Stars
38 K+
+12.4% this month
Monthly Downloads
146 K+
Monthly registry pulls
Reach Score
98.6/ 100
Top Tier Ecosystem
Runtime
Cordis v3+
Node 18+ / Bun / Deno

Installation & Integration

CLI one-click launch, package managers, and Cordis integration

bash
manager:
$ pnpm add @xiaobright/dsh-anchored-standard

Architecture

Anchored Standard guarantees that every line of code synthesized by DeepSeek Harness meets strict corporate standards. Autonomous models occasionally introduce unapproved dependencies, violate team formatting rules, or write high-complexity methods. This plugin integrates static analysis quality gates directly into the Cordis commit pipeline. Acting as an uncompromising automated linter, it validates cyclomatic complexity, enforces ESLint and Prettier conventions, and audits open-source licenses to prevent GPL contamination—guaranteeing enterprise-grade code hygiene.

Architectural Principles & Constraints

01
Strict Type Isolation

Guaranteed by TypeScript compile-time contracts, inter-plugin event bus calls enjoy zero-drift safety.

02
Sub-Millisecond Hot Reload

Supports dynamic runtime mounting and graceful unloading without restarting the primary host process.

03
Deterministic State Machine

Embeds multi-phase execution lifecycle guards, preventing context loss during long-horizon reasoning.

04
Zero Native Build Dependencies

Designed for lightweight cross-platform environments, booting instantly across Node.js, Bun, and Deno.

Core Features

01
Strict Quality Gate: Zero-tolerance barrier blocking non-compliant code from committing
02
Open Source License Guard: Shields commercial proprietary software against copyleft contagion
03
Silent Formatting Auto-Fix: Prettier integration fixes formatting without burning extra model tokens
04
Cyclomatic Complexity Ceiling: Prevents agents from generating unmaintainable nested spaghetti logic

Core Workflow

01

Staged Diff Interception

Intercepts staged code diffs before filesystem persistence occurs.

02

Multi-Engine Static Scan

Runs concurrent TypeScript checks, ESLint rules, and complexity scorers.

03

License & Dependency Audit

Scans newly introduced packages against license and CVE vulnerability databases.

04

Auto-Fix & Gate Feedback

Auto-fixes minor styling flaws; halts critical violations with diagnostic guidance.

Configuration Parameters Reference (YAML / JSON)

ParameterTypeDefaultDescription
maxCyclomaticComplexitynumber12Maximum cyclomatic complexity per function
prohibitedLicensesstringGPL-3.0,AGPL-3.0Prohibited copyleft licenses comma-separated
autoFixFormattingbooleantrueAutomatically apply Prettier formatting fixes

Use Cases

Enterprise Production Agent

Relies on microkernel lifecycle guards and fault-tolerant state machines for continuous reliability.

SWE-bench Benchmark Evaluation

Native integration with SWE-bench workflows, automatically capturing diffs and verification metrics.

Autonomous Code Refactoring

Separates reasoning from tool actions to independently locate and refactor multi-file codebases.

Cross-Tool Workflow Automation

Safely orchestrates events across sandboxes to seamlessly link enterprise developer tooling.

Best Practices

01
Sandbox Permission Guard

Strictly isolate sub-process calls and network scope; deploy within Docker containers in production.

02
Exponential Backoff Retries

Configure adaptive exponential retries with strict timeouts to mitigate upstream model rate limits.

03
Session State Checkpointing

Persist state machine snapshots to survive hardware interruptions and resume instantly without loss.

04
Full Trajectory Audit Logs

Enable full trace logging, aggregating reasoning thought streams and tool I/O into your observability hub.

FAQ

Q1:How to handle timeouts in long-running autonomous tasks?

Increase the timeout parameter inside your YAML configuration and dispatch periodic heartbeat signals across the Cordis event bus. For long-running tool execution and model reasoning, configure persistent session snapshotting so suspended tasks can safely resume their exact context after interruptions, preventing the kernel from recycling active agent sessions prematurely.

Q2:How to capture and stream the model reasoning thought process?

The harness runtime natively provides end-to-end streaming hooks while its state machine automatically intercepts and strips <think> reasoning tags from model responses. Subscribe directly to the onThink event listener to consume live reasoning token streams in real-time, delivering typewriter animation to the user interface while persisting full trajectories for audit compliance.

Q3:How to resolve dependency conflicts across multiple plugins?

Cordis microkernel uses directed acyclic graph topological sorting to dynamically resolve plugin dependencies. When shared services or runtime versions conflict, assign distinct isolated namespaces at the application entrypoint. Leveraging context injection alongside lazy activation ensures dependencies load strictly on-demand when tools are triggered, maintaining system stability and preventing memory bloat.

Q4:How to enforce permissions and sandbox isolation in production?

Combine isolated container sandboxing with fine-grained capability checks to prevent plugins from accessing sensitive files or unauthorized external networks. Enforce explicit runtime system call whitelisting through the microkernel, executing all third-party tool scripts inside isolated ephemeral containers to block arbitrary code execution and eliminate security privilege escalation risks entirely.

Recommended Ecosystem Plugins

Explore related Cordis extensions designed to work synergistically