DSH Market
I

Ikanban

by isomoes · isomoes/ikanban

Needs allowlistBundlegit + preparefreshinstall scripts

iKanban 是一个由 OpenCode 驱动的多智能体(multi-agent)编码工作空间。它专为跨项目地驱动、审查和协调并行的智能体工作而构建,将会话管理、差异(diff)审查以及项目感知的导航集于一处。iKanban is a Web interface for the OpenCode AI coding agent. It unifies chat, terminal, and board workflows in a single interface so teams can plan, execute, and track coding tasks.

Install Ikanban

Installs from git, but pnpm >=10 will refuse until you add an `allowBuilds` entry in your profile's pnpm-workspace.yaml. That grants this package permission to execute code on your machine at install time, outside the agent sandbox — pin a commit (github:owner/repo#sha) before allowing it.

The one-line version

dsh plugin --profile my-profile add github:isomoes/ikanban

This one needs an explicit build approval before it works

Installed from git, this package builds itself with a prepare script. pnpm 10 refuses to run that script until you list the package in pnpm-workspace.yaml. Adding it means you are allowing this package's code to run on your machine, outside the agent sandbox, at install time. The first install prints an allowBuilds hint and fails — that is expected, add the entry and retry.

1. allow the build in pnpm-workspace.yaml

onlyBuiltDependencies:
  - @isomoes/dsh-ikanban

2. install, pinning a commit so the code you approved is the code you get

# 1. add the bundle to a profile — --profile my-profile points at $DSH_HOME/profiles/my-profile
dsh plugin --profile my-profile add github:isomoes/ikanban#<commit-sha>

# 2. verify: the bundle should show up as a layer in the resolved config
dsh --profile my-profile --dump-config

# 3. boot the profile
dsh --profile my-profile

Before you run itinstall scripts

  • This package declares prepare — package-manager lifecycle scripts that execute on your machine at install time, outside the agent sandbox, before any tool-approval prompt exists.
  • A plugin runs with your permissions once loaded: it can read your files, use your credentials and reach the network. Tool approvals do not sandbox it.
  • Installing from git resolves a moving branch. Pin a commit — github:isomoes/ikanban#<commit-sha> — so the code you reviewed is the code you install.

Prerequisites

API key
Not required.
Network access
Not required at runtime.
Build approval
Required — the package must be listed in pnpm-workspace.yaml before it will build.
Language
TypeScript — a git install pulls this source, not build output.

Install check

Every field the verdict was derived from, so you can re-derive it yourself

Field checkedResultWeightWhat the spec says about it
lifecycleScriptsfailwarnruns at install time, outside the agent sandbox: prepare
dsh.bundlepassfatalpackage.json declares a `dsh.bundle` layer
dsh.bundle.patch filepassfatalpatch file present at `packages/ikanban/cordis.patch.yml`
npm registrymissingwarn`@isomoes/dsh-ikanban` is not published to npm
prepare scriptpassfatalships a `prepare` script that builds on git install
pnpm allowBuildsfailwarnpnpm >=10 refuses to run a git dependency's prepare script until allowlisted
Verdict reason
git-only with a prepare script — requires an explicit build allowance
package.json read
packages/ikanban/package.json
Rules applied from
docs/user/develop/basic/publish.md
Checked at
2026-08-15
Install-time scripts
prepare

From the README

Excerpt as published by the author, plain text, unedited

Monorepo for the iKanban browser-surface fork for DeepSeek Harness. - [`@isomoes/dsh-ikanban`](packages/ikanban) - the public DSH bundle, host adapters, generated composition, and packaged browser artifacts - [`packages/web-ui`](packages/web-ui) - the private editable TS/TSX/CSS fork of the full browser plugin surface and Vite shell

Topics

GitHub topics on this repository

More in Coding Agent Cli Review

Ranked by similarity inside the cluster, not alphabetically