Evidence record / deepseek-harness

A dated record of one change, kept so the writing that cites it can be checked. Compiled from the sources listed below by the research run, not written for reading. The judgment lives in the issues that cite it, below.

2026-09-21-deepseek-harness-more-outbound-data-to-deepseek-by-default-the-session-log-upload-flipped-on-in-the-alpha

More outbound data to DeepSeek by default; the session-log upload flipped on in the alpha line. On rc 0.1.5-rc.2, DeepSeek requests carry your enabled plugin names and versions, and feedback-triggered telemetry is on. On alpha 0.1.6-alpha.x, requests to the official API also carry incremental session-log records, including the working directory path, unless you turn it off.

Channel: preview-or-beta (rc and alpha differ; see evidence). Half: defect (exposure). Date: 2026-08-27 (inventory), 2026-09-15 (session log, alpha).

Operator consequence: On any line, set DSH_TELEMETRY_DISABLED=1 and disable plugin-package-inventory-deepseek if plugin names are sensitive. On the alpha line, also patch session-log-deepseek to enabled: false before first use against the official endpoint. A custom or third-party provider is unaffected: these contributions target official DeepSeek requests.

Receipt

Finding metadata

Run: 2026-09-21-weekly-digest-2026-08-20_2026-09-21-frontier-v0

Finding ID: 2026-09-21-deepseek-harness-more-outbound-data-to-deepseek-by-default-the-session-log-upload-flipped-on-in-the-alpha

Profile citations

Source links

Primary links, including exact changelog lines when available.

Versioned source: run artifact