Official installation source
- Clarify that DSH installs Aegis from the official Git repository, with
dependency nameaegisand stable Cordis row IDaegis-method-pack.
The row ID does not identify an official npm registry distribution. - Document that the public npm
aegis-method-packpackage is published by
an external account. Its stale2.9.2artifact is separate from official
Git releases and retains the old peer ceiling. Marketplace installation
must preserve the requested Git source and pinned revision. - Keep
private: trueon the canonical manifest to prevent accidental npm
publication and add a guard to the existing DSH boundary check. Git and
existing host plugin installations retain their identities and current
optional>=0.1.0-rc.6peers. - Retire the proposed npm builder, artifact test, publication workflow, and
npm installation instructions. No official npm registry channel is being
introduced. Existing third-party registry artifacts are unchanged.
Validation and limits
- The full release check (
bash tests/e2e/run-all.sh --full --host-profile fast)
passed in an isolated Linux filesystem, including both representative Codex
smokes, OpenCode base compatibility, and Codex plugin sync. The DSH
deterministic suite and four DSH updater tests also passed. - DSH
0.2.0-rc.2with pnpm11.7.0installed the canonical source into an
isolated Windows Web profile with the private manifest guard. Actual profile
boot exposed 23 Aegis skills and loaded three representative canonical skill
bodies. The native host admission matrix passed without an exemption.
These checks made no DSH model request and do not cover Desktop startup. - Plugin Hub source selection remains tracked in upstream issue #120;
Aegis issue #81 still needs reporter confirmation. A GitHub release alone
does not resolve either marketplace selection or live DSH model routing.
Official DSH installation:
dsh plugin --profile desktop add "git+https://github.com/GanyuanRan/Aegis.git#v2.12.2"Remote Git commit 490ffb7 was separately installed into a fresh Windows DSH 0.2.0-rc.2 Web profile: the pinned ref was preserved, all 53 skill/DSH source files matched the canonical release source, and the native registry exposed 23 skills and loaded three representative bodies without a model request.