Guard
PreToolUse hooks for Claude Code that deny dangerous shell, git, and credential commands before they run: rm -rf / shapes, git push --force, python -c / node -e eval, pipe-to-shell, live credentials (gh auth token, aws sts get-session-token, op read), git -c core.hooksPath=… injection, silent commit reuse (git commit -C HEAD~1, --reuse-message). Each deny names the rule and prints a one-line override (guard allowlist allow-command …); decisions stream to a JSONL log the opt
Works with: Claude Code, Cursor, Claude Desktop, Codex CLI, Gemini CLI, Cline, Windsurf, VS Code
Category: Productivity — see all ranked ›
- tashan score: 42.0
- Adoption: 1 repos
- Health: active
- GitHub stars: 0
- Contributors: 3
- License: Apache-2.0
Security audit
Not scanned yet. We audit npm-published capabilities for known advisories, install-time scripts and permission surface; this one has no npm package we can resolve, or has not reached the queue.
source ↗ · plugin:tracinehq/guard/guard
Already running this? npx tashan-cli doctor checks your whole config against the Index — how it works ›