~ / rigs / FridrichMethod / dotfiles

FridrichMethod/dotfiles

Cross-platform shell, terminal, and tool configs for macOS, WSL, Ubuntu, Fedora, Windows, and Stanford Sherlock/Marlowe HPC.

↗ GitHub ★ 0 mit updated 1d ago personal setup Claude CodeCodex
share on X
ARCHETYPE
Fort Knox
Deny lists, pre-tool hooks, sandboxing. Nothing touches prod without a signature.
CONTEXT TAX · EVERY TURN
~4.9k tokens
Moderate · median rig: 2.3k · breakdown
GUARDRAILS
4/5
Blocks destructive commands · Pre-tool screening hook · No YOLO mode · Sandbox or ask-first rules · details

Copy this rig

# review before running: this installs third-party code
$ npx degit FridrichMethod/dotfiles/.claude ./rig-dotfiles  # inspect, then merge into .claude/

MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.

Merge into .claude/settings.json (project) or ~/.claude/settings.json (user). Hook commands reference scripts in the source repo — copy those too.

{
  "permissions": {
    "deny": [
      "Bash(sudo pip:*)",
      "Bash(sudo pip3:*)",
      "Bash(sudo rm *)",
      "Bash(rm -rf /)",
      "Bash(rm -fr /)",
      "Bash(rm -rf ~)",
      "Bash(rm -fr ~)"
    ],
    "ask": [
      "Bash(sudo *)"
    ]
  },
  "hooks": {
    "PreToolUse": [
      {
        "matcher": "Bash",
        "hooks": [
          {
            "type": "command",
            "command": "node -e \"require(require('os').homedir() + '/.claude/dotfiles/check-git-hooks.cjs').main()\""
          }
        ]
      }
    ]
  }
}

Hooks (2)

eventmatcherruns
PreToolUseBashnode -e "require(require('os').homedir() + '/.claude/dotfiles/check-git-hooks.cjs').main()"
Notificationpermission_prompt|idle_promptnode -e "require(require('os').homedir() + '/.claude/dotfiles/notify.cjs').main()"

Plugins (26)

everything-claude-code@everything-claude-codecodex@openai-codexfrontend-design@claude-plugins-officialsuperpowers@claude-plugins-officialcontext7@claude-plugins-officialcode-review@claude-plugins-officialcode-simplifier@claude-plugins-officialgithub@claude-plugins-officialfeature-dev@claude-plugins-officialplaywright@claude-plugins-officialskill-creator@claude-plugins-officialralph-loop@claude-plugins-officialclaude-md-management@claude-plugins-officialtypescript-lsp@claude-plugins-officialsecurity-guidance@claude-plugins-officialcommit-commands@claude-plugins-officialfigma@claude-plugins-officialclaude-code-setup@claude-plugins-officialpr-review-toolkit@claude-plugins-officialpyright-lsp@claude-plugins-officialslack@claude-plugins-officialtelegram@claude-plugins-officialrust-analyzer-lsp@claude-plugins-officialclangd-lsp@claude-plugins-officialhuggingface-skills@claude-plugins-officiallua-lsp@claude-plugins-official

Permissions

deny (7)
Bash(sudo pip:*)
Bash(sudo pip3:*)
Bash(sudo rm *)
Bash(rm -rf /)
Bash(rm -fr /)
Bash(rm -rf ~)
Bash(rm -fr ~)
ask (1)
Bash(sudo *)
allow (36)
Bash(gh run watch *)
WebSearch
mcp__plugin_everything-claude-code_github__search_code
mcp__plugin_everything-claude-code_github__get_file_contents
Bash(git commit *)
Bash(rmdir *)
Bash(mv *)
Bash(git add *)
Bash(git push *)
Bash(git pull *)
Bash(git clone *)
Bash(git reset *)
Bash(git restore *)
Bash(git checkout *)
Bash(curl *)
Bash(wget *)
Bash(ssh *)
Bash(scp *)
Bash(rsync *)
Bash(tee *)
Bash(source *)
Bash(. *)
Bash(pip install *)
Bash(pip3 install *)
Bash(uv pip install *)
Bash(conda install *)
Bash(mamba install *)
Bash(npm install *)
Bash(pnpm install *)
Bash(yarn add *)
Bash(brew install *)
Bash(gh api *)
Bash(gh pr create *)
Bash(gh pr merge *)
Bash(gh issue create *)
Bash(gh release create *)

Similar rigs

copied ✓