Hetav21/nixos
Opinionated multi-host NixOS flake powering desktop & WSL environments
ARCHETYPE
Pragmatist
A balanced, no-drama setup: some rules, some tools, nothing extreme.
Copy this rig
# review before running: this installs third-party code $ claude mcp add --transport http grep https://mcp.grep.app $ claude mcp add --transport http exa https://mcp.exa.ai/mcp $ claude mcp add --transport http context7 https://mcp.context7.com/mcp -H 'CONTEXT7_API_KEY: YOUR_VALUE' $ claude mcp add playwright -- @bunxPath@ -y @playwright/mcp@latest $ claude mcp add --transport http aws-knowledge-mcp-server https://knowledge-mcp.global.api.aws
MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.
$ claude mcp add --transport http grep https://mcp.grep.app $ claude mcp add --transport http exa https://mcp.exa.ai/mcp $ claude mcp add --transport http context7 https://mcp.context7.com/mcp -H 'CONTEXT7_API_KEY: YOUR_VALUE' $ claude mcp add playwright -- @bunxPath@ -y @playwright/mcp@latest $ claude mcp add --transport http aws-knowledge-mcp-server https://knowledge-mcp.global.api.aws
This rig commits no guardrails. Here is the community baseline instead — the deny/ask rules most often found across all 7,204 rigs:
{
"permissions": {
"deny": [
"Read(./.env)",
"Read(**/.env)",
"Read(~/.ssh/**)",
"Bash(rm -rf *)",
"Read(**/*.pem)",
"Bash(rm -rf /)",
"Bash(git push --force:*)",
"Bash(sudo *)",
"Read(.env)",
"Bash(rm -rf /*)",
"Read(./.env.*)",
"Read(~/.aws/**)",
"Bash(git push --force*)",
"Bash(rm -rf:*)",
"Read(**/*.key)",
"Read(**/.env.*)",
"Bash(sudo:*)",
"Bash(git reset --hard*)",
"Bash(git reset --hard:*)",
"Read(.env.*)"
],
"ask": [
"Bash(git push:*)",
"Bash(git push *)",
"Bash(git commit:*)",
"Bash(rm *)",
"Bash(rm:*)",
"Bash(git rebase *)",
"Bash(wget *)",
"Bash(npm publish:*)",
"Bash(git commit *)",
"Bash(gh pr merge *)"
]
}
} MCP servers (5)
| server | source | est. tokens |
|---|---|---|
| mcp.grep.app · "grep" | remote · remote | 2.5k |
| Exa | remote · remote | 1.5k |
| Context7 | remote · remote | 1.2k |
| @bunxpath@ · "playwright" | binary | 2.5k |
| knowledge-mcp.global.api.aws · "aws-knowledge-mcp-server" | remote · remote | 2.5k |
Similar rigs
MSmaili/dotfiles
Personal dotfiles configuration.
Pragmatist 15.6k tok ·
laithalsaadoon/agentic-plugins
Public Claude Code plugin marketplace — installable skills and agents for AI coding agents. Drop-in capabilities you add with one command.
MCP Hoarder 12.8k tok ·
maxritter/pilot-shell
Professional context and harness engineering for Claude Code and OpenAI Codex. Build production-grade software with spec-driven development, TDD, persistent memory, quality gates, code intelligence, human oversight, and end-to-end verificat
MCP Hoarder 19.6k tok ·
snics/dotfiles
—
YOLO Cowboy 25.9k tok ·