~ / rigs / brkakyldz / claude-config

brkakyldz/claude-config

Personal Claude Code environment — hooks, skills and settings, versioned so it survives a machine. The filesystem is the architecture.

↗ GitHub ★ 1 MIT updated 17d ago personal setup Claude Code
share on X
ARCHETYPE
Fort Knox
Deny lists, pre-tool hooks, sandboxing. Nothing touches prod without a signature.
CONTEXT TAX · EVERY TURN
~65 tokens
Featherweight · median rig: 2.3k · breakdown
GUARDRAILS
4/5
Blocks destructive commands · Protects secrets · Pre-tool screening hook · No YOLO mode · details

Copy this rig

$ git clone --depth 1 https://github.com/brkakyldz/claude-config

MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.

Merge into .claude/settings.json (project) or ~/.claude/settings.json (user). Hook commands reference scripts in the source repo — copy those too.

{
  "permissions": {
    "deny": [
      "Bash(rm -rf:*)",
      "Bash(sudo:*)",
      "Bash(git push --force:*)",
      "Bash(git reset --hard:*)",
      "Read(~/.ssh/**)",
      "Read(**/.env)",
      "Read(**/.env.*)",
      "Read(~/.claude/.credentials.json)"
    ]
  },
  "hooks": {
    "PreToolUse": [
      {
        "matcher": "Bash",
        "hooks": [
          {
            "type": "command",
            "command": "node ~/.claude/hooks/guard-bash.mjs"
          }
        ]
      }
    ]
  }
}

Hooks (5)

eventmatcherruns
PreToolUseBashnode ~/.claude/hooks/guard-bash.mjs
SubagentStop*node ~/.claude/hooks/subagent-report.mjs
PreCompact*node ~/.claude/hooks/precompact-dump.mjs
SessionStart*node ~/.claude/hooks/session-start-context.mjs
Stop*node ~/.claude/hooks/stop-synthesis.mjs

Permissions

deny (8)
Bash(rm -rf:*)
Bash(sudo:*)
Bash(git push --force:*)
Bash(git reset --hard:*)
Read(~/.ssh/**)
Read(**/.env)
Read(**/.env.*)
Read(~/.claude/.credentials.json)
ask (0)
—
allow (0)
—

Similar rigs

copied ✓