~ / rigs / brydoncheyney / dotfiles-claude

brydoncheyney/dotfiles-claude

No description.

↗ GitHub ★ 1 no license updated 5mo ago personal setup Claude Code
share on X
ARCHETYPE
Pragmatist
A balanced, no-drama setup: some rules, some tools, nothing extreme.
CONTEXT TAX · EVERY TURN
~12.5k tokens
Heavy · median rig: 2.3k · breakdown
GUARDRAILS
1/5
No YOLO mode · details

Copy this rig

# review before running: this installs third-party code
$ claude mcp add nerdoracle -e NERDORACLE_API_URL=YOUR_NERDORACLE_API_URL -- npx ts-node ~/.local/share/nerdoracle/services/mcp/src/index.ts
$ claude mcp add cloudquery -- /opt/homebrew/bin/uv --project ~/work/cloudquery-mcp run python -m cloudquery_mcp.server
$ claude mcp add kubernetes -- npx mcp-server-kubernetes
$ npx degit brydoncheyney/dotfiles-claude/skills ./rig-dotfiles-claude/skills

MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.

$ claude mcp add nerdoracle -e NERDORACLE_API_URL=YOUR_NERDORACLE_API_URL -- npx ts-node ~/.local/share/nerdoracle/services/mcp/src/index.ts
$ claude mcp add cloudquery -- /opt/homebrew/bin/uv --project ~/work/cloudquery-mcp run python -m cloudquery_mcp.server
$ claude mcp add kubernetes -- npx mcp-server-kubernetes
$ npx degit brydoncheyney/dotfiles-claude/skills/gha-plan-review .claude/skills/gha-plan-review
$ npx degit brydoncheyney/dotfiles-claude/skills/nerdoracle .claude/skills/nerdoracle
$ npx degit brydoncheyney/dotfiles-claude/skills/pr-workflow .claude/skills/pr-workflow

This rig commits no guardrails. Here is the community baseline instead — the deny/ask rules most often found across all 7,204 rigs:

{
  "permissions": {
    "deny": [
      "Read(./.env)",
      "Read(**/.env)",
      "Read(~/.ssh/**)",
      "Bash(rm -rf *)",
      "Read(**/*.pem)",
      "Bash(rm -rf /)",
      "Bash(git push --force:*)",
      "Bash(sudo *)",
      "Read(.env)",
      "Bash(rm -rf /*)",
      "Read(./.env.*)",
      "Read(~/.aws/**)",
      "Bash(git push --force*)",
      "Bash(rm -rf:*)",
      "Read(**/*.key)",
      "Read(**/.env.*)",
      "Bash(sudo:*)",
      "Bash(git reset --hard*)",
      "Bash(git reset --hard:*)",
      "Read(.env.*)"
    ],
    "ask": [
      "Bash(git push:*)",
      "Bash(git push *)",
      "Bash(git commit:*)",
      "Bash(rm *)",
      "Bash(rm:*)",
      "Bash(git rebase *)",
      "Bash(wget *)",
      "Bash(npm publish:*)",
      "Bash(git commit *)",
      "Bash(gh pr merge *)"
    ]
  }
}

MCP servers (4)

serversourceest. tokens
ts-node · "nerdoracle"
env: NERDORACLE_API_URL
npm 2.5k
~/work/cloudquery-mcp · "cloudquery" pypi 2.5k
mcp-server-kubernetes · "kubernetes" npm 2.5k
github local / custom 2.5k

Skills (3)

Hooks (1)

eventmatcherruns
PostToolUseEdit|Writeterraform fmt {{file_path}}

Plugins (2)

slack@claude-plugins-officialvercel@claude-plugins-official

Permissions

deny (0)
—
ask (0)
—
allow (120)
Read(~/.claude/voice.md)
Bash(jq:*)
Bash(~/.bin/claude/poll-pr:*)
Bash(~/.bin/claude/pr-checks-summary:*)
Bash(gh auth status:*)
Bash(gh status:*)
Bash(gh org list:*)
Bash(gh pr view:*)
Bash(gh pr list:*)
Bash(gh pr status:*)
Bash(gh pr checks:*)
Bash(gh pr comment list:*)
Bash(gh pr review list:*)
Bash(gh issue view:*)
Bash(gh issue list:*)
Bash(gh issue status:*)
Bash(gh issue comment list:*)
Bash(gh repo view:*)
Bash(gh repo list:*)
Bash(gh repo clone:*)
Bash(gh repo deploy-key list:*)
Bash(gh run view:*)
Bash(gh run list:*)
Bash(gh run watch:*)
Bash(gh workflow view:*)
Bash(gh workflow list:*)
Bash(gh release view:*)
Bash(gh release list:*)
Bash(gh label list:*)
Bash(gh milestone list:*)
Bash(gh project list:*)
Bash(gh project view:*)
Bash(gh project item-list:*)
Bash(gh project field-list:*)
Bash(gh gist view:*)
Bash(gh gist list:*)
Bash(gh search repos:*)
Bash(gh search issues:*)
Bash(gh search prs:*)
Bash(gh search commits:*)
Bash(gh search code:*)
Bash(gh secret list:*)
Bash(gh variable list:*)
Bash(gh cache list:*)
Bash(gh ruleset list:*)
Bash(gh ruleset view:*)
Bash(gh extension list:*)
Bash(gh codespace list:*)
Bash(gh codespace view:*)
Bash(gh attestation verify:*)
Bash(aws accessanalyzer get-access-preview:*)
Bash(aws accessanalyzer get-analyzed-resource:*)
Bash(aws accessanalyzer get-analyzer:*)
Bash(aws accessanalyzer get-archive-rule:*)
Bash(aws accessanalyzer get-finding-recommendation:*)
Bash(aws accessanalyzer get-finding-v2:*)
Bash(aws accessanalyzer get-finding:*)
Bash(aws accessanalyzer get-findings-statistics:*)
Bash(aws accessanalyzer get-generated-policy:*)
Bash(aws accessanalyzer list-access-preview-findings:*)

Similar rigs

copied ✓