~ / rigs / hereinthehive / kickstart

hereinthehive/kickstart

A Claude Code starter — fork, run /onboarding, and Claude sets itself up for your project

↗ GitHub ★ 4 no license updated 5mo ago project Claude Code
share on X
ARCHETYPE
Fort Knox
Deny lists, pre-tool hooks, sandboxing. Nothing touches prod without a signature.
CONTEXT TAX · EVERY TURN
~896 tokens
Featherweight · median rig: 2.3k · breakdown
GUARDRAILS
4/5
Blocks destructive commands · Protects secrets · No YOLO mode · Sandbox or ask-first rules · details

Copy this rig

# review before running: this installs third-party code
$ npx degit hereinthehive/kickstart/.claude ./rig-kickstart  # inspect, then merge into .claude/

MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.

$ npx degit hereinthehive/kickstart/.claude/skills/forget .claude/skills/forget
$ npx degit hereinthehive/kickstart/.claude/skills/help-me .claude/skills/help-me
$ npx degit hereinthehive/kickstart/.claude/skills/onboarding .claude/skills/onboarding
$ npx degit hereinthehive/kickstart/.claude/skills/remember .claude/skills/remember
$ npx degit hereinthehive/kickstart/.claude/skills/update .claude/skills/update
$ npx degit hereinthehive/kickstart/.claude/skills/wrap .claude/skills/wrap
$ curl -fsSL --create-dirs -o .claude/agents/caretaker.md https://raw.githubusercontent.com/hereinthehive/kickstart/main/.claude/agents/caretaker.md
$ curl -fsSL --create-dirs -o .claude/agents/curator.md https://raw.githubusercontent.com/hereinthehive/kickstart/main/.claude/agents/curator.md

Merge into .claude/settings.json (project) or ~/.claude/settings.json (user). Hook commands reference scripts in the source repo — copy those too.

{
  "permissions": {
    "deny": [
      "Bash(git push:*)",
      "Bash(gh pr create:*)",
      "Bash(gh pr merge:*)",
      "Bash(npm install:*)",
      "Bash(npm i:*)",
      "Bash(pnpm add:*)",
      "Bash(pnpm install:*)",
      "Bash(pnpm dlx:*)",
      "Bash(yarn dlx:*)",
      "Bash(yarn add:*)",
      "Bash(yarn install:*)",
      "Bash(pip install:*)",
      "Bash(bun add:*)",
      "Bash(bun install:*)",
      "Bash(bunx:*)",
      "Bash(npx:*)",
      "Bash(cargo add:*)",
      "Bash(rm:*)",
      "Bash(git clean:*)",
      "Read(./.env)",
      "Read(./.env.*)",
      "Read(./secrets/**)"
    ],
    "ask": [
      "Bash(git commit:*)",
      "Bash(gh:*)"
    ]
  }
}

Skills (6)

Subagents (2)

caretakerInternal-integrity audit subagent. Checks preference rot, adoption signal, and shim/config integrity. Invoked by /update; returns structured findings.
curatorExternal audit subagent. Refreshes the Claude Code best-practices baseline (knowledge.md) and produces a project-specific gap analysis (curator-recommendations.md). Invoked by onboarding and /update.

Hooks (2)

eventmatcherruns
SessionStart*if [ ! -f CLAUDE.md ] || [ $(wc -c < CLAUDE.md) -lt 50 ]; then echo 'Setup not finished yet — run /onboarding to get started.'; else echo "Branch: $(git branch --show-current 2>/dev/null || echo 'n/a')"; echo "Status: $(git status --short 2
Stop*INPUT=$(cat); TRANSCRIPT=$(echo "$INPUT" | jq -r '.transcript_path // empty' 2>/dev/null); if [ -z "$TRANSCRIPT" ] || [ ! -f "$TRANSCRIPT" ]; then exit 0; fi; SUBSTANTIVE=$(grep -c '"name":"\(Edit\|Write\|MultiEdit\|NotebookEdit\)"' "$TRANS

Permissions

deny (22)
Bash(git push:*)
Bash(gh pr create:*)
Bash(gh pr merge:*)
Bash(npm install:*)
Bash(npm i:*)
Bash(pnpm add:*)
Bash(pnpm install:*)
Bash(pnpm dlx:*)
Bash(yarn dlx:*)
Bash(yarn add:*)
Bash(yarn install:*)
Bash(pip install:*)
Bash(bun add:*)
Bash(bun install:*)
Bash(bunx:*)
Bash(npx:*)
Bash(cargo add:*)
Bash(rm:*)
Bash(git clean:*)
Read(./.env)
Read(./.env.*)
Read(./secrets/**)
ask (2)
Bash(git commit:*)
Bash(gh:*)
allow (11)
Read
Edit
Write
Bash(git *)
Bash(ls:*)
Bash(wc:*)
Bash(cat:*)
Bash(mkdir:*)
Bash(cp:*)
Bash(date:*)
Agent

Similar rigs

copied ✓