~ / rigs / jameskomo / config-drift-checker

jameskomo/config-drift-checker

CI for your coding-agent setup (CLAUDE.md, skills, hooks): pinned baselines, a canary on every Claude Code release, self-diagnosing reports, autonomous repair. One suite, three agents: Claude Code, Codex, Gemini.

↗ GitHub ★ 30 NOASSERTION updated today personal setup Claude Code Claude plugin
share on X
ARCHETYPE
Pragmatist
A balanced, no-drama setup: some rules, some tools, nothing extreme.
CONTEXT TAX · EVERY TURN
~424 tokens
Featherweight · median rig: 2.3k · breakdown
GUARDRAILS
0/5
No committed guardrails · details

Copy this rig

$ git clone --depth 1 https://github.com/jameskomo/config-drift-checker

MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.

$ npx degit jameskomo/config-drift-checker/config-drift-checker/skills/repair .claude/skills/repair
$ npx degit jameskomo/config-drift-checker/config-drift-checker/skills/run .claude/skills/run
$ npx degit jameskomo/config-drift-checker/config-drift-checker/skills/setup .claude/skills/setup
$ npx degit jameskomo/config-drift-checker/config-drift-checker/skills/write-case .claude/skills/write-case
$ npx degit jameskomo/config-drift-checker/examples/komo-stack/skills/spring-boot-conventions .claude/skills/spring-boot-conventions

This rig commits no guardrails. Here is the community baseline instead — the deny/ask rules most often found across all 6,974 rigs:

{
  "permissions": {
    "deny": [
      "Read(./.env)",
      "Read(**/.env)",
      "Read(~/.ssh/**)",
      "Bash(rm -rf *)",
      "Read(**/*.pem)",
      "Bash(rm -rf /)",
      "Bash(git push --force:*)",
      "Bash(sudo *)",
      "Read(~/.aws/**)",
      "Bash(rm -rf /*)",
      "Read(./.env.*)",
      "Read(.env)",
      "Bash(git push --force*)",
      "Bash(rm -rf:*)",
      "Read(**/.env.*)",
      "Read(**/*.key)",
      "Bash(sudo:*)",
      "Bash(git reset --hard*)",
      "Bash(git reset --hard:*)",
      "Read(.env.*)"
    ],
    "ask": [
      "Bash(git push:*)",
      "Bash(git push *)",
      "Bash(git commit:*)",
      "Bash(rm *)",
      "Bash(rm:*)",
      "Bash(npm publish:*)",
      "Bash(wget *)",
      "Bash(git rebase *)",
      "Bash(gh pr merge *)",
      "Bash(git commit *)"
    ]
  }
}

Skills (5)

Similar rigs

copied ✓