~ / rigs / masutaka / dotfiles-public

masutaka/dotfiles-public

masutaka public dot files

↗ GitHub ★ 11 MIT updated today personal setup Claude CodeCodex
share on X
ARCHETYPE
Fort Knox
Deny lists, pre-tool hooks, sandboxing. Nothing touches prod without a signature.
CONTEXT TAX · EVERY TURN
~503 tokens
Featherweight · median rig: 2.3k · breakdown
GUARDRAILS
4/5
Blocks destructive commands · Protects secrets · No YOLO mode · Sandbox or ask-first rules · details

Copy this rig

# review before running: this installs third-party code
$ npx degit masutaka/dotfiles-public/.claude ./rig-dotfiles-public  # inspect, then merge into .claude/

MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.

$ npx degit masutaka/dotfiles-public/.claude/skills/codex-discuss .claude/skills/codex-discuss
$ npx degit masutaka/dotfiles-public/.claude/skills/my-review-deps-pr .claude/skills/my-review-deps-pr
$ npx degit masutaka/dotfiles-public/.claude/skills/my-suggest-commit-message .claude/skills/my-suggest-commit-message

Merge into .claude/settings.json (project) or ~/.claude/settings.json (user). Hook commands reference scripts in the source repo — copy those too.

{
  "permissions": {
    "deny": [
      "Bash(rm -rf .git)",
      "Bash(rm -rf /)",
      "Bash(rm -rf /*)",
      "Bash(rm -rf ~)",
      "Bash(security:*)",
      "Bash(sudo:*)",
      "Bash(terraform apply:*)",
      "Bash(terraform import:*)",
      "Edit(.env*)",
      "Read(.env)",
      "Read(.envrc)"
    ],
    "ask": [
      "Bash(curl:*)",
      "Bash(gh stack push:*)",
      "Bash(gh stack rebase:*)",
      "Bash(gh stack sync:*)",
      "Bash(git add:*)",
      "Bash(git commit:*)",
      "Bash(git push:*)",
      "Bash(git rebase:*)",
      "Bash(wget:*)"
    ]
  }
}

Skills (3)

Hooks (5)

eventmatcherruns
UserPromptSubmit*~/.claude/scripts/issue-precheck.rb
PostToolUseBash~/.claude/scripts/open-github-url.sh
PostToolUseWrite|Edit~/.claude/scripts/textlint-hook.rb
PostToolUseWrite|Edit|Bash~/.claude/scripts/mo-hook.rb
SessionStart^(startup|resume|clear|compact|fork)$~/.claude/hooks/herdr-agent-state.sh session

Plugins (4)

codex@openai-codexcrit@critsecurity-guidance@claude-plugins-officialnatural-japanese@natural-japanese

Permissions

deny (11)
Bash(rm -rf .git)
Bash(rm -rf /)
Bash(rm -rf /*)
Bash(rm -rf ~)
Bash(security:*)
Bash(sudo:*)
Bash(terraform apply:*)
Bash(terraform import:*)
Edit(.env*)
Read(.env)
Read(.envrc)
ask (9)
Bash(curl:*)
Bash(gh stack push:*)
Bash(gh stack rebase:*)
Bash(gh stack sync:*)
Bash(git add:*)
Bash(git commit:*)
Bash(git push:*)
Bash(git rebase:*)
Bash(wget:*)
allow (18)
Bash(bundle info:*)
Bash(crit --session *)
Bash(crit comment *)
Bash(find:*)
Bash(gh issue list *)
Bash(gh pr checks:*)
Bash(gh pr diff:*)
Bash(gh pr view:*)
Bash(gh run view *)
Bash(ghro:*)
Bash(git log:*)
Bash(grep:*)
Bash(jq:*)
Bash(mkdir:*)
Bash(rg:*)
Read(.env.example)
mcp__context7__query-docs
mcp__context7__resolve-library-id

Similar rigs

copied ✓