mattolson/agent-sandbox
Secure local dev environment for collaboration with AI coding agents
ARCHETYPE
Pragmatist
A balanced, no-drama setup: some rules, some tools, nothing extreme.
Copy this rig
$ git clone --depth 1 https://github.com/mattolson/agent-sandbox MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.
$ npx degit mattolson/agent-sandbox/.agents/skills/add-agent .claude/skills/add-agent $ npx degit mattolson/agent-sandbox/.agents/skills/plan-milestone .claude/skills/plan-milestone $ npx degit mattolson/agent-sandbox/.agents/skills/plan-project .claude/skills/plan-project $ npx degit mattolson/agent-sandbox/.agents/skills/plan-task .claude/skills/plan-task $ npx degit mattolson/agent-sandbox/.agents/skills/plan .claude/skills/plan $ npx degit mattolson/agent-sandbox/images/base/skills/operating-in-agent-sandbox .claude/skills/operating-in-agent-sandbox
This rig commits no guardrails. Here is the community baseline instead — the deny/ask rules most often found across all 7,204 rigs:
{
"permissions": {
"deny": [
"Read(./.env)",
"Read(**/.env)",
"Read(~/.ssh/**)",
"Bash(rm -rf *)",
"Read(**/*.pem)",
"Bash(rm -rf /)",
"Bash(git push --force:*)",
"Bash(sudo *)",
"Read(.env)",
"Bash(rm -rf /*)",
"Read(./.env.*)",
"Read(~/.aws/**)",
"Bash(git push --force*)",
"Bash(rm -rf:*)",
"Read(**/*.key)",
"Read(**/.env.*)",
"Bash(sudo:*)",
"Bash(git reset --hard*)",
"Bash(git reset --hard:*)",
"Read(.env.*)"
],
"ask": [
"Bash(git push:*)",
"Bash(git push *)",
"Bash(git commit:*)",
"Bash(rm *)",
"Bash(rm:*)",
"Bash(git rebase *)",
"Bash(wget *)",
"Bash(npm publish:*)",
"Bash(git commit *)",
"Bash(gh pr merge *)"
]
}
} Skills (6)
Similar rigs
jchilders/dotfiles
Bootstrap neovim/zsh/wezterm environment. "Unix is an IDE."
Minimalist 740 tok ·
hgkim0105/claude_config
Claude vibe coding config: skills, templates for FastAPI + Next.js fullstack development
Minimalist 2.4k tok ·
xWael9/ClaudeBoss
Cut Claude Code's own token consumption by up to 99% — delegate the heavy lifting to free opencode agents, keep Claude in the reviewer's or manager's seat.
Minimalist 223 tok ·
archcore-ai/archcore
Spec-driven development and context engineering for Claude Code, Cursor, Codex, and GitHub Copilot — backed by project context in Git.
Minimalist 337 tok ·