~ / rigs / msiShariful / claude-code-studio

msiShariful/claude-code-studio

A local GUI for managing Claude Code settings — config, MCP servers, plugins, hooks, agents, skills, and CLAUDE.md. npx cc-studio

↗ GitHub ★ 3 MIT updated 4mo ago project Claude Code
share on X
ARCHETYPE
Fort Knox
Deny lists, pre-tool hooks, sandboxing. Nothing touches prod without a signature.
CONTEXT TAX · EVERY TURN
~2.1k tokens
Moderate · median rig: 2.3k · breakdown
GUARDRAILS
5/5
Blocks destructive commands · Protects secrets · Pre-tool screening hook · No YOLO mode · Sandbox or ask-first rules · details

Copy this rig

# review before running: this installs third-party code
$ npx degit msiShariful/claude-code-studio/.claude ./rig-claude-code-studio  # inspect, then merge into .claude/

MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.

$ npx degit msiShariful/claude-code-studio/.claude/skills/add-web-section .claude/skills/add-web-section
$ curl -fsSL --create-dirs -o .claude/agents/code-reviewer.md https://raw.githubusercontent.com/msiShariful/claude-code-studio/main/.claude/agents/code-reviewer.md
$ curl -fsSL --create-dirs -o .claude/agents/test-runner.md https://raw.githubusercontent.com/msiShariful/claude-code-studio/main/.claude/agents/test-runner.md

Merge into .claude/settings.json (project) or ~/.claude/settings.json (user). Hook commands reference scripts in the source repo — copy those too.

{
  "permissions": {
    "deny": [
      "Read(./.env)",
      "Read(./.env.*)",
      "Read(./**/.env)",
      "Read(./**/.env.*)",
      "Read(./**/*.pem)",
      "Read(./**/*.key)",
      "Read(./.npmrc)",
      "Read(./**/.npmrc)",
      "Read(~/.npmrc)",
      "Read(./**/secrets/**)"
    ],
    "ask": [
      "Bash(npm publish:*)"
    ]
  },
  "hooks": {
    "PreToolUse": [
      {
        "matcher": "Bash",
        "hooks": [
          {
            "type": "command",
            "command": "node \"$CLAUDE_PROJECT_DIR/.claude/hooks/guard-commit.mjs\""
          }
        ]
      }
    ]
  }
}

Skills (1)

Subagents (2)

code-reviewer
model: sonnet
Reviews recent changes against this repo's conventions (TDD, ESM .js imports, strict TS, focused files, design-system reuse, no AI commit attribution). Use after writing a feature or before committing
test-runner
model: sonnet
Runs the test suite, diagnoses failures, and proposes the minimal correct fix. Use when tests fail or after a change that needs verification.

Hooks (1)

eventmatcherruns
PreToolUseBashnode "$CLAUDE_PROJECT_DIR/.claude/hooks/guard-commit.mjs"

Slash commands (7)

/check/commit/preview/release/review/ship/test

Permissions

deny (10)
Read(./.env)
Read(./.env.*)
Read(./**/.env)
Read(./**/.env.*)
Read(./**/*.pem)
Read(./**/*.key)
Read(./.npmrc)
Read(./**/.npmrc)
Read(~/.npmrc)
Read(./**/secrets/**)
ask (1)
Bash(npm publish:*)
allow (28)
Bash(npm test:*)
Bash(npm run test:*)
Bash(npm run typecheck:*)
Bash(npm run build:*)
Bash(npm run preview:*)
Bash(npm run dev:*)
Bash(npx vitest:*)
Bash(npm view:*)
Bash(npm whoami)
Bash(npm pack:*)
Bash(npm pkg get:*)
Bash(npm pkg set:*)
Bash(git status:*)
Bash(git diff:*)
Bash(git log:*)
Bash(git show:*)
Bash(git add:*)
Bash(git restore:*)
Bash(git commit:*)
Bash(git push:*)
Bash(git tag:*)
Bash(git fetch:*)
Bash(git branch:*)
Bash(git checkout:*)
Bash(gh release:*)
Bash(gh pr:*)
Bash(gh issue:*)
Bash(gh repo view:*)

Similar rigs

copied ✓