~ / rigs / qw457812 / dotfiles

qw457812/dotfiles

My dotfiles on macOS and Termux, managed with Chezmoi.

↗ GitHub ★ 5 no license updated 7d ago personal setup Claude CodeCodex
share on X
ARCHETYPE
Skill Collector
Ten-plus skills loaded on demand. A procedural-knowledge library.
CONTEXT TAX · EVERY TURN
~4.1k tokens
Moderate · median rig: 2.2k · breakdown
GUARDRAILS
1/5
No YOLO mode · details

Copy this rig

# review before running: this installs third-party code
$ claude mcp add --transport http codesearch https://mcp.grep.app
$ npx degit qw457812/dotfiles/.claude ./rig-dotfiles  # inspect, then merge into .claude/

MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.

$ claude mcp add --transport http codesearch https://mcp.grep.app
$ npx degit qw457812/dotfiles/.agents/skills/chezmoi-symlink .claude/skills/chezmoi-symlink
$ npx degit qw457812/dotfiles/.dsh/skills/dsh-plugin .claude/skills/dsh-plugin
$ npx degit qw457812/dotfiles/.pi/skills/just-bash-compat .claude/skills/just-bash-compat
$ npx degit qw457812/dotfiles/.pi/skills/lazy-enable-pi-tool .claude/skills/lazy-enable-pi-tool
$ npx degit qw457812/dotfiles/.pi/skills/lazy-update-review .claude/skills/lazy-update-review
$ npx degit qw457812/dotfiles/.pi/skills/opencode-mirror .claude/skills/opencode-mirror
$ npx degit qw457812/dotfiles/private_dot_pi/private_agent/skills/audio-transcription .claude/skills/audio-transcription
$ npx degit qw457812/dotfiles/private_dot_pi/private_agent/skills/librarian .claude/skills/librarian
$ npx degit qw457812/dotfiles/private_dot_pi/private_agent/skills/tmux .claude/skills/tmux
$ npx degit qw457812/dotfiles/private_dot_pi/private_agent/skills/training-deck .claude/skills/training-deck

This rig commits no guardrails. Here is the community baseline instead — the deny/ask rules most often found across all 6,413 rigs:

{
  "permissions": {
    "deny": [
      "Read(~/.ssh/**)",
      "Read(**/.env)",
      "Bash(rm -rf *)",
      "Read(./.env)",
      "Bash(rm -rf /)",
      "Bash(git push --force:*)",
      "Bash(sudo *)",
      "Read(**/*.pem)",
      "Bash(rm -rf /*)",
      "Read(~/.aws/**)",
      "Bash(rm -rf:*)",
      "Read(.env)",
      "Bash(git push --force*)",
      "Read(**/*.key)",
      "Read(./.env.*)",
      "Read(**/.env.*)",
      "Bash(sudo:*)",
      "Bash(git reset --hard*)",
      "Bash(git reset --hard:*)",
      "Read(.env.*)"
    ],
    "ask": [
      "Bash(git push:*)",
      "Bash(git push *)",
      "Bash(git commit:*)",
      "Bash(rm *)",
      "Bash(rm:*)",
      "Bash(wget *)",
      "Bash(npm publish:*)",
      "Bash(gh pr merge *)",
      "Bash(chown *)",
      "Bash(docker *)"
    ]
  }
}

MCP servers (1)

serversourceest. tokens
mcp.grep.app · "codesearch" remote · remote 2.5k

Skills (10)

Hooks (1)

eventmatcherruns
PostToolUseWrite|Editjq -r --arg src "$(chezmoi source-path)" '.tool_input.file_path | select(startswith($src))' | xargs -r chezmoi target-path 2>/dev/null | xargs -r chezmoi apply --no-tty 2>/dev/null || true

Similar rigs

copied ✓